
nuclei
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling…

Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling…

Poc - CVE-2025-49132

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Automated penetration testing & attack surface management platform. Recon, scan, exploit, report — 600+ exploits, 90+ integrations, 10K+ detections.

WPScan rewritten in Python + some WPSeku ideas

A better version of my xssfinder tool - scans for different types of xss on a list of urls.


一款长亭自研的完善的安全评估工具,支持常见 web 安全问题扫描和自定义 poc | 使用之前务必先阅读文档

The Swiss Army knife for automated Web Application Testing

Go-based CLI scanner for web cache poisoning and deception. Supports 10 poisoning techniques, multiple deception methods, built-in crawler, JSON…

Vigolium - High-fidelity vulnerability scanner fusing agentic AI with native speed, modularity, and precision

SQL Vulnerability Scanner

Community curated list of templates for the nuclei engine to find security vulnerabilities.

Nikto web server scanner

WordPress security scanner that detects vulnerabilities, enumerates plugins/themes/users, and checks for weak passwords. Integrates with the WPScan…

reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines,…

Next generation web scanner

Modular web fuzzer for automated security testing. Injects payloads into any HTTP request field to discover vulnerabilities, brute-force parameters,…