ParamPamPam is a tool for detecting and exploiting vulnerabilities in web applications. It uses a combination of techniques such as fuzzing, SQL injection, and cross-site scripting to identify vulnerabilities. ParamPamPam is designed to be easy to use and requires minimal configuration. It is available on GitHub and is open-source.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
A tool to find and search for registered CVEs, creating a local CVE database for offline use.
An open-source attack surface management platform for identifying and managing vulnerabilities
A vulnerability scanner that helps you identify and fix vulnerabilities in your code
A tool for detecting and exploiting Android application vulnerabilities
Fuzzapi is a Rails application with a user-friendly UI for API_Fuzzer gem and Docker setup.
A collection of SQL injection cheat sheets for various databases
A vulnerability management tool for macOS that monitors and detects vulnerabilities in over 100 apps.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.