一、Burpsuite
官方主页:https://portswigger.net/
企业版和专业版需要注册才可以下载,并且接收的邮箱必须为企业邮箱,163、qq、outlook、gmail等邮箱不支持,下面给出了Free Edition版本的下载地址:
https://portswigger.net/burp/communitydownload
https://portswigger.net/burp/releases/download?product=community&version=1.7.36&type=jar
https://portswigger.net/burp/releases/download?product=community&version=1.7.36&type=windowsx86
https://portswigger.net/burp/releases/download?product=community&version=1.7.36&type=linux
https://portswigger.net/burp/releases/download?product=community&version=1.7.36&type=macosx
https://portswigger.net/burp/releases/download?product=community&version=1.7.36&type=windowsx64
二、Zaproxy(The OWASP Zed Attack Proxy (ZAP))
1、https://github.com/zaproxy/zaproxy (源代码)
2、https://github.com/zaproxy/zap-extensions/ (扩展)
标准版 2.7 下载地址如下:
https://github.com/zaproxy/zaproxy/releases/download/2.7.0/ZAP_2_7_0_windows.exe
https://github.com/zaproxy/zaproxy/releases/download/2.7.0/ZAP_2_7_0_windows-x32.exe
https://github.com/zaproxy/zaproxy/releases/download/2.7.0/ZAP_2_7_0_unix.sh
https://github.com/zaproxy/zaproxy/releases/download/2.7.0/ZAP_2.7.0_Linux.tar.gz
https://github.com/zaproxy/zaproxy/releases/download/2.7.0/ZAP_2.7.0.dmg
https://github.com/zaproxy/zaproxy/releases/download/2.7.0/ZAP_2.7.0_Crossplatform.zip