andresriancho / w3af
w3af: web application attack and audit framework, the open source web vulnerability scanner.
☆4,647Updated last year
Alternatives and similar repositories for w3af:
Users that are interested in w3af are comparing it to the libraries listed below
- Web Application Security Scanner Framework☆3,819Updated last year
- Nikto web server scanner☆8,840Updated last week
- Next generation web scanner☆5,661Updated 6 months ago
- Automated All-in-One OS Command Injection Exploitation Tool.☆4,682Updated this week
- Web application fuzzer☆6,019Updated 5 months ago
- Automated NoSQL database enumeration and web application exploitation tool.☆2,980Updated 5 months ago
- Open Source Vulnerability Management Platform☆5,153Updated this week
- Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.☆8,337Updated last year
- Advanced vulnerability scanning with Nmap NSE☆3,522Updated 4 months ago
- Patator is a multi-purpose brute-forcer, with a modular design and a flexible usage.☆3,626Updated 3 months ago
- WAFW00F allows one to identify and fingerprint Web Application Firewall (WAF) products protecting a website.☆5,450Updated 2 weeks ago
- A collection of Burpsuite Intruder payloads, BurpBounty payloads, fuzz lists, malicious file uploads and web pentesting methodologies and…☆3,711Updated 3 years ago
- Weaponized web shell☆3,234Updated 3 months ago
- Network recon framework. Build your own, self-hosted and fully-controlled alternatives to Shodan / ZoomEye / Censys and GreyNoise, run yo…☆3,599Updated this week
- Git All the Payloads! A collection of web attack payloads.☆3,657Updated last year
- Server-Side Template Injection and Code Injection Detection and Exploitation Tool☆3,850Updated 8 months ago
- Attack Surface Management Platform☆8,313Updated 2 weeks ago
- A Tool for Domain Flyovers☆5,694Updated 2 years ago
- NSE script based on Vulners.com API☆3,251Updated 9 months ago
- Reconnaissance tool for GitHub organizations☆5,972Updated 2 years ago
- EyeWitness is designed to take screenshots of websites, provide some server header info, and identify default credentials if possible.☆5,106Updated 2 months ago
- A DNS meta-query spider that enumerates DNS records, and subdomains.☆3,377Updated 3 years ago
- Knock Subdomain Scan☆3,915Updated 2 months ago
- WPScan WordPress security scanner. Written for security professionals and blog maintainers to test the security of their WordPress websit…☆8,719Updated last month
- Fast subdomains enumeration tool for penetration testers☆10,029Updated 5 months ago
- The Browser Exploitation Framework Project☆9,988Updated this week
- 🔥 Web-application firewalls (WAFs) from security standpoint.☆6,431Updated 2 months ago
- DNS Enumeration Script☆2,689Updated this week
- Web path scanner☆12,423Updated 3 weeks ago
- CMS Detection and Exploitation suite - Scan WordPress, Joomla, Drupal and over 180 other CMSs☆2,351Updated 9 months ago