Explore 18 curated tools and resources
An AI-powered career platform that automates the creation of cybersecurity job application materials and provides company-specific insights for job seekers.
A weekly newsletter providing cybersecurity leadership insights, industry updates, and strategic guidance for security professionals advancing to management positions.
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.
A cloud-native web application and API security solution that uses contextual AI to protect against known and zero-day threats without signature-based detection.
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.
A web application security testing platform that combines manual and automated testing tools for conducting comprehensive security assessments and penetration testing.
A reverse proxy solution that provides data access control, monitoring, and security policy enforcement for databases and APIs within organization's infrastructure.
A tool to easily automate and multithread your pentesting and bug bounty workflow without any coding
Intercepts and examines mobile app connections by stripping SSL/TLS layer.
Open-source Java application for creating proxies for traffic analysis & modification.
Firewall, Blackhole, and Privatizing Proxy for macOS with comprehensive security features.
Honeytrap is a low-interaction honeypot and network security tool with various modes of operation and plugin support for catching attacks against TCP and UDP services.
A free and open source C2 and proxy for penetration testers
Pac-resolver, a popular NPM package with 3 million weekly downloads, has a severe remote code execution flaw.
A WebSocket Manipulation Proxy with a user interface to capture, intercept, and send custom messages for WebSocket and Socket.IO communications.
Chameleon aids in evading proxy categorization to bypass internet filters.
A penetration testing tool for intercepting SSH connections and logging plaintext passwords.
Tool for enumerating proxy configurations and generating CobaltStrike-compatible shellcode.
A logging proxy tool created in response to the 'MongoDB Apocalypse', with Docker support.
mitmproxy is an interactive, SSL/TLS-capable intercepting proxy with a console interface for HTTP/1, HTTP/2, and WebSockets.
A Java based HTTP/HTTPS proxy for assessing web application vulnerability with various useful features.
A proxy aware C2 framework for penetration testing, red teaming, post-exploitation, and lateral movement with modular format and highly configurable payloads.