README.md

March 20, 2026 · View on GitHub

WebHackersWeapons Logo

A collection of awesome tools used by Web hackers. Happy hacking , Happy bug-hunting!

Family project

WebHackersWeapons MobileHackersWeapons

Table of Contents

Weapons

Attributes

Attributes
TypesArmy-Knife Proxy Recon Fuzzer Scanner Exploit Env Utils Etc
Tagsmitmproxy live-audit crawl osint recon forensics social-engineering steganography pentest exploit infra http repeater asn network-mapping cloud asset-discovery subdomains dns apk url endpoint csp param ssl tls certificates attack-surface port favicon js-analysis takeover portscan domain online graphql wordlist permutation cache-vuln path-traversal prototypepollution prototype-pollution smuggle fuzz ssrf jwt crlf header ssti vulnerability-scanner dependency-scanning xss s3 container-security sbom broken-link cors sqli lfi rfi open-redirect nosqli oast web-scanner aaa dependency-confusion 403 secret-scanning credentials sast code-analysis aws security terraform xxe RMI rop authentication zipbomb cidr network ip-manipulation deserialize web3 gRPC-Web notify documents cookie note blind-xss encode payload darkmode nuclei-templates package-manager tools-management dom race-condition diff clipboard json browser-record report
LangsJava Python Ruby Go Shell JavaScript Rust Kotlin Crystal C Perl C# TypeScript Txt HTML BlitzBasic CSS C++ PHP

