
nuclei
Fast YAML-based vulnerability scanner with template-driven detection engine for automated security testing across web apps, APIs, networks, DNS, and…

Fast YAML-based vulnerability scanner with template-driven detection engine for automated security testing across web apps, APIs, networks, DNS, and…

Open-Source Unified Vulnerability Management, DevSecOps & ASPM

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Open-source API security platform for continuous API discovery, vulnerability testing, and runtime threat detection. Integrates with CI/CD pipelines…

Modular security scanning orchestrator that combines specialized agents for vulnerability detection, reconnaissance, and fingerprinting across…

Hunt every Endpoint in your code, expose Shadow APIs, map the Attack Surface.

Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.

Complete Solution for VAPT/AppSec and Pentesting Guide: Web | Mobile | API | Thick Client | Source Code Review | DevSecOps | Wireless | Network…

An open, local-first security testing platform for pentesters, AI agents, CI/CD pipelines, and teams.

Terminal API client for HTTP, GraphQL and gRPC. Plain .http files you can diff and version, with workflows, mocks, profiling, tracing, OpenAPI…

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

⚡️ Multiple target ZAP Scanning

Finds API routes carrying weaker authorization than their siblings. Recovered CVE-2026-45316 from source. Includes the negative results.

AI-powered offensive security testing using autonomous agents, directly in your terminal.

The independent security agent for AI-written software. Finds issues, investigates whether they are real, and shows you the evidence. Deterministic…

Open Source Vulnerability Management Platform

CLI tool for the Horizon3.ai API

Security tools report parsers for Faradaysec.com