I'm happy to release the first version of my DOMLogger++ plugin for @CaidoIO! 🔎
It improves the browser extension in several ways:
• Persistent, per-project storage
• Temporary session recording
• AI support
• Stack trace reconstitution
• ...
👉 https://t.co/tj72KXjAN9
🤖 @trace37_labs shared recently how they use Caido as a core part of their autonomous hunting platform.
Paul Reed, founder of @trace37_labs, says it best:
> I wanted the proxy to think. Not in a vague “AI-powered” marketing sense, but concretely: a proxy that watches traffic in real-time and generates passive detection rules tailored to the target [...]. A proxy that refines its own detection rules based on which findings turn out to be true positives and which are noise. A proxy that bridges the gap between “I see interesting traffic” and “an AI specialist is already investigating it.”
https://t.co/HUALkNjqAF
The Agentic Hacking Era is here and Caido is ready for it 🫡
Today we are releasing the first version of our Caido Skill in collaboration with Joseph Thacker (aka @rez0__) 🎉
All details in our blog:
https://t.co/bvfmCZvlt0
I love @CaidoIO --- so customisable... and integrates so well with all of my other tools.
I've found several bugs recently from running a caido-daemon on my VPS that polls new findings from passive workflows every 60 seconds (via Caido GraphQL) and triages them via LLM - dismissing noise and amplifying potential signal for active probing, saving hot leads to Obsidian .md daily 'Caido Findings' files.
My main AI instances browse targets in parallel whilst I am also manually testing and always send to proxy.
I can also view the findings being evaluated in realtime via updates my m-ai phone app. Still HiLP to triage leads before passing them to agents (to avoid a noisy feedback loop or just TOO much signal to deal with).
Key to this working was 1000s of lines of js workflow nodes to fine tune workflow (GI-GO).
When have we ever had the ability to be so creative? Crazy times....
🚀 New official plugin in the Caido Store!
Introducing "Nomad IP"
Rotate your source IP addresses, using AWS API Gateway to avoid IP-based blocking during tests.
Check out more details: https://t.co/xODiZpyNHH
🧠 Looking to adopt Caido across your team?
We offer corporate training to help pentesting firms and security teams become power users of Caido.
🔗 Reserve training: https://t.co/lMPitTMyQW
🚀 Our official browser extension is out now!
Auto-detect proxies and route browser traffic to your Caido instance with no manual setup.
Download now:
🔗 Firefox: https://t.co/wuhCbCXtvd
🔗 Chrome: https://t.co/5UijB6VAmX
The most common feedback of 2025: "I'll switch when there are more plugins."
We spent the year solving that.
Along with 29 new plugins (thanks to our community), we shipped:
- 10 major releases
- Hands-on Labs
- AI Integration
Read the full 2025 review:
https://t.co/WCWzOhJvQC
We’re excited to launch our upcoming podcast series: Office Hours! 🚀
Each month, we'll sit together with bug bounty hunters & security researchers to answer YOUR bug bounty & web security-related questions on Discord & Twitter/X Spaces! 🎙️
Our first live session is happening this upcoming Thursday, the 15th, at 8 PM CET, featuring Caido’s Co-Founder, Émile (@TheSytten)! 🤠
Follow us @INTIGRITI to stay notified. More details will follow! 👀
The first version of the Caido browser extension is out for Firefox (in-review for Chrome). Very basic for now but the goal is to add tighter browser integrations next year. Try it out: https://t.co/clSgudeqoO
🤝 We’re introducing a new way for teams to use Caido.
Share the same instance and continue work exactly where a teammate left off, without exporting or passing files around.
Up next: real time collaboration.
Caido v0.53.0 → https://t.co/osH067G2SF
Caido Labs are live 🚀
You now have hands-on labs to learn hacking using Caido's unique features.
🔗 Practice real attack scenarios with guided walkthroughs:
https://t.co/LO5Kwx0cud
What attacks or lab scenarios do you want to see next?
Drop your suggestions below👇
Caido 101: How to master it
https://t.co/9ldW0JAv8x
It's not a fully guided tutorial, but more a way to get an overview of all the possibilities given by @CaidoIO, to help you give it a try.
Hackers,
To make our pricing fairer worldwide, we’re trying out localized pricing.
We’re starting with Brazil 🇧🇷, with Individual plan prices dropping by about 50%.
💸 Monthly: ~110 BRL → 55 BRL
💸 Yearly: ~1,100 BRL → 550 BRL
Which country should we do next?
https://t.co/DMyhYUX9yb
🎉 You’ve been asking for it. The Caido Scanner plugin is finally here.
Run checks in the background or scan specific requests on demand to find issues like reflected XSS, SQL injection, and CORS misconfigs.
All checks are open source. Add your own and help the list grow 💪
🎉 We’re excited to release Shift Agents, the new micro-agent framework for Caido users.
Build personalized micro-agents for tasks like XSS exploitation, WAF bypassing, or anything you can think of.
Available as a standalone plugin, with integration into Shift coming soon.
🚀New plugin in the Caido Store!
Introducing "OmniOAST" by @hahwul
Add all your OAST providers and manage them in one place. Generate payloads and monitor callbacks as they come in.
Check out more details: https://t.co/vznzCPwR4L