Find, verify, and analyze leaked credentials
β26,748Jun 12, 2026Updated this week
Alternatives and similar repositories for trufflehog
Users that are interested in trufflehog are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Find secrets with Gitleaks πβ27,736Updated this week
- Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enablβ¦β29,204Updated this week
- Reconnaissance tool for GitHub organizationsβ6,184Sep 20, 2022Updated 3 years ago
- In-depth attack surface mapping and asset discoveryβ14,703Apr 17, 2026Updated 2 months ago
- Fast web fuzzer written in Goβ16,247Apr 26, 2026Updated last month
- Proton VPN Special Offer - Get 70% off β’ AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- Fast passive subdomain enumeration tool.β13,846May 27, 2026Updated 3 weeks ago
- A list of useful payloads and bypass for Web Application Security and Pentest/CTFβ78,431Jun 6, 2026Updated last week
- Keyhacks is a repository which shows quick ways in which API keys leaked by a bug bounty program can be checked to see if they're valid.β6,257Aug 14, 2024Updated last year
- SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in β¦β71,589Updated this week
- A Tool for Domain Flyoversβ5,940May 22, 2022Updated 4 years ago
- Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl.β4,981Mar 20, 2026Updated 2 months ago
- httpx is a fast and multi-purpose HTTP toolkit that allows running multiple probes using the retryablehttp library.β10,053Updated this week
- HTTP parameter discovery suite.β6,270Feb 20, 2025Updated last year
- "Can I take over XYZ?" β a list of services and how to claim (sub)domains with dangling DNS records.β5,732Feb 8, 2025Updated last year
- Managed hosting for WordPress and PHP on Cloudways β’ AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- EyeWitness is designed to take screenshots of websites, provide some server header info, and identify default credentials if possible.β5,748Jan 5, 2026Updated 5 months ago
- The recursive internet scanner for hackers. π§‘β9,875Jun 11, 2026Updated last week
- A next-generation crawling and spidering framework.β17,014Jun 8, 2026Updated last week
- Community curated list of templates for the nuclei engine to find security vulnerabilities.β12,520Updated this week
- A python script that finds endpoints in JavaScript filesβ4,386Apr 13, 2024Updated 2 years ago
- Prowler is the worldβs most widely used open-source cloud security platform that automates security and compliance across any cloud envirβ¦β14,005Updated this week
- reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and findinβ¦β7,713May 15, 2026Updated last month
- reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Eβ¦β8,694Mar 21, 2026Updated 2 months ago
- Multi-Cloud Security Auditing Toolβ7,694Sep 23, 2025Updated 8 months ago
- Bare Metal GPUs on DigitalOcean Gradient AI β’ AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- Adversary Emulation Frameworkβ11,362Jun 3, 2026Updated 2 weeks ago
- A vulnerability scanner for container images and filesystemsβ12,406Updated this week
- A fast, simple, recursive content discovery tool written in Rust.β7,842Apr 15, 2026Updated 2 months ago
- A fast port scanner written in go with a focus on reliability and simplicity. Designed to be used in combination with other tools for attβ¦β5,996Jun 10, 2026Updated last week
- A toolkit for testing, tweaking and cracking JSON Web Tokensβ6,636May 1, 2025Updated last year
- π€ The Modern Port Scanner π€β19,932Updated this week
- ππ¦ Dalfox is a powerful open-source XSS scanner and utility focused on automation.β5,065Updated this week
- Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.β15,484Updated this week
- A swiss army knife for pentesting networksβ9,137Dec 6, 2023Updated 2 years ago
- Deploy open-source AI quickly and easily - Special Bonus Offer β’ AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Directory/File, DNS and VHost busting tool written in Goβ13,807Jun 11, 2026Updated last week
- Impacket is a collection of Python classes for working with network protocols.β15,807Jun 11, 2026Updated last week
- Six Degrees of Domain Adminβ10,553Mar 2, 2026Updated 3 months ago
- Most advanced XSS scanner.β15,027Apr 26, 2025Updated last year
- Scan for misconfigured S3 buckets across S3-compatible APIs!β3,095Apr 25, 2026Updated last month
- The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.β5,227May 19, 2026Updated 3 weeks ago
- Standalone man-in-the-middle attack framework used for phishing login credentials along with session cookies, allowing for the bypass of β¦β15,194Jun 10, 2026Updated last week