Passive subdomain discovery.
Outils pour web apps
HTTP/S applications and APIs.
74 tools indexed
Google's network vulnerability scanner.
High-volume Burp HTTP fuzzer.
WordPress vulnerability scanner.
All-in-one OSINT for any website.
Next-generation web tech fingerprinter.
Advanced XSS detection suite.
Cyber-security all-in-one platform.
Detect typosquats and phishing domains.
Fast recursive content discovery in Rust.
ffuf
—Fast web fuzzer written in Go.
LLM vulnerability scanner.
Find leaked secrets via GitHub search.
Fast HTTP toolkit.
Test and exploit JWT vulnerabilities.
Interactive HTTPS proxy.
Red-team prompts, agents and RAGs.
SOCKS proxy through a web shell.
Semi-automatic OSINT framework.
Automatic SQL injection and database takeover.
Test TLS/SSL on any port.
E-mail and subdomain harvester.
w3af
—Web application attack and audit framework.
WAF fingerprinting.