A pretty sweet vulnerability scanner
High-performance reconnaissance and vulnerability scanning tool
Automated framework for running pentesting tools and workflows
Command-line OSINT and reconnaissance tool without API keys
Command line ASN lookup, network recon, and traceroute tool
AI-powered framework for automated penetration testing and red teaming
Asset inventory dataset for public bug bounty program targets
XRay for recon, mapping and OSINT gathering from public networks
Security scanner for AI agent skills
Deepsec is a security harness for finding vulnerabilities
The SpotBugs plugin for security audits of Java web applications
Automation framework for reconnaissance and penetration testing tasks
Wapiti is a web-application vulnerability scanner
Mine parameterized URLs from web archives for security testing
Automating Host Exploitation with AI
Fast Go web crawler for discovering URLs and web app endpoints
Kubesploit is a cross-platform post-exploitation HTTP/2 Command
Multiple server/webapp vulnerability scanner
Automated tool for mapping & expanding organization’s attack surface
Vulnerability analytics
Firing Range is a test bed for web application security scanners
A protocol agnostic application layer denial of service attack.
Detect Flooder IPs, Reduce Attack Surface against HTTP Flood Attacks
SecQua tries to quantify the security of a given Information System