Tools

TypeNameDescriptionStarTagsBadges
Army-KnifeZAPThe ZAP core projectmitmproxy live-audit crawllinuxmacoswindowszapJava
Army-knifeBaudrillard SuiteCross-platform security research toolkit with OSINT aggregation, memory forensics, social engineering tools, steganography, and predictive threat modeling.osint recon forensics social-engineering steganographylinuxmacoswindowsPython
Army-KnifeMetasploitThe world’s most used penetration testing frameworkpentestlinuxmacoswindowsRuby
Army-KnifeBurpSuiteThe BurpSuite Projectmitmproxy live-audit crawllinuxmacoswindowsburpJava
Army-knifeRoninFree and Open Source Ruby Toolkit for Security Research and Developmentpentest crawl recon exploitlinuxmacoswindowsRuby
Army-KnifejaelesThe Swiss Army knife for automated Web Application Testinglive-auditlinuxmacoswindowsGo
Army-KnifeaxiomA dynamic infrastructure toolkit for red teamers and bug bounty hunters!infralinuxmacoswindowsShell
ProxyGlorpA CLI-based HTTP intercept and replay proxymitmproxylinuxmacoswindowsGo
ProxyCaidoA lightweight web security auditing toolkitmitmproxylinuxmacoswindowscaidoRust
ProxyproxifySwiss Army knife Proxy tool for HTTP/HTTPS traffic capture, manipulation and replaymitmproxylinuxmacoswindowsGo
ProxyhettyHetty is an HTTP toolkit for security research. It aims to become an open source alternative to commercial software like Burp Suite Pro, with powerful features tailored to the needs of the infosec and bug bounty community.mitmproxylinuxmacoswindowsGo
ProxymitmproxyAn interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers.mitmproxylinuxmacoswindowsPython
ProxyEvilProxyA ruby http/https proxy to do EVIL things.mitmproxylinuxmacoswindowsRuby
ProxyEcho MirageA generic network proxy that uses DLL injection to capture and alter TCP traffic.mitmproxywindows
ReconlazyreconThis script is intended to automate your reconnaissance process in an organized fashionlinuxmacoswindowsShell
ReconasnmapGo CLI and Library for quickly mapping organization network ranges using ASN informationasn network-mappinglinuxmacoswindowsGo
ReconuncoverQuickly discover exposed hosts on the internet using multiple search engine.linuxmacoswindowsGo
ReconparamethThis tool can be used to brute discover GET and POST parameterslinuxmacoswindowsPython
ReconChaos Webactively scan and maintain internet-wide assets' data. enhance research and analyse changes around DNS for better insights.linuxmacoswindows
ReconcloudlistCloudlist is a tool for listing Assets from multiple Cloud Providerscloud asset-discoverylinuxmacoswindowsGo
ReconpurednsPuredns is a fast domain resolver and subdomain bruteforcing tool that can accurately filter out wildcard subdomains and DNS poisoned entries.subdomains dnslinuxmacoswindowsGo
ReconspiderfootSpiderFoot automates OSINT collection so that you can focus on analysis.osintlinuxmacoswindowsPython
Reconsubs_allSubdomain Enumeration Wordlist. 8956437 unique words. Updated.subdomainslinuxmacoswindows
ReconhakrevdnsSmall, fast tool for performing reverse DNS lookups en masse.linuxmacoswindowsGo
Recon3klConAutomation Recon tool which works with Large & Medium scopes. It performs more than 20 tasks and gets back all the results in separated files.linuxmacoswindowsPython
ReconapkleaksScanning APK file for URIs, endpoints & secrets.apk url endpointlinuxmacoswindowsPython
ReconwaybackurlsFetch all the URLs that the Wayback Machine knows about for a domainurllinuxmacoswindowsGo
ReconcspreconDiscover new target domains using Content Security PolicycsplinuxmacoswindowsGo
RecondirsearchWeb path scannerlinuxmacoswindowsPython
ReconmegFetch many paths for many hosts - without killing the hostslinuxmacoswindowsGo
RecontlsxFast and configurable TLS grabber focused on TLS based data collectionssl tls certificateslinuxmacoswindowsGo
ReconrusolverFast and accurate DNS resolver.dnslinuxmacoswindowsRust
ReconOsmedeusFully automated offensive security framework for reconnaissance and vulnerability scanninglinuxmacoswindowsGo
ReconSudomysubdomain enumeration tool to collect subdomains and analyzing domainssubdomainslinuxmacoswindowsShell
ReconParamWizardParamWizard is a powerful Python-based tool designed for extracting and identifying URLs with parameters from a specified website.paramlinuxmacoswindowsPython
Reconsn0intSemi-automatic OSINT framework and package managerosintlinuxmacoswindowsRust
Reconpagodopagodo (Passive Google Dork) - Automate Google Hacking Database scraping and searchinglinuxmacoswindowsPython
ReconreconftwreconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilitieslinuxmacoswindowsShell
RecongauplusA modified version of gau for personal usage. Support workers, proxies and some extra things.urllinuxmacoswindowsGo
ReconSecretFinderSecretFinder - A python script for find sensitive data (apikeys, accesstoken,jwt,..) and search anything on javascript fileslinuxmacoswindowsPython
ReconParthHeuristic Vulnerable Parameter ScannerparamlinuxmacoswindowsPython
ReconwaymoreFind way more from the Wayback Machine, Common Crawl, Alien Vault OTX, URLScan, VirusTotal & Intelligence X!urllinuxmacoswindowsPython
ReconhtcatParallel and Pipelined HTTP GET UtilitylinuxmacoswindowsGo
Recongithub-endpointsFind endpoints on GitHub.linuxmacoswindowsGo
Reconscilla🏴‍☠️ Information Gathering tool 🏴‍☠️ dns/subdomain/port enumerationsubdomains dns portlinuxmacoswindowsGo
ReconurxExtracts URLs from OSINT Archives for Security InsightsurllinuxmacoswindowsRust
ReconzdnsFast CLI DNS Lookup TooldnslinuxmacoswindowsGo
ReconbbotOSINT automation for hackersosintlinuxmacoswindowsPython
ReconfavireconUse favicon.ico to improve your target recon phase. Quickly detect technologies, WAF, exposed panels, known services.faviconlinuxmacoswindowsGo
Reconhttpxhttpx is a fast and multi-purpose HTTP toolkit allow to run multiple probers using retryablehttp library, it is designed to maintain the result reliability with increased threads.urllinuxmacoswindowsGo
ReconCT_subdomainsAn hourly updated list of subdomains gathered from certificate transparency logssubdomainslinuxmacoswindows
ReconshosubgoSmall tool to Grab subdomains using Shodan api.subdomainslinuxmacoswindowsGo
ReconnoirAttack surface detector that identifies endpoints by static analysisendpoint url attack-surfacelinuxmacosCrystal
Recongowitness🔍 gowitness - a golang, web screenshot utility using Chrome HeadlesslinuxmacoswindowsGo
ReconShodanWorld's first search engine for Internet-connected devicesosintlinuxmacoswindows
ReconaltdnsGenerates permutations, alterations and mutations of subdomains and then resolves themdns subdomainslinuxmacoswindowsPython
