Essential tools and best practices for securing software applications throughout their lifecycle. Task: Vulnerability Scanning
Explore 21 curated tools and resources
An AI-powered career platform that automates the creation of cybersecurity job application materials and provides company-specific insights for job seekers.
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.
A cloud-native web application and API security solution that uses contextual AI to protect against known and zero-day threats without signature-based detection.
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.
A cloud-based DAST solution that discovers, inventories, and tests web applications and APIs for security vulnerabilities across diverse environments.
A web application firewall and API security platform that combines API discovery, runtime protection, vulnerability testing, and security posture management.
A DAST solution that performs automated security testing of APIs and web applications within development workflows and CI/CD pipelines.
Octoscan is a static analysis tool that scans GitHub Actions workflows for security vulnerabilities and misconfigurations.
Aqua Security is a CNAPP that provides comprehensive security for cloud native applications across their entire lifecycle, from development to production, in various cloud and container environments.
Veracode is an intelligent software security platform that helps developers and security teams secure code, find and fix flaws, and automate remediation.
WPRecon is a tool for recognizing vulnerabilities and blackbox information for WordPress.
A simple Swagger-ui scanner that detects old versions vulnerable to various XSS attacks
Automated web application testing tool
A tool for automated HTTP header injection
A free online tool to scan for DOM-based XSS vulnerabilities in HTML, JavaScript, and CSS files.
Dynamic application security testing tool for identifying and fixing web application vulnerabilities.
Static application security testing (SAST) tool for scanning source code against security and privacy risks.