Tools for identifying, prioritizing, and remediating security vulnerabilities in systems and applications. Task: Web Application Security
Explore 11 curated tools and resources
A hosted web application security testing tool that enables security researchers to register, activate their accounts, and scan web applications for vulnerabilities.
A multithreaded vulnerability scanner for web-based applications
A free and open-source tool for identifying vulnerabilities in Joomla-based websites.
A fuzzer for detecting open redirect vulnerabilities
DOM-based XSS vulnerability scanner
A presentation about the OWASP Top 10, a list of the most critical security risks to web applications.
A vulnerable web site in NodeJS for testing security source code analyzers.
NoSQLMap is a Python tool for auditing and automating injection attacks on NoSQL databases.
A free and open-source deliberately insecure web application for security enthusiasts, developers, and students to discover and prevent web vulnerabilities.
A ruby script that scans for vulnerable 3rd-party web applications
Open source web application security scanner with 200+ vulnerability identification capabilities.
An AI-powered career platform that automates the creation of cybersecurity job application materials and provides company-specific insights for job seekers.
An AI-driven data classification and governance platform that automatically discovers, analyzes, and labels sensitive information while providing risk management and compliance capabilities.
An AI-powered platform that automates threat hunting and analysis by processing cyber threat intelligence and generating customized hunt packages for SOC teams.
Aikido is an all-in-one security platform that combines multiple security scanning and management functions for cloud-native applications and infrastructure.
Permiso is an Identity Threat Detection and Response platform that provides comprehensive visibility and protection for identities across multiple cloud environments.
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.