ReconxnLinkFinderA python tool used to discover endpoints (and potential parameters) for a given targetjs-analysislinuxmacoswindowsPython
Recongo-dorkThe fastest dork scanner written in Go.linuxmacoswindowsGo
RecongobusterDirectory/File, DNS and VHost busting tool written in GosubdomainslinuxmacoswindowsGo
ReconJSFScan.shAutomation for javascript recon in bug bounty.js-analysislinuxmacoswindowsShell
Recondnsxdnsx is a fast and multi-purpose DNS toolkit allow to run multiple DNS queries of your choice with a list of user-supplied resolvers.dnslinuxmacoswindowsGo
Recongoverviewgoverview - Get an overview of the list of URLsurllinuxmacoswindowsGo
ReconBLUTODNS Analysis TooldnslinuxmacoswindowsPython
ReconcrawlergoA powerful browser crawler for web vulnerability scannerscrawllinuxmacoswindowsGo
Reconrecon_profileRecon profile (bash profile) for bugbountylinuxmacoswindowsShell
ReconSub404A python tool to check subdomain takeover vulnerabilitysubdomains takeoverlinuxmacoswindowsGo
ReconArjunHTTP parameter discovery suite.paramlinuxmacoswindowsPython
Reconxurlfind3rA command-line utility designed to discover URLs for a given domain in a simple, efficient way.urllinuxmacoswindowsGo
ReconHydraReconAll In One, Fast, Easy Recon ToollinuxmacoswindowsPython
ReconcariddiTake a list of domains, crawl urls and scan for endpoints, secrets, api keys, file extensions, tokens and morecrawllinuxmacoswindowsGo
ReconknockKnock Subdomain ScansubdomainslinuxmacoswindowsPython
ReconSublist3rFast subdomains enumeration tool for penetration testerssubdomainslinuxmacoswindowsPython
Reconurodeclutters url lists for crawling/pentestingurllinuxmacoswindowsPython
ReconOneForAllOneForAll是一款功能强大的子域收集工具linuxmacoswindowsPython
ReconSilverMass scan IPs for vulnerable servicesportlinuxmacoswindowsPython
ReconhaktrailsGolang client for querying SecurityTrails API datalinuxmacoswindowsGo
RecondmutA tool to perform permutations, mutations and alteration of subdomains in golang.subdomainslinuxmacoswindowsGo
ReconassetfinderFind domains and subdomains related to a given domainsubdomainslinuxmacoswindowsGo
RecongospiderGospider - Fast web spider written in GocrawllinuxmacoswindowsGo
ReconmegplusAutomated reconnaissance wrapper — TomNomNom's meg on steroids. [DEPRECATED]linuxmacoswindowsShell
ReconnaabuA fast port scanner written in go with focus on reliability and simplicity. Designed to be used in combination with other tools for attack surface discovery in bug bounties and pentestsportscanlinuxmacoswindowsGo
RecondnsprobeDNSProb (beta) is a tool built on top of retryabledns that allows you to perform multiple dns queries of your choice with a list of user supplied resolvers.dnslinuxmacoswindowsGo
ReconlongtongueCustomized Password/Passphrase List inputting Target InfolinuxmacoswindowsPython
ReconGitMinerTool for advanced mining for content on GithublinuxmacoswindowsPython
ReconParamSpiderMining parameters from dark corners of Web ArchivesparamlinuxmacoswindowsPython
Reconurlhuntera recon tool that allows searching on URLs that are exposed via shortener servicesurllinuxmacoswindowsGo
ReconhakrawlerSimple, fast web crawler designed for easy, quick discovery of endpoints and assets within a web applicationcrawllinuxmacoswindowsGo
Recongithub-subdomainsFind subdomains on GitHubsubdomainslinuxmacoswindowsGo
ReconBugBountyScannerA Bash script and Docker image for Bug Bounty reconnaissance.linuxmacoswindowsShell
Reconx8Hidden parameters discovery suitelinuxmacoswindowsRust
RecongitrobReconnaissance tool for GitHub organizationslinuxmacoswindowsGo
ReconHunt3rMade your bugbounty subdomains reconnaissance easier with Hunt3r the web application reconnaissance frameworklinuxmacoswindowsRuby
ReconaquatoneA Tool for Domain FlyoversdomainlinuxmacoswindowsGo
ReconDNSDumpsterOnline dns recon & research, find & lookup dns recordsdns onlinelinuxmacoswindows
RecondnsvalidatorMaintains a list of IPv4 DNS servers by verifying them against baseline servers, and ensuring accurate responses.dnslinuxmacoswindowsPython
ReconSTEWSA Security Tool for Enumerating WebSocketslinuxmacoswindowsPython
ReconAmassIn-depth Attack Surface Mapping and Asset DiscoverysubdomainslinuxmacoswindowsGo
ReconSubBrutehttps://github.com/TheRook/subbrutesubdomainslinuxmacoswindowsPython
RecongetJSA tool to fastly get all javascript sources/filesjs-analysislinuxmacoswindowsGo
ReconHostHunterRecon tool for discovering hostnames using OSINT techniques.osintlinuxmacoswindowsPython
ReconmasscanTCP port scanner, spews SYN packets asynchronously, scanning entire Internet in under 5 minutes.portscanlinuxmacoswindowsC
ReconsubgenA really simple utility to concate wordlists to a domain name - to pipe into your favourite resolver!subdomainslinuxmacoswindowsGo
ReconshufflednsshuffleDNS is a wrapper around massdns written in go that allows you to enumerate valid subdomains using active bruteforce as well as resolve subdomains with wildcard handling and easy input-output support.dnslinuxmacoswindowsGo
ReconsubfinderSubfinder is a subdomain discovery tool that discovers valid subdomains for websites. Designed as a passive framework to be useful for bug bounties and safe for penetration testing.subdomainslinuxmacoswindowsGo
ReconPhotonIncredibly fast crawler designed for OSINT.osint crawllinuxmacoswindowsPython
ReconLepusSubdomain findersubdomainslinuxmacoswindowsPython
ReconSubOverA Powerful Subdomain Takeover Toolsubdomains takeoverlinuxmacoswindowsGo
ReconSecurityTrailsOnline dns / subdomain / recon toolsubdomains onlinelinuxmacoswindows
ReconrenginereNgine is an automated reconnaissance framework meant for gathering information during penetration testing of web applications. reNgine has customizable scan engines, which can be used to scan the websites, endpoints, and gather information.linuxmacoswindowsJavaScript
Recongraphw00fGraphQL Server Engine Fingerprinting utilitygraphqllinuxmacoswindowsPython
ReconjsluiceExtract URLs, paths, secrets, and other interesting bits from JavaScriptjs-analysislinuxmacoswindowsGo
ReconsubjsFetches javascript file from a list of URLS or subdomains.url subdomainslinuxmacoswindowsGo
ReconkatanaA next-generation crawling and spidering framework.crawllinuxmacoswindowsGo
ReconsubzySubdomain takeover vulnerability checkersubdomains takeoverlinuxmacoswindowsGo
ReconRustScanFaster Nmap Scanning with RustportscanlinuxmacoswindowsRust
ReconsubjackSubdomain Takeover tool written in Gosubdomains takeoverlinuxmacoswindowsGo
RecongauFetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl.urllinuxmacoswindowsGo
Reconchaos-clientGo client to communicate with Chaos DNS API.linuxmacoswindowsGo
