ffufai is an AI-powered wrapper for the web fuzzer ffuf that automatically suggests file extensions for fuzzing based on the target URL and its headers. The tool integrates with ffuf and uses either OpenAI's GPT or Anthropic's Claude AI models to generate relevant file extensions for more effective fuzzing. Key features include: 1. Seamless integration with ffuf 2. Automatic suggestion of relevant file extensions 3. Support for both OpenAI and Anthropic AI models 4. Pass-through of all ffuf parameters ffufai requires Python 3.6+ and ffuf to be installed. It accepts all ffuf parameters and introduces additional options such as specifying the ffuf path and setting the maximum number of extensions to suggest. The tool aims to enhance the efficiency of web fuzzing by leveraging AI to identify potentially relevant file extensions based on the target environment.
FEATURES
SIMILAR TOOLS
SearchCode is an extensive code search engine that indexes 75 billion lines of code from millions of projects to help developers find coding examples and libraries.
APKiD is a tool that identifies compilers, packers, obfuscators, and other weird stuff in APK files.
A tool for detecting capabilities in executable files, providing insights into a program's behavior and potential malicious activities.
QIRA is a competitor to strace and gdb with MIT license, supporting Ubuntu and Docker for wider compatibility.
Static application security testing (SAST) tool for scanning source code against security and privacy risks.
ThreatLocker is an enterprise cybersecurity platform that provides comprehensive endpoint protection and zero-trust security to prevent ransomware, viruses, and other malicious software from running on endpoints.
A security-focused general purpose memory allocator providing the malloc API with hardening against heap corruption vulnerabilities.
A Java API for searching and downloading Android applications from Google Play with additional check-in features for generating ANDROID-ID.
A technology lookup and lead generation tool that identifies the technology stack of any website and provides features for market research, competitor analysis, and data enrichment.
PINNED

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.