Dynamic Application Security Testing

Dynamic Application Security Testing (DAST) tools for dynamic application security testing that identify vulnerabilities in running web applications and APIs through automated scanning.

Explore 56 curated cybersecurity tools, with 14,630+ visitors searching for solutions

FEATURED

Proton Pass Logo

Password manager with end-to-end encryption and identity protection features

NordVPN Logo

VPN service providing encrypted internet connections and privacy protection

Mandos Fractional CISO Services Logo

Fractional CISO services for B2B companies to accelerate sales and compliance

Get Featured

Feature your product and reach thousands of professionals.

ImmuniWeb® Neuron Logo

AI-enhanced web app vulnerability scanner with zero false-positive SLA

1
ZeroThreat Logo

ZeroThreat is a cloud-based DAST platform that provides automated penetration testing and vulnerability detection for web applications and APIs with AI-driven remediation guidance.

0
ImmuniWeb® On-Demand Logo

ImmuniWeb® On-Demand is a web application penetration testing platform that combines AI-powered automation with manual security testing to provide comprehensive vulnerability assessments and compliance reporting.

0
Beagle Security Logo

An automated security testing platform that performs AI-driven penetration testing and vulnerability assessment for web applications and APIs with compliance reporting capabilities.

0
Threatspy Logo

Threatspy is an application security testing platform that enables developers and security teams to discover, analyze, prioritize, and remediate vulnerabilities in web applications and APIs through an automated end-to-end process.

0
Qualys Web Application Scanning (WAS) Logo

A cloud-based DAST solution that discovers, inventories, and tests web applications and APIs for security vulnerabilities across diverse environments.

0
Bright Logo

A Dynamic Application Security Testing (DAST) platform that provides automated security testing for web applications, APIs, and LLM-powered applications throughout the software development lifecycle.

0
Ghost Platform Logo

An AI-powered application security platform that provides automated discovery, testing, and continuous monitoring of applications and APIs with minimal operational impact.

0
Miggo Security Logo

Application monitoring and security platform that provides runtime visibility, threat detection, and automated response capabilities for application-layer security

0
StackHawk Logo

A DAST solution that performs automated security testing of APIs and web applications within development workflows and CI/CD pipelines.

0
WPMissionControl Logo

WPMissionControl is a WordPress-focused security and uptime monitoring tool that offers continuous website checks, alerts, and malware cleanup services.

0
EvoMaster Logo

EvoMaster is an AI-driven tool that automatically generates system-level test cases for web APIs and enterprise applications using evolutionary algorithms and dynamic program analysis.

0
Akamai Client-Side Protection & Compliance Logo

Akamai Client-Side Protection & Compliance is a security tool that monitors and protects against client-side threats on websites, aiding in PCI DSS v4.0 compliance.

0
Node.js Goof Logo

Node.js Goof is a vulnerable Node.js demo application containing multiple security vulnerabilities for testing and educational purposes.

0
BruteXSS Logo

A tool to find XSS vulnerabilities in web applications

1
Vaya-Ciego-Nen Logo

A tool to detect, manage and exploit Blind Cross-site scripting (XSS) vulnerabilities.

0
findom-xss Logo

A fast and simple DOM based XSS vulnerability scanner

0
Dalfox Logo

Dalfox is an open-source automated XSS scanner that provides customizable scanning profiles and detailed reporting for cross-site scripting vulnerability detection.

0
InQL Logo

InQL is a Burp Suite extension for advanced GraphQL testing and vulnerability detection

0
DOMdig Logo

DOMdig is a DOM XSS scanner that uses static analysis, dynamic analysis, and fuzz testing to detect and exploit Cross-Site Scripting vulnerabilities in Single Page Applications.

0
Femida Logo

Femida is a Python automation tool that integrates with Burp Suite to detect blind XSS vulnerabilities in web applications through HTTP request analysis.

0
jaeles Logo

Jaeles is an automated web application testing tool that helps identify vulnerabilities and security issues through customizable testing scenarios.

1
xssValidator Logo

A Burp Suite extension that automates XSS vulnerability detection and validation through custom payload generation and response analysis.

0
extended-xss-search Logo

A better version of my xssfinder tool that scans for different types of XSS on a list of URLs.

0

Stay Updated with Mandos Brief

Get the latest cybersecurity updates in your inbox

POPULAR

RoboShadow Logo

Automated vulnerability assessment and remediation platform

10
TestSavantAI Logo

Security platform that provides protection, monitoring and governance for enterprise generative AI applications and LLMs against various threats including prompt injection and data poisoning.

6
Cybersec Feeds Logo

A threat intelligence aggregation service that consolidates and summarizes security updates from multiple sources to provide comprehensive cybersecurity situational awareness.

5
Fabric Platform by BlackStork Logo

Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.

5
Mandos Brief Newsletter Logo

A weekly newsletter providing cybersecurity leadership insights, industry updates, and strategic guidance for security professionals advancing to management positions.

5
View Popular Tools →