The OWASP ZAP core project
The Pentester’s Companion
Privilege Escalation Awesome Scripts SUITE
Security- and exploitation-oriented utilities and proof-of-concepts
Lightweight service virtualization/ API simulation / API mocking tool
Complete Mandiant Offensive VM (Commando VM)
Find vulnerabilities, misconfigurations, secrets, SBOM in containers
Automatic SQL injection and database takeover tool
Fully featured and community-driven hacking environment
Gateway service providing dynamic routing, monitoring and more
API automation and load testing framework
Make security testing of K8s, Docker, and Containerd easier
Wapiti is a web-application vulnerability scanner
Santetin is a website stress test and DDOS simulation tool
Infection Monkey is a automated security testing tool for networks
A minimalistic, lean and fast HTTP REST API test application
ISB (I'm so bored) is a network stress-testing application for Windows
powerful SSH BruteForce tool
Best tools for 404 WebApp stress
Static Application Security Testing (SAST) engine
Advanced Network Packet Generator
Open-Source intelligence tracking and analysis tool.
Random data generator: secure character streams and large files