Moxy is an open-source DAST tool designed for modern web application security testing. It provides an easy-to-use interface with agentic capabilities to assist and automate pentesting workflows.
☆119Jan 22, 2026Updated 6 months ago
Alternatives and similar repositories for Moxy
Users that are interested in Moxy are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- The first browser MCP built for security testing. Give your AI agent a real Firefox browser and let it find vulnerabilities.☆19Mar 14, 2026Updated 5 months ago
- Advanced Recon tool for Bug Bounty and Pentesting☆33Oct 22, 2025Updated 9 months ago
- ☆23May 17, 2026Updated 3 months ago
- Manage engagements, run scans, and generate reports from a central hub☆19Jan 27, 2026Updated 6 months ago
- Burpsuite plugin for Interact.sh☆15Jul 31, 2026Updated 2 weeks ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Personal cybersecurity wiki and lab notebook tracking my journey from zero to junior penetration tester, with structured Markdown notes, …☆21Apr 1, 2026Updated 4 months ago
- Burp Suite extension for API security testing with 15 attack types, 108+ payloads, intelligent fuzzing, BOLA/IDOR detection, AI integrati…☆229Updated this week
- Get list of subsidiaries for a selected company☆32Dec 21, 2024Updated last year
- OSINT intelligence on any IP, domain, or ASN☆19Jun 20, 2026Updated last month
- A Burp Suite extension that integrates Dalfox XSS scanner directly into your workflow.☆23Feb 6, 2026Updated 6 months ago
- Repository created to share information about tactics, techniques and procedures used by threat actors. Initially with ransomware groups …☆48Updated this week
- Explore 'All Wordlist' repository for a vast collection of wordlists essential for web fuzzing and testing. From API endpoints to common …☆17Sep 27, 2024Updated last year
- Lightweight, customizable enumeration script to aid in time-saving when participating in hacking labs or OSCP exam.☆32Feb 18, 2026Updated 6 months ago
- CLI tool that explains CVEs in plain English and scans repos for impact. Powered by Claude.☆20May 12, 2026Updated 3 months ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- ☆12Dec 3, 2022Updated 3 years ago
- Crawl and analyze JavaScript for secrets, tokens, and API endpoints. A powerful bug bounty tool for automated JS analysis.☆21Apr 3, 2026Updated 4 months ago
- A curated collection of tools, techniques, frameworks, and learning resources focused on Attack Surface Management (ASM).☆39Jan 13, 2026Updated 7 months ago
- 🌴 An internet traffic noise generater using a ton of random parameters including: using 30+ personas, 10 parallel generators, chaos theo…☆152Mar 29, 2026Updated 4 months ago
- Threats analysis tool☆15Feb 3, 2026Updated 6 months ago
- A Burp extension to Fuzz URLs for HTTP parser inconsistencies☆16Jan 9, 2024Updated 2 years ago
- Detect the cloud / hosting provider of a given host. Fast, static & offline☆16Updated this week
- ☆19Updated this week
- Attack surface discovery and AI-assisted triage for security researchers. Endpoint & parameter mapping with actionable testing hints.☆46Jan 12, 2026Updated 7 months ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Model Context Protocol server for autonomous vulnerability discovery☆54Aug 9, 2026Updated last week
- Stop getting 403 Forbidden. A specialized httpx-like toolkit for WAF evasion.☆21Jan 14, 2026Updated 7 months ago
- RID Hijacking Proof of Concept script by Kevin Joyce☆15Oct 30, 2018Updated 7 years ago
- Educational reverse shell command generator for authorized lab testing.☆19Jan 30, 2026Updated 6 months ago
- GromHacks Labs -- The payload lists they don't want you to have. 1,324 injection probes beamed down from the mothership to detect what's …☆36Apr 12, 2026Updated 4 months ago
- Anyfile Opener with Magic-byte MIME Detection and URI Permission Bridging☆19Jul 13, 2026Updated last month
- HackMap — a local pentest mapping tool with real-time command execution, persistent history per target, visual attack paths, and one-clic…☆48Aug 3, 2026Updated 2 weeks ago
- An AI-Powered Bug Bounty Hunting Platform - Comprehensive MCP server for security testing, vulnerability research, and bug bounty hunting☆39Jul 24, 2026Updated 3 weeks ago
- Generate HID attack strings for Kali Nethunter☆13Mar 20, 2015Updated 11 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- make agents think, thoroughly☆35May 25, 2026Updated 2 months ago
- Track previous changes on specific AD accounts (users, computers) and Groups (online DC), even if event logs were wiped/not collected (e.…☆16Feb 25, 2025Updated last year
- VEDAS-Driven Autonomous Generation of Suricata Rules for CVEs☆20Jan 13, 2026Updated 7 months ago
- Red Team Coin for crypto-mining operations.☆25Mar 1, 2026Updated 5 months ago
- Open-source EDR for AI agents. Monitor processes, files, network, and behavior of autonomous AI agents.☆142Updated this week
- My collection of Semgrep rules for vulnerability detection on source code (swift, java, cobol)☆44Dec 3, 2025Updated 8 months ago
- ParamFirstCheck identifies in a list of urls those containing a parameter of the top 25 of the most vulnerable parameters for SQLi, LFI, …☆35Dec 13, 2023Updated 2 years ago