WPScanWordpress Scanner
Scan wordpress websites and get an instant report of vulnerabilities.
GitHub
SqlmapSQL
Automatic SQL injection and database takeover tool.
GitHub
HTTPXHTTP Toolkit
Fast and multi-purpose HTTP toolkit that allows running multiple probes using the retryablehttp library.
GitHub
Nuclei TemplatesTemplates
The core of nuclei scanner which powers the actual scanning engine.
GitHub
CustomBsqliBlindSQL
Test Blind SQL Injection (BSQLi) on multiple URLs, use verbose/non-verbose modes for quick testing.
GitHub
LoxsSQL
Efficiently detect critical web application vulnerabilities such as SQLi, XSS, LFI, CRLF injection, and Open Redirects.
GitHub
FFUFFuzz
Fast and efficient web fuzzer.
GitHub
GFWrapper
A wrapper around grep, to help you grep for things.
GitHub
UROURLs
Declutters url lists for crawling/pentesting purposes.
GitHub
GXSSXSS
A tool to check a bunch of URLs that contain reflecting parameters.
GitHub
KXSSXSS
Kxss tool with a different, but very beneficial output format.
GitHub
GAUURLs
Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl.
GitHub
Developed by Javox