Loading...
Exposure & Vulnerability Management tools for Scanner: the Exposure & Vulnerability Management options most relevant when Scanner is the priority, compared side by side so you can shortlist faster. Filter by pricing or specialization. Independent and vendor-neutral: our scores and rankings are earned, never bought — sponsored placement is always labeled.
We cover 25 cybersecurity tools
Web-based URL scanner that checks if a site is phishing or malicious.
Vulnerability scanning and pentest toolset for web apps, APIs, and networks
Russian vulnerability scanner for SMB infra up to 500 hosts, black/white box.
An automated reconnaissance tool that crawls domains to discover URLs and scan for exposed secrets, API keys, and sensitive files during security assessments.
A python open source CMS scanner that automates the process of detecting security flaws of the most popular CMSs.
CloudScraper is an enumeration tool that discovers cloud storage resources including S3 buckets, Azure blobs, and DigitalOcean Spaces across target environments.
A specialized scanner that detects XSS vulnerabilities in older versions of Swagger-ui implementations.
A command-line script that tests multiple domains from a list for open redirect vulnerabilities and reports findings.
CorsMe is a specialized scanner that identifies Cross-Origin Resource Sharing (CORS) misconfigurations in web applications and provides remediation recommendations.
A multi-threaded scanner for identifying CORS flaws and misconfigurations
A security scanner that identifies Cross-Origin Resource Sharing (CORS) misconfigurations in web applications to detect potential vulnerabilities.
A Python-based command-line tool that scans websites for CORS misconfigurations by analyzing HTTP response headers to identify potential security vulnerabilities.
A JavaScript scanner built in PHP for scraping URLs and other information.
An automated tool for identifying technologies used on websites with mass scanning capabilities, based on the Wappalyzer detection engine.
A CLI tool that enhances Nmap with 31 modules containing 459 scan profiles for streamlined network reconnaissance and security assessments.
A multi-cloud DNS security tool that detects dangling DNS records and potential subdomain takeover vulnerabilities by scanning cloud infrastructure and DNS zones.
A distributed AWS security auditing tool that continuously enumerates and scans internet-facing AWS services to identify potentially misconfigured resources.
A next-generation web scanner that identifies websites and recognizes web technologies, including content management systems, blogging platforms, and more.
A Ruby script that scans networks for vulnerable third-party web applications and front-ends with known exploitable security flaws.
S3Scanner is an open-source tool that scans S3 buckets across S3-compatible APIs to identify misconfigurations and security vulnerabilities.