npm-scan
iOS application for testing iOS penetration testing skills in a legal environment.
Proactively identify and fix security weaknesses to prevent cyber threats and protect your assets.
iOS application for testing iOS penetration testing skills in a legal environment.
A free and open-source deliberately insecure web application for security enthusiasts, developers, and students to discover and prevent web vulnerabilities.
Platform for users to test cybersecurity skills by exploiting vulnerabilities.
A free and open-source deliberately insecure web application for security enthusiasts, developers, and students to discover and prevent web vulnerabilities.
A demonstration site for the Acunetix Web Vulnerability Scanner, intentionally vulnerable to various web-based attacks.
An open-source tool for finding security vulnerabilities, compliance issues, and infrastructure misconfigurations in infrastructure-as-code
A JavaScript scanner built in PHP for scraping URLs and other information.
LeakIX is a red-team search engine that indexes mis-configurations and vulnerabilities online.
A non-profit organization focused on improving the security of software through resources and training.
Linux Exploit Suggester; suggests possible exploits based on the Linux operating system release number.
Pac-resolver, a popular NPM package with 3 million weekly downloads, has a severe remote code execution flaw.
Advanced vulnerability assessment tool for gaining visibility and preventing cyber attacks.
An OSINT tool that generates username lists for companies on LinkedIn for social engineering attacks or security testing purposes.
Vulnerability scanner for Linux/FreeBSD, written in Go, agent-less, informs users of vulnerabilities related to the system and affected servers.
FullHunt is a next-generation attack surface security platform that enables companies to discover, monitor, and secure their external attack surfaces.
tfsec is being replaced by Trivy, a more comprehensive open-source security solution
A hosted web application security testing tool that enables security researchers to register, activate their accounts, and scan web applications for vulnerabilities.
tfsec is being replaced by Trivy, a more comprehensive open-source security solution
Open source security auditing tool to search and dump system configuration.
Weekly security newsletter with advisories from major software vendors
Automate your reconnaissance process with AttackSurfaceMapper, a tool for mapping and analyzing network attack surfaces.
A ruby script that scans for vulnerable 3rd-party web applications