Reconcc.pyExtracting URLs of a specific target based on the results of "commoncrawl.org"urllinuxmacoswindowsPython
Reconintrigue-coreDiscover Your Attack SurfacelinuxmacoswindowsRuby
ReconSmapa drop-in replacement for Nmap powered by shodan.ioportlinuxmacoswindowsGo
ReconfhcFast HTTP Checker.linuxmacoswindowsRust
ReconalterxFast and customizable subdomain wordlist generator using DSLsubdomains wordlist permutationlinuxmacoswindowsGo
ReconFavFreakMaking Favicon.ico based Recon Great again !linuxmacoswindowsPython
ReconLinkFinderA python script that finds endpoints in JavaScript filesjs-analysislinuxmacoswindowsPython
ReconfindomainThe fastest and cross-platform subdomain enumerator, do not waste your time.subdomainslinuxmacoswindowsRust
FuzzerParamPamPamThis tool for brute discover GET and POST parameters.param cache-vulnlinuxmacoswindowsPython
FuzzerwfuzzWeb application fuzzerlinuxmacoswindowsPython
FuzzerdotdotpwnDotDotPwn - The Directory Traversal Fuzzerpath-traversallinuxmacoswindowsPerl
FuzzerppfuzzA fast tool to scan client-side prototype pollution vulnerability written in Rust. 🦀prototypepollution prototype-pollutionlinuxmacoswindowsRust
FuzzerClairvoyanceObtain GraphQL API schema even if the introspection is disabledgraphqllinuxmacoswindowsPython
FuzzerSmuggleFuzzA rapid HTTP downgrade smuggling scanner written in Go.smuggle fuzzlinuxmacoswindowsGo
FuzzerBatchQLGraphQL security auditing script with a focus on performing batch GraphQL queries and mutationsgraphqllinuxmacoswindowsPython
FuzzerSSRFmapAutomatic SSRF fuzzer and exploitation toolssrflinuxmacoswindowsPython
FuzzerfuzzparamA fast go based param miner to fuzz possible parameters a URL can have.paramlinuxmacoswindowsGo
FuzzerSSRFireAn automated SSRF finder. Just give the domain name and your server and chillssrflinuxmacosShell
FuzzerkiterunnerContextual Content Discovery ToollinuxmacoswindowsGo
Fuzzerc-jwt-crackerJWT brute force cracker written in CjwtlinuxmacoswindowsC
FuzzerffufFast web fuzzer written in GolinuxmacoswindowsGo
FuzzercrlfuzzA fast tool to scan CRLF vulnerability written in GocrlflinuxmacoswindowsShell
FuzzerhashcatWorld's fastest and most advanced password recovery utilitylinuxmacoswindowsC
FuzzerBruteXAutomatically brute force all services running on a target.linuxmacoswindowsShell
Fuzzerthc-hydrahydralinuxmacoswindowsC
FuzzermedusaFastest recursive HTTP fuzzer, like a Ferrari.linuxmacoswindowsGo
FuzzerheaderpwnA fuzzer for finding anomalies and analyzing how servers respond to different HTTP headersheaderlinuxmacoswindowsGo
Fuzzerjwt-hack🔩 jwt-hack is tool for hacking / security testing to JWT. Supported for En/decoding JWT, Generate payload for JWT attack and very fast cracking(dict/brutefoce)jwtlinuxmacoswindowsGo
FuzzerCrackQLCrackQL is a GraphQL password brute-force and fuzzing utility.graphqllinuxmacoswindowsPython
FuzzerferoxbusterA fast, simple, recursive content discovery tool written in Rust.linuxmacoswindowsRust
FuzzerSSTImapAutomatic SSTI detection tool with interactive interfacesstilinuxmacoswindowsPython
FuzzerGraphQLmapGraphQLmap is a scripting engine to interact with a graphql endpoint for pentesting purposes.graphqllinuxmacoswindowsPython
Fuzzerjwt-crackerSimple HS256 JWT token brute force crackerjwtlinuxmacoswindowsJavaScript
Scannerweb_cache_poisonweb cache poison - Top 1 web hacking technique of 2019cache-vulnlinuxmacoswindowsShell
Scannerws-smugglerWebSocket Connection SmugglersmugglelinuxmacoswindowsGo
ScannerOralyzerOpen Redirection AnalyzerlinuxmacoswindowsPython
Scannerosv-scannerVulnerability scanner which uses the OSV database to find vulnerabilities in open source projectsvulnerability-scanner dependency-scanninglinuxmacoswindowsGo
ScannerPwnXSSVulnerability (XSS) scanner exploitxsslinuxmacoswindowsPython
ScannerHRSHTTP Request Smuggling demonstration Perl script, for variants 1, 2 and 5 in my BlackHat US 2020 paper HTTP Request Smuggling in 2020.linuxmacoswindowsPerl
ScannerAWSBucketDumpSecurity Tool to Look For Interesting Files in S3 Bucketss3linuxmacoswindowsPython
ScannernmapNmap - the Network Mapper. Github mirror of official SVN repository.portscanlinuxmacoswindowsC
Scannerzap-cliA simple tool for interacting with OWASP ZAP from the commandline.linuxmacoswindowszapPython
ScannerLFISuiteTotally Automatic LFI Exploiter (+ Reverse Shell) and ScannerlinuxmacoswindowsPython
ScannertrivyFind vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and morevulnerability-scanner container-security sbomlinuxmacoswindowsGo
ScannerDeadsniperA fast, specialized dead-link checkerbroken-linklinuxmacoswindowsGo
ScannergitleaksScan git repos (or files) for secrets using regex and entropy 🔑linuxmacoswindowsGo
ScannerCorsyCORS Misconfiguration ScannercorslinuxmacoswindowsPython
ScannerV3n0M-ScannerPopular Pentesting scanner in Python3.6 for SQLi/XSS/LFI/RFI and other Vulnssqli xss lfi rfilinuxmacoswindowsPython
ScannercommixAutomated All-in-One OS Command Injection Exploitation Tool.exploitlinuxmacoswindowsPython
ScannerChromium-based-XSS-Taint-TrackingCyclops is a web browser with XSS detection feature, it is chromium-based xss detection that used to find the flows from a source to a sink.xsslinuxmacoswindows
Scannerscan4allOfficial repository vuls ScanlinuxmacoswindowsGo
ScannerLOXSbest tool for finding SQLi,CRLF,XSS,LFi,OpenRedirectxss sqli crlf lfi open-redirectlinuxmacoswindowsPython
ScannerNoSQLMapAutomated NoSQL database enumeration and web application exploitation tool.nosqlilinuxmacoswindowsPython
ScannerhttprobeTake a list of domains and probe for working HTTP and HTTPS serverslinuxmacoswindowsGo
ScannerXSpearPowerfull XSS Scanning and Parameter analysis tool&gemxsslinuxmacoswindowsRuby
Scannercorsair_scanCorsair_scan is a security tool to test Cross-Origin Resource Sharing (CORS).corslinuxmacoswindowsPython
ScannersqlmapAutomatic SQL injection and database takeover toolsqlilinuxmacoswindowsPython
ScannerDSSSDamn Small SQLi ScannersqlilinuxmacoswindowsPython
ScannerCMSmapCMSmap is a python open source CMS scanner that automates the process of detecting security flaws of the most popular CMSs.web-scanner vulnerability-scannerlinuxmacoswindowsPython
ScannerNoXssFaster xss scanner,support reflected-xss and dom-xssxsslinuxmacoswindowsPython
ScannerXSStrikeMost advanced XSS scanner.xsslinuxmacoswindowsPython
ScannerpphackThe Most Advanced Client-Side Prototype Pollution Scannerprototypepollution prototype-pollutionlinuxmacoswindowsGo
Scannersqlivmassive SQL injection vulnerability scannersqlilinuxmacoswindowsPython
ScannerPPScanClient Side Prototype Pollution Scannerprototypepollution prototype-pollutionlinuxmacoswindowsJavaScript
