Pompem is an open source tool designed to automate the search for Exploits and Vulnerabilities in important databases. Developed in Python, it offers advanced search capabilities, aiding pentesters and ethical hackers. It searches in databases like PacketStorm security, CXSecurity, ZeroDay, Vulners, National Vulnerability Database, and WPScan Vulnerability Database. Pompem can be downloaded from its Git repository or by clicking on the provided links. It works with Python 3.5 and requires the Requests package.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
A community effort to compile security advisories for Ruby libraries with a detailed directory structure.
tfsec is being replaced by Trivy, a more comprehensive open-source security solution
Finds publicly known security vulnerabilities in a website's frontend JavaScript libraries.
Powerful PowerShell script for identifying missing software patches for local privilege escalation vulnerabilities.
Linux privilege escalation auditing tool for detecting security deficiencies in Linux kernels.
Dnscan is a DNS reconnaissance tool that performs DNS scans, DNS cache snooping, and DNS amplification attack detection.
Automate Google Hacking Database scraping and searching with Pagodo, a tool for finding vulnerabilities and sensitive information.
A utility for testing AWS Lambda functions for SQL Injection vulnerabilities using SQLMap attacks.
A tool for detecting and exploiting Android application vulnerabilities
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.