A list of open source web security scanners on GitHub and GitLab, ordered by Stars. It does not provide in-depth analysis – for more analysis or a wider range of tools, see the links below.
Note that some large projects have multiple repos – in which case the second most relevant repo is included immediately after and is indented.
Tools which can find a range of ‘unknown’ vulnerabilities on any websites.
| Main Site | Last Commit | Committers | Stars |
|---|---|---|---|
| ZAP | |||
| – ZAP Extensions | |||
| Hetty | |||
| W3af | |||
| Arachni | |||
| Astra | |||
| Wapiti | |||
| Skipfish | |||
| Sitadel | |||
| Taipan | |||
| Vega | |||
| Reaper | |||
| BrowserBruter | |||
| Tuplar | |||
| Ugly-duckling | |||
| Jawfish | |||
| Pākiki | |||
| Browserker |
For more information click here.
Both git fetch and git pull talk to a remote repository, but they do very different things to your…
Sometimes the change you need already exists, just on the wrong branch. A hotfix lands…
Email is still one of the most important communication channels inside modern applications. Password resets,…
Nginx is a high-performance web server and reverse proxy trusted by some of the largest…
ufw (Uncomplicated Firewall) sits on top of iptables (or nftables on newer systems) and replaces…
When you share a server with a team or investigate unexpected activity, the first question…