ScannerFockCacheMinimalized Test Cache Poisoningcache-vulnlinuxmacoswindowsGo
Scannerjsprimea javascript static security analysis tooljs-analysislinuxmacoswindowsJavaScript
Scannerh2csmugglerHTTP Request Smuggling Detection ToolsmugglelinuxmacoswindowsGo
ScannerarachniWeb Application Security Scanner FrameworklinuxmacoswindowsRuby
ScannernosqliNoSql Injection CLI toolnosqlilinuxmacoswindowsGo
ScannerdepenfusionA powerful pentesting tool for detecting and exploiting dependency confusion vulnerabilities in Node.js projectsdependency-confusionlinuxmacoswindowsPython
ScannerxsssniperAn automatic XSS discovery toolxsslinuxmacoswindowsPython
ScannerDeepVioletTool for introspection of SSL\TLS sessionsssllinuxmacoswindowsJava
Scannerdontgo403Tool to bypass 40X response codes.403linuxmacoswindowsGo
Scannertestssl.shTesting TLS/SSL encryption anywhere on any portssllinuxmacoswindowsShell
ScannerDOMPurifyDOMPurify - a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. DOMPurify works with a secure default, but offers a lot of configurability and hooks. Demo:xsslinuxmacoswindowsJavaScript
ScannerSQLiDetectorSimple python script supported with BurpBouty profile that helps you to detect SQL injection "Error based" by sending multiple requests with 14 payloads and checking for 152 regex patterns for different databases.sqlilinuxmacoswindowsPython
ScannerdittoA tool for IDN homograph attacks and detection.linuxmacoswindowsGo
ScannerS3ScannerScan for open AWS S3 buckets and dump the contentss3linuxmacoswindowsPython
ScannerwpreconHello! Welcome. Wprecon (Wordpress Recon), is a vulnerability recognition tool in CMS Wordpress, 100% developed in Go.linuxmacoswindowsGo
Scannerwebsocket-connection-smugglerwebsocket-connection-smugglersmugglelinuxmacoswindowsGo
Scannerhttp-request-smugglingHTTP Request Smuggling Detection ToollinuxmacoswindowsPython
ScannerhinjectHost Header Injection CheckerheaderlinuxmacoswindowsGo
ScannerppmapA scanner/exploitation tool written in GO, which leverages client-side Prototype Pollution to XSS by exploiting known gadgets.prototypepollution prototype-pollutionlinuxmacoswindowsGo
ScannerrapidscanThe Multi-Tool Web Vulnerability Scanner.linuxmacoswindowsPython
ScannerConfusedDotnetTool to check for dependency confusion vulnerabilities in NuGet package management systemsdependency-confusionwindowsC#
ScannerOpenRedireXA Fuzzer for OpenRedirect issueslinuxmacoswindowsPython
Scannerhttp2smuglThis tool helps to detect and exploit HTTP request smuggling in cases it can be achieved via HTTP/2 -> HTTP/1.1 conversion by the frontend server.linuxmacoswindowsGo
ScannerWeb-Cache-Vulnerability-ScannerWeb Cache Vulnerability Scanner is a Go-based CLI tool for testing for web cache poisoning. It is developed by Hackmanit GmbH (http://hackmanit.de/).cache-vulnlinuxmacoswindowsGo
ScannerheadiCustomisable and automated HTTP header injectionheaderlinuxmacoswindowsGo
Scannerssrf-sheriffA simple SSRF-testing sheriff written in GossrflinuxmacoswindowsGo
ScannerS3cret ScannerHunting For Secrets Uploaded To Public S3 Bucketss3linuxmacoswindowsPython
ScannerCorsMeCross Origin Resource Sharing MisConfiguration ScannercorslinuxmacoswindowsGo
ScannerStrikerStriker is an offensive information and vulnerability scanner.linuxmacoswindowsPython
Scannera2svAuto Scanning to SSL VulnerabilityssllinuxmacoswindowsPython
ScannerautopoisonerWeb cache poisoning vulnerability scanner.cache-vulnlinuxmacoswindowsPython
ScannertrufflehogFind and verify credentials in git repositories, filesystems, and S3 bucketssecret-scanning credentialslinuxmacoswindowsGo
Scannerdalfox🌘🦊 Dalfox is a powerful open-source XSS scanner and utility focused on automation.xsslinuxmacoswindowsGo
ScannertplmapServer-Side Template Injection and Code Injection Detection and Exploitation ToollinuxmacoswindowsPython
ScannerplutionPrototype pollution scanner using headless chromeprototypepollution prototype-pollutionlinuxmacoswindowsGo
ScannergitGrabergitGraberlinuxmacoswindowsPython
Scannerxsinator.comXS-Leak Browser Test SuitelinuxmacoswindowsJavaScript
ScannernucleiNuclei is a fast tool for configurable targeted scanning based on templates offering massive extensibility and ease of use.linuxmacoswindowsGo
ScannerconfusedTool to check for dependency confusion vulnerabilities in multiple package management systemsdependency-confusionlinuxmacoswindowsGo
ScannerniktoNikto web server scannerlinuxmacoswindowsPerl
ScannerwpscanWPScan is a free, for non-commercial use, black box WordPress Vulnerability Scanner written for security professionals and blog maintainers to test the security of their WordPress websites.linuxmacoswindowsRuby
ScannerxsserCross Site "Scripter" (aka XSSer) is an automatic -framework- to detect, exploit and report XSS vulnerabilities in web-based applications.xsslinuxmacoswindowsPython
ScannerDeadFinderFind dead-links (broken links)broken-linklinuxmacoswindowsRuby
ScannerdomdigDOM XSS scanner for Single Page ApplicationsxsslinuxmacoswindowsJavaScript
ScannersmugglexRust-powered HTTP Request Smuggling ScannersmugglelinuxmacoswindowsRust
ScannersemgrepLightweight static analysis for many languages. Find bug variants with patterns that look like source code.sast code-analysislinuxmacoswindowsPython
Scannergithub-searchTools to perform basic search on GitHub.linuxmacoswindowsJavaScript
Scannerfindom-xssA fast DOM based XSS vulnerability scanner with simplicity.xsslinuxmacoswindowsShell
ScannersmugglerSmuggler - An HTTP Request Smuggling / Desync testing tool written in Python 3smugglelinuxmacoswindowsPython
ScannerVHostScanA virtual host scanner that performs reverse lookups, can be used with pivot tools, detect catch-all scenarios, work around wildcards, aliases and dynamic default pages.linuxmacoswindowsPython
ScannerDirDarDirDar is a tool that searches for (403-Forbidden) directories to break it and get dir listing on it403linuxmacoswindowsGo
Scannerdependency-confusion-scannerThis small repo is meant to scan Github's repositories for potential Dependency confusion vulnerabilities.dependency-confusionlinuxmacoswindowsPython
ScannerXssPyWeb Application XSS ScannerxsslinuxmacoswindowsPython
ScannerTaipanWeb application vulnerability scannerlinuxmacoswindows
ScannerxsscrapyXSS/SQLi spider. Give it a URL and it'll test every link it finds for XSS and some SQLi.xsslinuxmacoswindowsPython
ScannerwapitiWeb application vulnerability scanner. Wapiti allows you to audit the security of your websites or web applications.vulnerability-scanner web-scannerlinuxmacoswindowsPython
ScannerdeadlinksHealth checks for your documentation links.broken-linklinuxmacoswindowsPython
