Declarative multi-agent framework for AI-driven code auditing.
Outils pour web apps
HTTP/S applications and APIs.
105 tools indexed
Directory, DNS and vhost brute-forcer.
Generate gopher:// SSRF payloads.
Open-source phishing toolkit.
Open-source HTTP toolkit for sec research.
AI agents autonomously drive 150+ security tools via MCP.
OSINT-driven hostname discovery.
Next-generation crawling framework.
Mine historical contacts from web.archive.org snapshots.
Intentionally vulnerable OWASP LLM Top 10 training platform
Local-LLM CLI that drives recon tools and AI-analyzes targets.
Username OSINT across 3000+ sites.
Self-hostable email OSINT platform, no API keys required.
Graph-based OSINT and link analysis.
Exploit development and delivery platform.
Nika
—Cross-file taint-analysis SAST for Java microservices
Classic web server scanner.
Nox
—Modular Go framework for attack surface management and scanning
Template-based vulnerability scanner.
Adversary emulation for AI agents, LLM apps and MCP servers
Local-first link-analysis and geospatial board for investigations.
In-depth attack surface mapping.
Modern intentionally vulnerable web app.
Automated pentest + vuln scanner.