Moxy is an open-source DAST tool designed for modern web application security testing. It provides an easy-to-use interface with agentic capabilities to assist and automate pentesting workflows.
☆126Jan 22, 2026Updated 8 months ago
Alternatives and similar repositories for Moxy
Users that are interested in Moxy are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- The first browser MCP built for security testing. Give your AI agent a real Firefox browser and let it find vulnerabilities.☆24Mar 14, 2026Updated 6 months ago
- Manage engagements, run scans, and generate reports from a central hub☆19Jan 27, 2026Updated 8 months ago
- ☆24May 17, 2026Updated 4 months ago
- Personal cybersecurity wiki and lab notebook tracking my journey from zero to junior penetration tester, with structured Markdown notes, …☆22Apr 1, 2026Updated 6 months ago
- ☆18Sep 25, 2026Updated last week
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Explore 'All Wordlist' repository for a vast collection of wordlists essential for web fuzzing and testing. From API endpoints to common …☆19Sep 27, 2024Updated 2 years ago
- Burp Suite extension for API security testing with 15 attack types, 108+ payloads, intelligent fuzzing, BOLA/IDOR detection, AI integrati…☆342Aug 15, 2026Updated last month
- Lightweight, customizable enumeration script to aid in time-saving when participating in hacking labs or OSCP exam.☆32Feb 18, 2026Updated 7 months ago
- ☆12Dec 3, 2022Updated 3 years ago
- Mutation-driven HTTP fuzzing for Burp Suite☆15Mar 2, 2026Updated 7 months ago
- Get list of subsidiaries for a selected company☆32Dec 21, 2024Updated last year
- OSINT intelligence on any IP, domain, or ASN☆19Jun 20, 2026Updated 3 months ago
- RID Hijacking Proof of Concept script by Kevin Joyce☆15Oct 30, 2018Updated 7 years ago
- ☆17Dec 4, 2023Updated 2 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- GromHacks Labs -- The payload lists they don't want you to have. 1,324 injection probes beamed down from the mothership to detect what's …☆38Apr 12, 2026Updated 5 months ago
- Rubidea - Bind XSS Server to Steal cookies.☆14May 2, 2020Updated 6 years ago
- A curated collection of tools, techniques, frameworks, and learning resources focused on Attack Surface Management (ASM).☆42Jan 13, 2026Updated 8 months ago
- Generate HID attack strings for Kali Nethunter☆13Mar 20, 2015Updated 11 years ago
- An AI-Powered Bug Bounty Hunting Platform - Comprehensive MCP server for security testing, vulnerability research, and bug bounty hunting☆48Jul 24, 2026Updated 2 months ago
- ParamFirstCheck identifies in a list of urls those containing a parameter of the top 25 of the most vulnerable parameters for SQLi, LFI, …☆34Dec 13, 2023Updated 2 years ago
- GhostCVEs☆22Updated this week
- OpenShell is a lightweight, open-source reverse shell management server written in Go.☆26Mar 9, 2026Updated 6 months ago
- Protecting your data has never been more important. My cyber security blog is here to help you stay ahead of the game. I cover a wide ran…☆19Updated this week
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Top passwords as per HaveIBeenPwned☆35Mar 12, 2026Updated 6 months ago
- A Burp Suite extension implementing the Signing HTTP Messages draft-ietf-httpbis-message-signatures-01 draft.☆43Aug 16, 2022Updated 4 years ago
- Burp suite extension that lets you easily copy issues☆17Apr 3, 2026Updated 6 months ago
- Simple poc of CVE-2018-8414 Windows Package Setting RCE Vulnerability☆21Sep 21, 2020Updated 6 years ago
- O Projeto FR1DA Web é uma aplicação interativa para administrar dispositivos Android via ADB e executar scripts Frida. Oferece funcionali…☆13Sep 16, 2026Updated 2 weeks ago
- A personalized COLLECTION of technical research papers focused on malware analysis. Covers static/dynamic analysis, sandboxing, behaviora…☆31Jun 9, 2026Updated 3 months ago
- Skill for move smart contract security auditing.☆20Aug 19, 2026Updated last month
- A network topology visualizer powered by mapcn and react.☆57Jan 18, 2026Updated 8 months ago
- A web application testing tool built for capturing and modifying http/https requests.☆25Jul 15, 2026Updated 2 months ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Desktop monitoring and local security reviews for AI agents, with opt-in policy-controlled execution and MCP action tools. Windows primar…☆152Updated this week
- Detect the cloud / hosting provider of a given host. Fast, static & offline☆16Updated this week
- morphHTA - Morphing Cobalt Strike's evil.HTA☆11Jun 3, 2017Updated 9 years ago
- HackMap — a local pentest mapping tool with real-time command execution, persistent history per target, visual attack paths, and one-clic…☆50Aug 3, 2026Updated 2 months ago
- A tool to easily perform GitHub Device Code Phishing on red team engagements☆100Feb 9, 2026Updated 7 months ago
- A Command line tool for format Android Logcat.☆16Mar 5, 2016Updated 10 years ago
- The New Hacking Framework☆18Apr 26, 2017Updated 9 years ago