Scannercloud-auditFast, opinionated AWS security scanner with Terraform remediation and attack chain detectionaws cloud security terraformlinuxmacoswindowsPython
ExploitghauriAn advanced cross-platform tool that automates the process of detecting and exploiting SQL injection security flawssqlilinuxmacoswindowsPython
ExploitXXEinjectorTool for automatic exploitation of XXE vulnerability using direct and different out of band methods.xxelinuxmacoswindowsRuby
ExploittoxssinAn XSS exploitation command-line interface and payload generator.xsslinuxmacoswindowsPython
ExploitBaRMIeJava RMI enumeration and attack tool.RMIlinuxmacoswindowsJava
Exploitof-CORSIdentifying and exploiting CORS misconfigurations on the internal networkscorslinuxmacoswindowsPython
ExploitxxeservA mini webserver with FTP support for XXE payloadslinuxmacoswindowsGo
ExploitXXExploiterTool to help exploit XXE vulnerabilitiesxxelinuxmacoswindowsTypeScript
ExploitbeefThe Browser Exploitation Framework ProjectxsslinuxmacoswindowsRuby
ExploitGopherusThis tool generates gopher link for exploiting SSRF and gaining RCE in various serversssrflinuxmacoswindowsPython
ExploitXSRFProbeThe Prime Cross Site Request Forgery (CSRF) Audit and Exploitation Toolkit.linuxmacoswindowsPython
ExploitroprA blazing fast™ multithreaded ROP Gadget finder. ropperroplinuxmacoswindowsRust
ExploitsingularityA DNS rebinding attack framework.linuxmacoswindowsJavaScript
ExploitLiffyLocal file inclusion exploitation toollfilinuxmacoswindowsPython
Exploitjwt_toolA toolkit for testing, tweaking and cracking JSON Web Tokensjwt authenticationlinuxmacoswindowsPython
ExploitSn1perAutomated pentest framework for offensive security expertslinuxmacoswindowsShell
ExploitSQLNinjaSqlninja is a tool targeted to exploit SQL Injection vulnerabilities.sqlilinuxmacosPerl
Utilszip-bombCreate a ZIPBomb for a given uncompressed size (flat and nested modes).zipbomblinuxmacoswindowsPython
UtilsgotatorGotator is a tool to generate DNS wordlists through permutations.linuxmacoswindowsGo
UtilswuzzInteractive cli tool for HTTP inspectionhttplinuxmacoswindowsGo
UtilsdocemUility to embed XXE and XSS payloads in docx,odt,pptx,etc (OXML_XEE on steroids)xxe xsslinuxmacoswindowsPython
UtilsmapcidrUtility program to perform multiple operations for a given subnet/CIDR rangescidr network ip-manipulationlinuxmacoswindowsGo
UtilsGadgetProbeProbe endpoints consuming Java serialized objects to identify classes, libraries, and library versions on remote Java classpaths.deserializelinuxmacoswindowsJava
UtilsdsieveFilter and enrich a list of subdomains by levelsubdomainslinuxmacoswindowsGo
UtilsquickjackQuickjack is a point-and-click tool for intuitively producing advanced clickjacking and frame slicing attacks.linuxmacoswindowsJavaScript
UtilsCyberChefThe Cyber Swiss Army Knife - a web app for encryption, encoding, compression and data analysislinuxmacoswindowsJavaScript
UtilsAtlasQuick SQLMap Tamper SuggestersqlilinuxmacoswindowsPython
UtilsurlprobeUrls status code & content length checkerurllinuxmacoswindowsGo
UtilsEmissarySend notifications on different channels such as Slack, Telegram, Discord etc.notifylinuxmacoswindowsGo
Utilscf-checkCloudflare Checker written in GolinuxmacoswindowsGo
Utils230-OOBAn Out-of-Band XXE server for retrieving file contents over FTP.xxelinuxmacoswindowsPython
UtilsanewA tool for adding new lines to files, skipping duplicateslinuxmacoswindowsGo
Utilsbruteforce-listsSome files for bruteforcing certain things.wordlist documentslinuxmacoswindowsTxt
UtilsmubengAn incredibly fast proxy checker & IP rotator with ease.linuxmacoswindowsGo
Utilsgithub-regexpBasically a regexp over a GitHub search.linuxmacoswindowsGo
UtilsautochromeThis tool downloads, installs, and configures a shiny new copy of Chromium.linuxmacoswindowsHTML
UtilsfffThe Fairly Fast Fetcher. Requests a bunch of URLs provided on stdin fairly quickly.urllinuxmacoswindowsGo
UtilsgrexA command-line tool and library for generating regular expressions from user-provided test caseslinuxmacoswindowsRust
UtilsIntruderPayloadslinuxmacoswindowsburpBlitzBasic
UtilstiscriptsTurbo Intruder ScriptslinuxmacoswindowsPython
UtilshakcheckurlTakes a list of URLs and returns their HTTP response codeslinuxmacoswindowsGo
UtilsjsfuckWrite any JavaScript with 6 CharactersxsslinuxmacoswindowsJavaScript
UtilsfzfA command-line fuzzy finderlinuxmacoswindowsGo
UtilsAssetnote WordlistsAutomated & Manual Wordlists provided by Assetnotewordlist documentslinuxmacoswindowsCSS
UtilsdnsobserverA handy DNS service written in Go to aid in the detection of several types of blind vulnerabilities. It monitors a pentester's server for out-of-band DNS interactions and sends lookup notifications via Slack.oast dnslinuxmacoswindowsGo
Utilsysoserial.netDeserialization payload generator for a variety of .NET formattersdeserializelinuxmacoswindowsC#
UtilsTukTukTool for catching and logging different types of requests.oastlinuxmacoswindowsGo
Utilspentest-toolsCustom pentesting toolslinuxmacoswindowsPython
UtilshbxssSecurity test tool for Blind XSSxss blind-xsslinuxmacoswindowsRuby
UtilsSecListsSecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place.wordlist documentslinuxmacoswindowsTxt
UtilshurlHurl, run and test HTTP requests.linuxmacoswindowsRust
UtilsurlgrabA golang utility to spider through a website searching for additional links.urllinuxmacoswindowsGo
Utilssecurity-crawl-mazeSecurity Crawl Maze is a comprehensive testbed for web security crawlers. It contains pages representing many ways in which one can link resources from a valid HTML document.crawllinuxmacoswindowsHTML
UtilsinteractshAn OOB interaction gathering server and client libraryoastlinuxmacoswindowsGo
UtilseoycEncoding Only Your ChoicesencodelinuxmacoswindowsCrystal
UtilsgxssBlind XSS service alerting over slack or emailxss blind-xsslinuxmacoswindowsGo
UtilsGf-PatternsGF Paterns For (ssrf,RCE,Lfi,sqli,ssti,idor,url redirection,debug_logic) parameters greplinuxmacoswindows
UtilsPayloadsAllTheThingsA list of useful payloads and bypass for Web Application Security and Pentest/CTFlinuxmacoswindowsPython
Utilsreverse-shell-generatorHosted Reverse Shell generator with a ton of functionality. -- (Great for CTFs)payloadlinuxmacoswindowsJavaScript
Utilsweaponised-XSS-payloadsXSS payloads designed to turn alert(1) into P1xss documentslinuxmacoswindowsJavaScript
UtilsCSP EvaluatorOnline CSP Evaluator from googlecsplinuxmacoswindows
UtilsboastThe BOAST Outpost for AppSec Testing (v0.1.0)oastlinuxmacoswindowsGo
UtilsREcollapseREcollapse is a helper tool for black-box regex fuzzing to bypass validations and discover normalizations in web applicationsfuzzlinuxmacoswindowsPython
