A list of open source web security scanners on GitHub and GitLab, ordered by Stars. It does not provide in-depth analysis – for more analysis or a wider range of tools, see the links below.
Note that some large projects have multiple repos – in which case the second most relevant repo is included immediately after and is indented.
Tools which can find a range of ‘unknown’ vulnerabilities on any websites.
| Main Site | Last Commit | Committers | Stars |
|---|---|---|---|
| ZAP | |||
| – ZAP Extensions | |||
| Hetty | |||
| W3af | |||
| Arachni | |||
| Astra | |||
| Wapiti | |||
| Skipfish | |||
| Sitadel | |||
| Taipan | |||
| Vega | |||
| Reaper | |||
| BrowserBruter | |||
| Tuplar | |||
| Ugly-duckling | |||
| Jawfish | |||
| Pākiki | |||
| Browserker |
For more information click here.
This cheat sheet covers the essential Kali Linux commands every pentester and ethical hacker uses…
When I first started learning malware analysis and reverse engineering, I thought the hardest part…
Both git fetch and git pull talk to a remote repository, but they do very different things to your…
Sometimes the change you need already exists, just on the wrong branch. A hotfix lands…
Email is still one of the most important communication channels inside modern applications. Password resets,…
Nginx is a high-performance web server and reverse proxy trusted by some of the largest…