Awesome Bug Bounty Tools
Section: Vulnerability Scanners · Metasploit Framework
Entry
Appears in 7 awesome lists
A tool for developing and executing exploit code against a remote target machine. Other important sub-projects include the Opcode Database, shellcode archive and related research.
Section: Vulnerability Scanners · Metasploit Framework
Section: Web
Section: Tools · A computer security project that provides information about security vulnerabilities and aids in penetration testing and IDS signature development.
Section: Windows Privilege Escalation · post/multi/recon/local_exploit_suggester - suggests local meterpreter exploits that can be used; post/windows/gather/enum_patches - helps to identify any missing patches
Section: Security · World's most used penetration testing software.
Section: Scanning / Pentesting · A tool for developing and executing exploit code against a remote target machine. Other important sub-projects include the Opcode Database, shellcode archive and related research.
Section: Network Protocol Fuzzers · A framework which contains some fuzzing capabilities via Auxiliary modules.
A JavaScript minifier. Removes everything that makes the code readable and pretty to make it smaller.
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud…
Enterprise-grade web vulnerability scanner with 60+ attack modules, built in Rust for penetration testing and security assessments.
Noisy but fast black box web server and web application vulnerability scanner.
Osmedeus is a Workflow Engine for Offensive Security. It was designed to build a foundation with the capability and flexibility that allows you to build your own reconnaissance system and run it on a large number of targets.
World’s most popular free web security tools and is actively maintained by a dedicated international team of volunteers
scanner detecting the use of JavaScript libraries with known vulnerabilities. Can also generate an SBOM of the libraries it finds.
Automated pentest framework for offensive security experts.