UtilsburlA Broken-URL CheckerurllinuxmacoswindowsGo
UtilsSerializationDumperA tool to dump Java serialization streams in a more human readable form.deserializelinuxmacoswindowsJava
Utilspwncatpwncat - netcat on steroids with Firewall, IDS/IPS evasion, bind and reverse shell, self-injecting shell and port forwarding magic - and its fully scriptable with Python (PSE)linuxmacoswindowsShell
UtilshttptoolkitHTTP Toolkit is a beautiful & open-source tool for debugging, testing and building with HTTP(S) on Windows, Linux & Maclinuxmacoswindows
Utilsnuclei-templatesCommunity curated list of templates for the nuclei engine to find security vulnerabilities.nuclei-templateslinuxmacoswindowsGo
UtilspdtmProjectDiscovery's Open Source Tool Managerpackage-manager tools-managementlinuxmacoswindowsGo
UtilsFindsploitFind exploits in local and online databases instantlyexploitlinuxmacoswindowsShell
UtilsPhoenixhahwul's online toolsonlinelinuxmacoswindowsJavaScript
UtilsSequenceDiagramOnline tool for creating UML sequence diagramsonlinelinuxmacoswindows
UtilsblistenerBlind-XSS listener with payloadsxss blind-xsslinuxmacoswindowsGo
Utilsxssor2XSS'OR - Hack with JavaScript.xsslinuxmacoswindowsJavaScript
Utilsh2spacexHTTP/2 Single Packet Attack low level library based on Scapyrace-conditionlinuxmacoswindowsPython
Utilsdifftastica structural diff that understands syntaxdifflinuxmacoswindowsRust
UtilsbatA cat(1) clone with wings.linuxmacoswindowsRust
Utilshttpiemodern, user-friendly command-line HTTP client for the API erahttplinuxmacoswindowsPython
UtilswssipApplication for capturing, modifying and sending custom WebSocket data from client to server and vice versa.linuxmacoswindowsJavaScript
UtilsxlessThe Serverless Blind XSS Appxss blind-xsslinuxmacoswindowsJavaScript
UtilsqsreplaceAccept URLs on stdin, replace all query string values with a user-supplied valuelinuxmacoswindowsGo
UtilsClipboardAn external brain that remembers anything, anytime, anywhere.clipboardlinuxmacoswindowsC++
UtilsgronMake JSON greppable!jsonlinuxmacoswindowsGo
Utilssecurity-research-pocsProof-of-concept codes created as part of security research done by Google Security Team.linuxmacoswindowsC++
UtilsslackcatCLI utility to post files and command output to slacknotifylinuxmacoswindowsGo
UtilsZipBombA simple implementation of ZipBomb in PythonzipbomblinuxmacoswindowsPython
Utilscan-i-take-over-xyz"Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.linuxmacoswindows
Utilss3reverseThe format of various s3 buckets is convert in one format. for bugbounty and security testing.s3linuxmacoswindowsGo
Utilstemplate-generatorA simple variable based template editor using handlebarjs+strapdownjs. The idea is to use variables in markdown based files to easily replace the variables with content. Data is saved temporarily in local storage. PHP is only needed to generate the list of files in the dropdown of templates.linuxmacoswindowsJavaScript
Utilsgrcgeneric colouriserlinuxmacoswindowsPython
UtilsysoserialA proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.deserializelinuxmacoswindowsJava
UtilsgitlsListing git repository from URL/User/OrglinuxmacoswindowsGo
Utilsob_hacky_slackHacky Slack - a bash script that sends beautiful messages to SlacknotifylinuxmacoswindowsShell
Utilsgee🏵 Gee is tool of stdin to each files and stdout. It is similar to the tee command, but there are more functions for convenience. In addition, it was written as golinuxmacoswindowsGo
Utilsrace-the-webTests for race conditions in web applications by sending out a user-specified number of requests to a target URL (or URLs) simultaneously, and then compares the responses from the server for uniqueness.race-conditionlinuxmacoswindowsGo
UtilshoppscotchOpen source API development ecosystemhttplinuxmacoswindowsTypeScript
UtilsgotestwafAn open-source project in Golang to test different web application firewalls (WAF) for detection logic and bypasseslinuxmacoswindowsGo
UtilsgfA wrapper around grep, to help you grep for thingslinuxmacoswindowsGo
Utilsxss-cheatsheet-dataThis repository contains all the XSS cheatsheet data to allow contributions from the community.xsslinuxmacoswindows
Utilsnuclei-wordfence-cveEvery single day new templates are added to this repo based on updates on Wordfence.comnuclei-templateslinuxmacoswindowsPython
UtilsgodeclutterDeclutters URLs in a fast and flexible way, for improving input for web hacking automations such as crawlers and vulnerability scans.urllinuxmacoswindowsGo
Utilsmissing-cve-nuclei-templatesWeekly updated list of missing CVEs in nuclei templates official repositorynuclei-templateslinuxmacoswindowsTxt
UtilshacksA collection of hacks and one-off scriptslinuxmacoswindowsGo
UtilsBug-Bounty-ToolzBBT - Bug Bounty ToolslinuxmacoswindowsPython
UtilsXSS-CatcherFind blind XSS but why not gather data while you're at it.xss blind-xsslinuxmacoswindowsPython
UtilsBlacklist3rproject-blacklist3rlinuxmacoswindowsC#
Utilsoxml_xxeA tool for embedding XXE/XML exploits into different filetypeslinuxmacoswindowsRuby
UtilsunfurlPull out bits of URLs provided on stdinurllinuxmacoswindowsGo
UtilscurlA command line tool and library for transferring data with URL syntax, supporting HTTP, HTTPS, FTP, FTPS, GOPHER, TFTP, SCP, SFTP, SMB, TELNET, DICT, LDAP, LDAPS, MQTT, FILE, IMAP, SMTP, POP3, RTSP and RTMP. libcurl offers a myriad of powerful featureslinuxmacoswindowsC
UtilsRedcloudAutomated Red Team Infrastructure deployement using DockerinfralinuxmacoswindowsPython
UtilspetSimple command-line snippet manager, written in Go.linuxmacoswindowsGo
UtilsezXSSezXSS is an easy way for penetration testers and bug bounty hunters to test (blind) Cross Site Scripting.xss blind-xsslinuxmacoswindowsPHP
Utilsgraphql-voyager🛰️ Represent any GraphQL API as an interactive graphgraphqllinuxmacoswindowsTypeScript
UtilsGQLSpectionparses GraphQL introspection schema and generates possible queriesgraphqllinuxmacoswindowsPython
UtilscentCommunity edition nuclei templates, a simple tool that allows you to organize all the Nuclei templates offered by the community in one place.nuclei-templateslinuxmacoswindowsGo
UtilsbountyplzAutomated security reporting from markdown templates (HackerOne and Bugcrowd are currently the platforms supported)reportlinuxmacoswindowsShell
UtilsPoC-in-GitHub📡 PoC auto collect from GitHub. Be careful malware.linuxmacoswindows
Envpentest-envPentest environment deployer (kali linux + targets) using vagrant and chef.pentestlinuxmacoswindowsRuby
EnvGlueApplication Security AutomationlinuxmacoswindowsRuby
EnvCrimsonWeb Application Security Testing automation.linuxmacoswindowsPython

