vulnerability-scanner
There are 241 repositories under vulnerability-scanner topic.
sqlmapproject/sqlmap
Automatic SQL injection and database takeover tool
projectdiscovery/nuclei
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.
future-architect/vuls
Agent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices
chaitin/xray
一款长亭自研的完善的安全评估工具,支持常见 web 安全问题扫描和自定义 poc | 使用之前务必先阅读文档
google/osv-scanner
Vulnerability scanner written in Go which uses the data provided by https://osv.dev
commixproject/commix
Automated All-in-One OS Command Injection Exploitation Tool.
OWASP/Nettacker
Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management
zan8in/afrog
A Security Tool for Bug Bounty, Pentest and Red Teaming.
almandin/fuxploider
File upload vulnerability scanner and exploitation tool.
evyatarmeged/Raccoon
A high performance offensive security tool for reconnaissance and vulnerability scanning
e-m-b-a/emba
EMBA - The firmware security analyzer
Qianlitp/crawlergo
A powerful browser crawler for web vulnerability scanners
tr0uble-mAker/POC-bomber
利用大量高威胁poc/exp快速获取目标权限,用于渗透和红队快速打点
MegaManSec/SSH-Snake
SSH-Snake is a self-propagating, self-replicating, file-less script that automates the post-exploitation task of SSH private key and host discovery.
Xyntax/POC-T
渗透测试插件化并发框架 / Open-sourced remote vulnerability PoC/EXP framework
skavngr/rapidscan
:new: The Multi-Tool Web Vulnerability Scanner.
wagiro/BurpBounty
Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that allows you, in a quick and simple way, to improve the active and passive scanner by means of personalized rules through a very intuitive graphical interface.
Moham3dRiahi/XAttacker
X Attacker Tool ☣ Website Vulnerability Scanner & Auto Exploiter
KeenSecurityLab/BinAbsInspector
BinAbsInspector: Vulnerability Scanner for Binaries
attify/firmware-analysis-toolkit
Toolkit to emulate firmware and analyse it for security vulnerabilities
dwisiswant0/crlfuzz
A fast tool to scan CRLF vulnerability written in Go
s0md3v/Corsy
CORS Misconfiguration Scanner
fkie-cad/cwe_checker
cwe_checker finds vulnerable patterns in binary executables
s0md3v/Silver
Mass scan IPs for vulnerable services
RUB-NDS/Terrapin-Scanner
This repository contains a simple vulnerability scanner for the Terrapin attack present in the paper "Terrapin Attack: Breaking SSH Channel Integrity By Sequence Number Manipulation".
CERT-Polska/Artemis
A modular vulnerability scanner with automatic report generation capabilities.
tcosolutions/betterscan
Code Scanning/SAST/Static Analysis/Linting using many tools/Scanners with One Report (Code, IaC) - Betterscan
R0X4R/Garud
An automation tool that scans sub-domains, sub-domain takeover, then filters out XSS, SSTI, SSRF, and more injection point parameters and scans for some low hanging vulnerabilities automatically.
bahaabdelwahed/killshot
A Penetration Testing Framework, Information gathering tool & Website Vulnerability Scanner
chushuai/wscan
Wscan is a web security scanner that focuses on web security, dedicated to making web security accessible to everyone.
mergebase/log4j-detector
A public open sourced tool. Log4J scanner that detects vulnerable Log4J versions (CVE-2021-44228, CVE-2021-45046, etc) on your file-system within any application. It is able to even find Log4J instances that are hidden several layers deep. Works on Linux, Windows, and Mac, and everywhere else Java runs, too! TAG_OS_TOOL, OWNER_KELLY, DC_PUBLIC
attacksurge/ax
The Distributed Scanning Framework for Everybody! Control Your Infrastructure, Scale Your Scanning—On Your Terms. Easily distribute arbitrary binaries and scripts using any of our nine supported cloud providers!
eraser-dev/eraser
🧹 Cleaning up images from Kubernetes nodes
patois/HexraysToolbox
Hexrays Toolbox - Find code patterns within the Hexrays ctree
zt2/sqli-hunter
SQLi-Hunter is a simple HTTP / HTTPS proxy server and a SQLMAP API wrapper that makes digging SQLi easy.
dongfangyuxiao/BurpExtend
基于Burp插件开发打造渗透测试自动化