awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
imperva avatar

imperva/automatic-api-attack-tool

0
View on GitHub↗
495 stars·93 forks·Java·MIT·8 views

Automatic Api Attack Tool

Imperva's customizable API attack tool takes an API specification as an input, generates and runs attacks that are based on it as an output.

Features

  • API Scanners - Automated tool for testing API endpoints against common security threats.
  • Dynamic Analysis - Automated security scanning for APIs based on specifications.
  • REST API Security Tools - Generates and executes attacks based on API specifications.
  • Web Exploitation - Automates attacks against Swagger-defined APIs.

Star history

Star history chart for imperva/automatic-api-attack-toolStar history chart for imperva/automatic-api-attack-tool

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Start searching with AI

Frequently asked questions

What does imperva/automatic-api-attack-tool do?

Imperva's customizable API attack tool takes an API specification as an input, generates and runs attacks that are based on it as an output.

What are the main features of imperva/automatic-api-attack-tool?

The main features of imperva/automatic-api-attack-tool are: API Scanners, Dynamic Analysis, REST API Security Tools, Web Exploitation.

What are some open-source alternatives to imperva/automatic-api-attack-tool?

Open-source alternatives to imperva/automatic-api-attack-tool include: microsoft/restler-fuzzer — RESTler is the first stateful REST API fuzzing tool for automatically testing cloud services through their REST APIs… flipkart-incubator/astra — Astra is a security analysis system and scanner designed to identify vulnerabilities and security flaws in REST API… akto-api-security/akto — Proactive, Open source API security → API discovery, API Security Posture, Testing in CI/CD, Test Library with 1000+… blst-security/cherrybomb — Stop half-done APIs! Cherrybomb is a CLI tool that helps you avoid undefined user behaviour by auditing your API… manisso/fsociety — fsociety is a penetration testing framework and security tool orchestrator designed to conduct full security audits.… andresriancho/w3af — w3af is a web penetration testing suite and security audit framework designed to identify and exploit vulnerabilities…

Open-source alternatives to Automatic Api Attack Tool

Similar open-source projects, ranked by how many features they share with Automatic Api Attack Tool.
  • microsoft/restler-fuzzermicrosoft avatar

    microsoft/restler-fuzzer

    2,915View on GitHub↗

    RESTler is the first stateful REST API fuzzing tool for automatically testing cloud services through their REST APIs and finding security and reliability bugs in these services.

    Python
    View on GitHub↗2,915
  • blst-security/cherrybombblst-security avatar

    blst-security/cherrybomb

    1,231View on GitHub↗

    Stop half-done APIs! Cherrybomb is a CLI tool that helps you avoid undefined user behaviour by auditing your API specifications, validating them and running API security tests.

    Rust
    View on GitHub↗1,231
  • akto-api-security/aktoakto-api-security avatar

    akto-api-security/akto

    1,486View on GitHub↗

    Proactive, Open source API security → API discovery, API Security Posture, Testing in CI/CD, Test Library with 1000+ Tests, Add custom tests, Sensitive data exposure

    Java
    View on GitHub↗1,486
  • flipkart-incubator/astraflipkart-incubator avatar

    flipkart-incubator/Astra

    2,639View on GitHub↗

    Astra is a security analysis system and scanner designed to identify vulnerabilities and security flaws in REST API endpoints. It functions as a security testing tool that automatically detects common API weaknesses during development and deployment cycles. The project provides a graphical interface for triggering and monitoring security scanning processes, removing the requirement for manual command line execution. This management UI allows for the oversight of scanning workflows and the retrieval of vulnerability reports. The system supports the import of collection files to map endpoints

    Pythonci-cdowasppenetration-testing
    View on GitHub↗2,639
See all 30 alternatives to Automatic Api Attack Tool→