Free Cybersecurity Tools

Find the right solution for your security needs without any cost.

Explore 2630 curated cybersecurity tools, with 15,538+ visitors searching for solutions

FEATURED

Hudson Rock Cybercrime Intelligence Tools Logo

Cybercrime intelligence tools for searching compromised credentials from infostealers

Proton Pass Logo

Password manager with end-to-end encryption and identity protection features

NordVPN Logo

VPN service providing encrypted internet connections and privacy protection

Mandos Fractional CISO Services Logo

Fractional CISO services for B2B companies to accelerate sales and compliance

Get Featured

Feature your product and reach thousands of professionals.

FREE

XSSwagger Logo

A specialized scanner that detects XSS vulnerabilities in older versions of Swagger-ui implementations.

0
LFISuite Logo

A tool for Local File Inclusion (LFI) exploitation and scanning

0
LinksDumper Logo

LinksDumper extracts links and endpoints from HTTP responses to support web application security testing and reconnaissance activities.

0
CMSmap Logo

A python open source CMS scanner that automates the process of detecting security flaws of the most popular CMSs.

0
scrying Logo

A tool for collecting and analyzing screenshots from remote desktop protocols, web applications, and VNC connections.

0
SubOver Logo

A powerful tool for finding and exploiting subdomain takeover vulnerabilities

0
tko-subs Logo

A tool for detecting and taking over subdomains with dead DNS records

0
Puredns Logo

A fast domain resolver and subdomain bruteforcing tool

0
dotdotpwn Logo

A directory traversal fuzzer for finding and exploiting directory traversal vulnerabilities.

0
Femida Logo

Femida is a Python automation tool that integrates with Burp Suite to detect blind XSS vulnerabilities in web applications through HTTP request analysis.

0
docem Logo

A tool to embed XXE and XSS payloads in various file formats

0
extended-ssrf-search Logo

A smart SSRF scanner using different methods like parameter brute forcing in post and get requests.

0
DNS Rebind Toolkit Logo

A front-end JavaScript toolkit for creating DNS rebinding attacks

0
jaeles Logo

Jaeles is an automated web application testing tool that helps identify vulnerabilities and security issues through customizable testing scenarios.

1
headi Logo

A tool for automated HTTP header injection

0
awesome-vulnerable-apps Logo

A list of vulnerable applications for testing and learning

0
gowitness Logo

A Go-based command-line tool that uses Chrome Headless to automatically capture screenshots of web pages for reconnaissance and analysis purposes.

0
Trufflehog-Chrome-Extension Logo

A Chrome browser extension that uses machine learning to detect and alert users about sensitive data exposure and potential data breaches across web environments.

0
SSRFmap Logo

Automatic SSRF fuzzer and exploitation tool

0
LinkFinder Logo

A Python script that finds endpoints in JavaScript files to identify potential security vulnerabilities.

0
Razzer Logo

A Kernel fuzzer focusing on race bugs

0
sentrySSRF Logo

A tool to search for Sentry config on a page or in JavaScript files and check for blind SSRF

0
Param Miner Logo

A command-line tool that identifies and extracts parameters from HTTP requests and responses to assist with web application security testing and vulnerability assessment.

0
xssValidator Logo

A Burp Suite extension that automates XSS vulnerability detection and validation through custom payload generation and response analysis.

0