Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.
☆28,199Apr 29, 2026Updated last week
Alternatives and similar repositories for nuclei
Users that are interested in nuclei are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Community curated list of templates for the nuclei engine to find security vulnerabilities.☆12,279Updated this week
- httpx is a fast and multi-purpose HTTP toolkit that allows running multiple probes using the retryablehttp library.☆9,887Apr 27, 2026Updated last week
- Fast passive subdomain enumeration tool.☆13,584Apr 29, 2026Updated last week
- Fast web fuzzer written in Go☆15,986Apr 26, 2026Updated 2 weeks ago
- A fast port scanner written in go with a focus on reliability and simplicity. Designed to be used in combination with other tools for att…☆5,917Updated this week
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- In-depth attack surface mapping and asset discovery☆14,526Apr 17, 2026Updated 3 weeks ago
- Web path scanner☆14,238Apr 29, 2026Updated last week
- A list of useful payloads and bypass for Web Application Security and Pentest/CTF☆77,442Apr 22, 2026Updated 2 weeks ago
- OneForAll是一款功能强大的子域收集工具☆9,752Sep 12, 2025Updated 7 months ago
- Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl.☆4,915Mar 20, 2026Updated last month
- HTTP parameter discovery suite.☆6,216Feb 20, 2025Updated last year
- Adversary Emulation Framework☆11,160Updated this week
- reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via E…☆8,640Mar 21, 2026Updated last month
- A Security Tool for Bug Bounty, Pentest and Red Teaming.☆4,260Updated this week
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆8,871Dec 4, 2025Updated 5 months ago
- Pre-Built Vulnerable Environments Based on Docker-Compose☆20,636Updated this week
- SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in …☆70,646May 3, 2026Updated last week
- PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)☆19,817Updated this week
- 🌙🦊 Dalfox is a powerful open-source XSS scanner and utility focused on automation.☆4,959May 1, 2026Updated last week
- 一款长亭自研的完善的安全评估工具,支持常见 web 安全问题扫描和自定义 poc | 使用之前务必先阅读文档☆11,541Oct 29, 2024Updated last year
- EHole(棱洞)3.0 重构版-红队重点攻击系统指纹探测工具☆3,467Apr 2, 2024Updated 2 years ago
- Impacket is a collection of Python classes for working with network protocols.☆15,691Updated this week
- A next-generation crawling and spidering framework.☆16,668Updated this week
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- An OOB interaction gathering server and client library☆4,306Updated this week
- reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and findin…☆7,494May 3, 2026Updated last week
- The dynamic infrastructure framework for everybody! Distribute the workload of many different scanning tools with ease, including nmap, f…☆4,375Sep 30, 2024Updated last year
- 哥斯拉☆4,374Jul 17, 2024Updated last year
- Find, verify, and analyze leaked credentials☆26,084Updated this week
- Packer Fuzzer is a fast and efficient scanner for security detection of websites constructed by javascript module bundler such as Webpack…☆3,235May 24, 2024Updated last year
- Fetch all the URLs that the Wayback Machine knows about for a domain☆4,425May 1, 2024Updated 2 years ago
- 一款内网综合扫描工具,方便一键自动化、全方位漏扫扫描。(An intranet comprehensive scanning tool, enabling one-click automated, all-round vulnerability scanning)☆13,712Updated this week
- A fast, simple, recursive content discovery tool written in Rust.☆7,713Apr 15, 2026Updated 3 weeks ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Official repository vuls Scan: 15000+PoCs; 23 kinds of application password crack; 7000+Web fingerprints; 146 protocols and 90000+ rules…☆6,002Jul 12, 2024Updated last year
- Most advanced XSS scanner.☆14,935Apr 26, 2025Updated last year
- 🤖 The Modern Port Scanner 🤖☆19,724Apr 30, 2026Updated last week
- HaE - Highlighter and Extractor, Empower ethical hacker for efficient operations.☆4,164Apr 28, 2026Updated last week
- A toolkit for testing, tweaking and cracking JSON Web Tokens☆6,527May 1, 2025Updated last year
- The Havoc Framework☆8,328Dec 18, 2025Updated 4 months ago
- A python script that finds endpoints in JavaScript files☆4,345Apr 13, 2024Updated 2 years ago