Web Security Security Tools

Browse Cybersecurity Tools in this category

19 InfoSec Tools

ELcazad0r-XSS

ELcazad0r-XSS

by nihaltikka

A powerful and comprehensive XSS vulnerability scanner with an intuitive GUI interface.

security tool
Jul 05, 2025
toxssin

toxssin

by t3l3machus

An XSS exploitation command-line interface and payload generator.

cross-site-scripting exploitation hacking
Jun 24, 2025
words-scraper

words-scraper

by dariusztytko

Selenium based web scraper to generate passwords list

security tool
Jun 24, 2025
headi

headi

by mlcsec

Customisable and automated HTTP header injection

bugbounty golang header-injection
Jun 18, 2025
archerysec

archerysec

by archerysec

ASOC, ASPM, DevSecOps, Vulnerability Management Using ArcherySec.

asoc aspm devops
Jun 08, 2025
Advanced-SQL-Injection-Cheatsheet

Advanced-SQL-Injection-Cheatsheet

by kleiton0x00

A cheat sheet that contains advanced queries for SQL Injection of all types.

cheatsheet mssql-dump mysql-injection
Jun 08, 2025
filter-shell

filter-shell

by tuckerweibell

Interactive CLI tool for exploiting LFI via PHP filter chaining — a wrapper around Synacktiv’s php_filter_chain_generator.

security tool
Jun 01, 2025
ppmap

ppmap

by kleiton0x00

A scanner/exploitation tool written in GO, which leverages client-side Prototype Pollution to XSS by exploiting known gadgets.

bug-bounty bugbounty bugbounty-tool
May 31, 2025
wpprobe

wpprobe

by Chocapikk

A fast WordPress plugin enumeration tool

security tool
May 31, 2025
cariddi

cariddi

by edoardottt

Take a list of domains, crawl urls and scan for endpoints, secrets, api keys, file extensions, tokens and more

bugbounty crawler crawling
May 31, 2025
Raccoon

Raccoon

by evyatarmeged

A high performance offensive security tool for reconnaissance and vulnerability scanning

enumeration fuzzing hacking
May 26, 2025
ghauri

ghauri

by r0oth3x49

An advanced cross-platform tool that automates the process of detecting and exploiting SQL injection security flaws

security tool
May 26, 2025
angularjs-csti-scanner

angularjs-csti-scanner

by tijme

Automated client-side template injection (sandbox escape/bypass) detection for AngularJS v1.x.

angularjs angularjs-csti-scanner angularjs-sandbox-escape
May 26, 2025
web-check

web-check

by Lissy93

🕵️‍♂️ All-in-one OSINT tool for analysing any website

osint privacy security
May 25, 2025
SSTImap

SSTImap

by vladko312

Automatic SSTI detection tool with interactive interface

information-security penetration-testing penetration-testing-tools
May 25, 2025
wapiti

wapiti

by wapiti-scanner

Web vulnerability scanner written in Python3

security tool
May 25, 2025
vulnx

vulnx

by anouarbensaad

vulnx 🕷️ an intelligent Bot, Shell can achieve automatic injection, and help researchers detect security vulnerabilities CMS system. It can perform a quick CMS security detection, information collection (including sub-domain name, ip address, country information, organizational information and time zone, etc.) and vulnerability scanning.

auto-exploiter bot cloudflare-detection
May 25, 2025
sqlmap

sqlmap

by sqlmapproject

Automatic SQL injection and database takeover tool

database detection exploitation
May 25, 2025
Sn1per

Sn1per

by 1N3

Attack Surface Management Platform

attack-surface attack-surface-management attacksurface
May 25, 2025