Graph-based OSINT and link analysis.
Outils pour web apps
HTTP/S applications and APIs.
74 tools indexed
Exploit development and delivery platform.
Classic web server scanner.
Template-based vulnerability scanner.
In-depth attack surface mapping.
Modern intentionally vulnerable web app.
Automated pentest + vuln scanner.
Open-source web app scanner.
Completely ridiculous API (training target).
Benchmark prompt-injection attacks on LLMs.
Burp extension for parameter discovery.
OSINT framework for phone numbers.
JavaScript deobfuscator.
Full-featured reconnaissance framework.
Detect vulnerable JS libraries.
Automatic SSRF fuzzer.
Self-hosted open-source WAF.
API fuzzer from OpenAPI/GraphQL.
The security tester's wordlist collection.
Hunt usernames across social networks.
DNS rebinding attack framework.
Find a profile across 1000+ networks.
Social-engineering attack framework.
Automated OSINT collection.