Awesome Learning
Section: Tutorials
Entry
Appears in 4 awesome lists
Feature-rich, scriptable HTTP intercepting proxy and fuzzer for penetration testing web applications.
Section: Tutorials
Section: Web Security Testing · Open-source web application security scanner.
Section: Intercepting Web proxies · Feature-rich, scriptable HTTP intercepting proxy and fuzzer for penetration testing web applications.
Section: Scanning · Open-source web application security scanner maintained by the ZAP Core Team.
This is mostly focused on Infrastructure, but if you're testing a series of systems, this is very useful.
Reader and rewriter of EXIF informations that supports raw files.
A Python tool used for intercepting, viewing and modifying network traffic. Invaluable in troubleshooting certain problems. (Source Code) MIT Python
Checklist of the most important security countermeasures when designing, testing, and releasing your API.
Automated All-in-One OS command injection and exploitation tool by @commixproject.
Burp Suite is an integrated platform for performing security testing of web applications by portswigger.
An effort to build a single place for all useful android and iOS security related stuff.