Bookmarklets

TypeNameDescriptionStarTagsBadges

Browser Addons

TypeNameDescriptionStarTagsBadges
ProxyrepChrome DevTools extension for capturing, modifying, and replaying HTTP requests with AI-powered security analysishttp repeaterchromeJavaScript
ReconWayback MachineHistory of websitelinuxmacoswindowssafari
ReconDotGitAn extension for checking if .git is exposed in visited websiteslinuxmacoswindowsfirefoxchromeJavaScript
UtilsPwnFoxFirefox/Burp extension that provide usefull tools for your security audit.linuxmacoswindowsfirefoxburpJavaScript
Utilseval_villainA Firefox Web Extension to improve the discovery of DOM XSS.xsslinuxmacoswindowsfirefoxzapJavaScript
UtilspostMessage-trackerA Chrome Extension to track postMessage usage (url, domain and stack) both by logging using CORS and also visually as an extension-iconjs-analysislinuxmacoswindowschromeJavaScript
UtilsEdit-This-CookieEditThisCookie is the famous Google Chrome/Chromium extension for editing cookiescookielinuxmacoswindowschromeJavaScript
UtilsFirefox Multi-Account ContainersFirefox Multi-Account Containers lets you keep parts of your online life separated into color-coded tabslinuxmacoswindowsfirefoxJavaScript
Utilsfirefox-container-proxyAssign a proxy to a Firefox containerlinuxmacoswindowsfirefoxJavaScript
Utilsclear-cacheAdd-on to clear browser cache with a single click or via the F9 key.linuxmacoswindowsfirefoxchromeJavaScript
Utilsjsonwebtoken.github.ioJWT En/Decode and VerifyjwtlinuxmacoswindowsJavaScript
UtilsDOMLogger++A browser extension that allows you to monitor, intercept, and debug JavaScript sinks based on customizable configurations.dom xsslinuxmacoswindowsfirefoxchromeJavaScript
UtilsHack-ToolsThe all-in-one Red Team extension for Web Pentester 🛠linuxmacoswindowsfirefoxchromesafariTypeScript
UtilsZAP Browser ExtensionA browser extension which allows ZAP to interact directly with the browser.browser-recordlinuxmacoswindowsfirefoxchromezapTypeScript
UtilsUser-Agent Switcherquick and easy way to switch between user-agents.linuxmacoswindowsfirefox
UtilsDark Reader for SafariDark mode to any sitelinuxmacoswindowssafari
UtilsMM3 ProxySwitchProxy Switch in Firefox and ChromelinuxmacoswindowsfirefoxchromeJavaScript
Utilscookie-quick-managerAn addon to manage (view, search, create, edit, remove, backup, restore) cookies on Firefox.cookielinuxmacoswindowsfirefoxJavaScript
UtilsDark ReaderDark mode to any sitedarkmodelinuxmacoswindowsfirefoxchromeTypeScript

Burpsuite, Caido and ZAP Addons

TypeNameDescriptionStarTagsBadges
ReconHUNTIdentifies common parameters vulnerable to certain vulnerability classesparamlinuxmacoswindowszapburpKotlin
ReconBurpSuite-Secret_Finderlinuxmacoswindowsburp
Reconattack-surface-detector-burpThe Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parametersendpoint url attack-surfacelinuxmacoswindowsburpJava
Reconattack-surface-detector-zapThe Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parametersendpoint url attack-surfacelinuxmacoswindowszapJava
ReconDr. WatsonDr. Watson is a simple Burp Suite extension that helps find assets, keys, subdomains, IP addresses, and other useful informationparam subdomainslinuxmacoswindowsburpPython
ReconBurpJSLinkFinderjs-analysislinuxmacoswindowsburpPython
Reconburp-retire-jsjs-analysislinuxmacoswindowsburpJavaScript
Reconreflected-parametersparamlinuxmacoswindowsburpJava
FuzzerGAPThis is an evolution of the original getAllParams extension for Burp. Not only does it find more potential parameters for you to investigate, but it also finds potential links to try these parameters on.paramlinuxmacoswindowsburpPython
Fuzzerparam-minerParam Minerparam cache-vulnlinuxmacoswindowsburpJava
Scannercollaborator-everywhereoastlinuxmacoswindowsburpJava
ScannerAuthMatrixaaalinuxmacoswindowsburpPython
Scannerhttp-request-smugglersmugglelinuxmacoswindowsburpJava
Scannercsp-auditorcsplinuxmacoswindowszapburpJava
ScannerBurpSuiteHTTPSmugglersmugglelinuxmacoswindowsburpJava
ScannerAutorizeaaalinuxmacoswindowsburpPython
UtilsWeb3 DecoderBurp Extension for Web3web3linuxmacoswindowsburpJava
Utilsburp-exporterlinuxmacoswindowsburpPython
UtilsgRPC-Web Pentest SuitegRPC-Pentest-Suite is set of tools for pentesting / hacking gRPC Web (gRPC-Web) applications.gRPC-WebburplinuxmacoswindowsPython
Utilspcap-burpPcap importer for BurplinuxmacoswindowsburpJava
UtilssafecopylinuxmacoswindowsburpJava
UtilsargumentinjectionhammerA Burp Extension designed to identify argument injection vulnerabilities.linuxmacoswindowsburpPython
Utilscommunity-scriptslinuxmacoswindowszapJavaScript
utilsNeonmarkerlinuxmacoswindowszapJava
UtilsnotebookNotebook Caido PluginnotelinuxmacoswindowscaidoTypeScript
UtilsAWSSignerBurp Extension for AWS SigninglinuxmacoswindowsburpJava
UtilsMap LocalZAP add-on which allows mapping of responses to content of a chosen local file.linuxmacoswindowszapJava
UtilsBurpSuiteLoggerPlusPluslinuxmacoswindowsburpJava
UtilsinqllinuxmacoswindowsburpPython
Utilsburp-piperlinuxmacoswindowsburpKotlin
UtilsreflectlinuxmacoswindowszapKotlin
UtilsStepperlinuxmacoswindowsburpJava
Utilshttp-script-generatorlinuxmacoswindowszapburpJava
UtilstaboratoroastlinuxmacoswindowsburpJava
UtilsEvenBetterEvenBetter is a frontend Caido plugin that makes the Caido experience even betterencode ssrf darkmodelinuxmacoswindowscaidoTypeScript
UtilsEvenBetterExtensionsEvenBetterExtensions allows you to quicky install and keep updated Caido extensions.encode ssrf darkmodelinuxmacoswindowscaidoTypeScript
UtilsBurpCustomizerBecause just a dark theme wasn't enough!linuxmacoswindowsburpJava
UtilsBerserkoBurp Suite extension to perform Kerberos authenticationlinuxmacoswindowsburpJava
Utilscaidopecaidope - caido pluginlinuxmacoswindowscaidoTypeScript
UtilsBurpBountylinuxmacoswindowsburpBlitzBasic
Utilsturbo-intruderlinuxmacoswindowsburpKotlin
UtilsfemidalinuxmacoswindowsburpPython
UtilsDecoder-ImprovedImproved decoder for Burp SuitelinuxmacoswindowsburpJava
Utilszap-hudlinuxmacoswindowszapJava
UtilsknifeA burp extension that add some useful function to Context Menu 添加一些右键菜单让burp用起来更顺畅linuxmacoswindowsJava
UtilsAuthMatrixAutomated HTTP Request Repeating With Burp SuitelinuxmacoswindowsburpJava
UtilsblackboxprotobufBlackbox protobuf is a Burp Suite extension for decoding and modifying arbitrary protobuf messages without the protobuf type definition.linuxmacoswindowsburpPython
UtilsHTTPSignaturesA Burp Suite extension implementing the Signing HTTP Messages draft-ietf-httpbis-message-signatures-01 draft.linuxmacoswindowsburpJava
UtilsCaidoReflectorAutomatically look for paramater reflections in the HTTP responsexsslinuxmacoswindowscaidoTypeScript
Utilsburp-send-tolinuxmacoswindowsburpJava
utilsowasp-zap-jwt-addonjwtlinuxmacoswindowszapJava

Thanks to (Contributor)

WHW's open-source project and made it with ❤️ if you want contribute this project, please see CONTRIBUTING.md and Pull-Request with cool your contents.