Latest

w3af is an Open-source free Web Application Attack and Audit Framework

pentesting

w3af is an Open-source free Web Application Attack and Audit Framework

w3af is an open source web application security scanner which helps developers and penetration testers identify and exploit vulnerabilities in their web applications. The scanner is able to identify 200+ vulnerabilities, including Cross-Site Scripting, SQL injection and OS commanding. Features * User-friendly * Command-line interface * GUI app * Extenisable with plugins * Dozens of

By Hazem Abbas
WhatWeb is a Next Generation Extensible Web Scanner for Pentesting with Aggression

Vulnerability Scanner

WhatWeb is a Next Generation Extensible Web Scanner for Pentesting with Aggression

WhatWeb identifies websites. Its goal is to answer the question, "What is that Website?". WhatWeb recognises web technologies including content management systems (CMS), blogging platforms, statistic/analytics packages, JavaScript libraries, web servers, and embedded devices. WhatWeb has over 1800 plugins, each to recognise something different. WhatWeb also identifies

By Hazem Abbas
Trivy: Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Trivy: Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Trivy is an open-source free comprehensive and versatile security scanner. Trivy has scanners that look for security issues, and targets where it can find those issues. Targets Targets (what Trivy can scan): * Container Image * Filesystem * Git Repository (remote) * Virtual Machine Image * Kubernetes * AWS Scanners Scanners (what Trivy can find there)

By Hazem Abbas