Gamma Ray is a software that helps developers to look for vulnerabilities on their Node.js applications. Its pluggable infrastructure makes it very easy to write an integration with several vulnerabilities databases. To get it, run: $> go get github.com/nearform/gammaray. Once finished, you should have the gammaray binary in your GOPATH/bin folder. Usage: Gammaray comes as a single binary, so you only need to run it passing your project as an argument: $> gammaray <path-to-your-node-app>. Gammaray supports flags like -path, -image, -log-level, and -ignore-list. By providing the path to a JSON file with CVE/CWE ignore array, you can customize the vulnerabilities to be ignored. After running, all the vulnerabilities affecting your packages will be displayed. Contributing: As a developer, clone the repository, start hacking, and PRs are welcome! $> mkd
FEATURES
SIMILAR TOOLS
Automate OSINT for threat intelligence and attack surface mapping with SpiderFoot.
An AI-powered Google Dorking tool that helps create effective search queries to uncover sensitive information on the internet.
LeakIX is a red-team search engine that indexes mis-configurations and vulnerabilities online.
Nmap is an essential network scanning tool used for network security auditing and status monitoring.
A fully customizable, offensive security reporting solution for pentesters, red teamers, and other security professionals.
A Ruby script that scans networks for vulnerable third-party web applications and front-ends with known exploitable security flaws.
Automate your reconnaissance process with AttackSurfaceMapper, a tool for mapping and analyzing network attack surfaces.
Automate Google Hacking Database scraping and searching with Pagodo, a tool for finding vulnerabilities and sensitive information.
Web inventory tool that captures screenshots of webpages and includes additional features for enhanced usability.