Security Scanning

Automated security scanners for web applications, networks, and infrastructure vulnerability detection and assessment.

Explore 78 curated cybersecurity tools, with 14,802+ visitors searching for solutions

FEATURED

Proton Pass Logo

Password manager with end-to-end encryption and identity protection features

NordVPN Logo

VPN service providing encrypted internet connections and privacy protection

Mandos Fractional CISO Services Logo

Fractional CISO services for B2B companies to accelerate sales and compliance

Get Featured

Feature your product and reach thousands of professionals.

extended-ssrf-search Logo

A smart SSRF scanner using different methods like parameter brute forcing in post and get requests.

0
Param Miner Logo

A command-line tool that identifies and extracts parameters from HTTP requests and responses to assist with web application security testing and vulnerability assessment.

0
CORStest Logo

A security scanner that identifies Cross-Origin Resource Sharing (CORS) misconfigurations in web applications to detect potential vulnerabilities.

0
Naabu Logo

A fast and reliable port scanner written in Go, designed for attack surface discovery in bug bounties and penetration testing.

0
Oralyzer Logo

A security analysis tool that detects and analyzes open redirection vulnerabilities in web applications.

0
SSRF-Sheriff Logo

A simple SSRF-testing sheriff written in Go

0
sandmap Logo

A CLI tool that enhances Nmap with 31 modules containing 459 scan profiles for streamlined network reconnaissance and security assessments.

0
Arjun Logo

HTTP parameter discovery suite

0
Filebuster Logo

A fast and flexible web fuzzer for identifying vulnerabilities in web applications

0
lorsrf Logo

A fast CLI tool to find SSRF or Out-of-band resource load

0
metahttp Logo

A bash script for scanning a target network for HTTP resources through XXE

0
dirsearch Logo

DirSearch is a simple tool for finding files and directories on a web server.

0
dirstalk Logo

A modern directory scanner that can be used to find hidden directories and files on a web server.

0
CRLF-Injection-Scanner Logo

Command line tool for testing CRLF injection on a list of domains.

0
OWASP Joomla Vulnerability Scanner Logo

A free and open-source tool for identifying vulnerabilities in Joomla-based websites.

0
WPSpider Logo

A centralized dashboard for running and scheduling WordPress scans powered by wpscan utility.

0
Injectus Logo

A CRLF and open redirect fuzzer

0
ParamPamPam Logo

ParamPamPam is an open-source tool that detects and exploits web application vulnerabilities using fuzzing, SQL injection, and XSS techniques.

0
SSTImap Logo

SSTImap is an automated detection tool that identifies Server-Side Template Injection vulnerabilities in web applications through systematic testing and analysis.

0
OpenRedireX Logo

A fuzzer for detecting open redirect vulnerabilities

0
Nikto Logo

Web server scanner for identifying security vulnerabilities.

0
hakrawler Logo

A fast web crawler for discovering endpoints and assets within web applications during security reconnaissance.

1
JS-Scan Logo

A JavaScript scanner built in PHP for scraping URLs and other information.

0
Acunetix Web Vulnerability Scanner Demonstration Site Logo

A demonstration site for the Acunetix Web Vulnerability Scanner, intentionally vulnerable to various web-based attacks.

0

Stay Updated with Mandos Brief

Get the latest cybersecurity updates in your inbox

POPULAR

RoboShadow Logo

A cybersecurity platform that offers vulnerability scanning, Windows Defender and 3rd party AV management, and MFA compliance reporting, among other features.

10
TestSavantAI Logo

Security platform that provides protection, monitoring and governance for enterprise generative AI applications and LLMs against various threats including prompt injection and data poisoning.

5
Cybersec Feeds Logo

A threat intelligence aggregation service that consolidates and summarizes security updates from multiple sources to provide comprehensive cybersecurity situational awareness.

5
Fabric Platform by BlackStork Logo

Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.

5
Mandos Brief Newsletter Logo

A weekly newsletter providing cybersecurity leadership insights, industry updates, and strategic guidance for security professionals advancing to management positions.

5
View Popular Tools →