Find, verify, and analyze leaked credentials
β25,121Mar 19, 2026Updated last week
Alternatives and similar repositories for trufflehog
Users that are interested in trufflehog are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Find secrets with Gitleaks πβ25,533Mar 21, 2026Updated last week
- Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enablβ¦β27,587Updated this week
- Reconnaissance tool for GitHub organizationsβ6,151Sep 20, 2022Updated 3 years ago
- In-depth attack surface mapping and asset discoveryβ14,282Mar 21, 2026Updated last week
- Fast web fuzzer written in Goβ15,793Apr 24, 2025Updated 11 months ago
- 1-Click AI Models by DigitalOcean Gradient β’ AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click and start building anything your business needs.
- Fast passive subdomain enumeration tool.β13,283Mar 20, 2026Updated last week
- A list of useful payloads and bypass for Web Application Security and Pentest/CTFβ76,293Mar 16, 2026Updated last week
- Keyhacks is a repository which shows quick ways in which API keys leaked by a bug bounty program can be checked to see if they're valid.β6,113Aug 14, 2024Updated last year
- SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in β¦β69,663Updated this week
- A Tool for Domain Flyoversβ5,916May 22, 2022Updated 3 years ago
- Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl.β4,860Mar 20, 2026Updated last week
- HTTP parameter discovery suite.β6,154Feb 20, 2025Updated last year
- httpx is a fast and multi-purpose HTTP toolkit that allows running multiple probes using the retryablehttp library.β9,730Updated this week
- "Can I take over XYZ?" β a list of services and how to claim (sub)domains with dangling DNS records.β5,605Feb 8, 2025Updated last year
- Proton VPN Special Offer - Get 70% off β’ AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- EyeWitness is designed to take screenshots of websites, provide some server header info, and identify default credentials if possible.β5,664Jan 5, 2026Updated 2 months ago
- The recursive internet scanner for hackers. π§‘β9,538Updated this week
- A next-generation crawling and spidering framework.β16,218Mar 20, 2026Updated last week
- Community curated list of templates for the nuclei engine to find security vulnerabilities.β12,088Updated this week
- A python script that finds endpoints in JavaScript filesβ4,309Apr 13, 2024Updated last year
- Prowler is the worldβs most widely used open-source cloud security platform that automates security and compliance across any cloud envirβ¦β13,387Updated this week
- reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and findinβ¦β7,371Mar 20, 2026Updated last week
- reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Eβ¦β8,522Mar 21, 2026Updated last week
- Multi-Cloud Security Auditing Toolβ7,585Sep 23, 2025Updated 6 months ago
- DigitalOcean Gradient AI Platform β’ AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Adversary Emulation Frameworkβ10,877Mar 21, 2026Updated last week
- A vulnerability scanner for container images and filesystemsβ11,769Mar 20, 2026Updated last week
- A fast port scanner written in go with a focus on reliability and simplicity. Designed to be used in combination with other tools for attβ¦β5,837Updated this week
- A fast, simple, recursive content discovery tool written in Rust.β7,619Feb 8, 2026Updated last month
- A toolkit for testing, tweaking and cracking JSON Web Tokensβ6,453May 1, 2025Updated 10 months ago
- π€ The Modern Port Scanner π€β19,496Updated this week
- ππ¦ Dalfox is a powerful open-source XSS scanner and utility focused on automation.β4,884Updated this week
- Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.β14,572Updated this week
- A swiss army knife for pentesting networksβ9,108Dec 6, 2023Updated 2 years ago
- Managed Kubernetes at scale on DigitalOcean β’ AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- Most advanced XSS scanner.β14,831Apr 26, 2025Updated 11 months ago
- Six Degrees of Domain Adminβ10,558Mar 2, 2026Updated 3 weeks ago
- Directory/File, DNS and VHost busting tool written in Goβ13,532Mar 21, 2026Updated last week
- Scan for misconfigured S3 buckets across S3-compatible APIs!β3,031Dec 11, 2025Updated 3 months ago
- Impacket is a collection of Python classes for working with network protocols.β15,576Mar 20, 2026Updated last week
- The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.β5,110Updated this week
- Standalone man-in-the-middle attack framework used for phishing login credentials along with session cookies, allowing for the bypass of β¦β14,756Oct 6, 2025Updated 5 months ago