Tool to simulate attacks and collect the data
Powerful and flexible HTTP reverse proxy
Simple and flexible tool for managing secrets
Fast passive subdomain enumeration tool
Serve as a reverse proxy to protect your web services from attacks
A TLS MITM proxy for Non-HTTP traffic, with support for TLS upgrades
Next generation web scanner
A minimalist, open source online pastebin
Privacy Badger automatically learns to block invisible trackers
XRay for recon, mapping and OSINT gathering from public networks
Discover exposed internet hosts using multiple search engine APIs
A lightweight process isolation tool that utilizes Linux namespaces
Fully autonomous AI hacker to find actual exploits in your web apps
Cross-Platform Passwords & Secrets Vault
OSINT tool for discovering email addresses in known data breaches
Probably the most modern and sophisticated insecure web application
High-performance reconnaissance and vulnerability scanning tool
Detects phishing and lookalike domains using DNS fuzzing techniques
A Burp Extension for GraphQL Security Testing
Command-line OSINT and reconnaissance tool without API keys
A Kubernetes web UI that is fully-featured, user-friendly
ezXSS is an easy way for penetration testers and bug bounty hunters
Open Source H.264 Codec
Scalable fuzzing infrastructure
Open Cyber Threat Intelligence Platform