OWASP PTK – browser extension all-in-one for pentesters and bug hunters
5 DenisPodgurskii 0 5/26/2025, 3:37:28 PM
OWASP PTK is a lightweight browser extension that brings DAST, IAST, SAST, and SCA together - no more juggling tools or context switching.
It's also a part of the Athena OS - https://athenaos.org/en/resources/browser-pentesting/#_top
Why you’ll find it useful:
Instant Scans: Launch DAST/IAST/SAST/SCA from one “Scans” panel.
Deep Interception: Built-in proxy, traffic capture (HAR), and R-Builder for custom requests.
Token & Cookie Tools: JWT Inspector (alg=none, brute-force, JWK injection) and full cookie manager.
Quick Helpers: Decoder, Swagger Editor, and XSS/SQLi cheat sheets.
No comments yet