
rage against the network is a dumb protocol-unaware packet fuzzer/replayer. Basic ideas: * ridiculously easy to use (near-zero setup cost) * protocol-unaware; blind brute-force fuzzing…

idb is a tool to simplify some common tasks for iOS app security assessments and research. idb had the ability to dump the keychain of…

Latest Change v1.0.7: + waf: New WAF script (SonicWALL). + Plugins & sqlmap.py: Minor just in case patch. sqlmap is an open source penetration testing…

Latest change v1.0.6: + sqlmap.conf ; Adding option –tmp-dir + Minor upgrade for WAF/IDS/IPS detection + doc : Adding translation for README in Japanese(JP). sqlmap…

This tool aims to look through files in a given directory to detect any unsafe, vulnerable, or dangerous function calls. It is designed to be…

TLS-Attacker is a Java-based framework for analyzing TLS libraries. It is able to send arbitrary protocol messages in an arbitrary order to the TLS peer,…

Radamsa is a test case generator for robustness testing, a.k.a. a fuzzer. It is typically used to test how well a program can withstand malformed…

DroidFuzzer is a Android fuzzing toolkit that is mean to target devices and their mechanisms for parsing things like images and documents. DroidFuzzer is meant…