logo
BETA

Home

Tools

Content

Wordlists

logo
BETA

Top Tools This Month

|


sqlmap

Automate the process of detecting and exploiting SQL injection flaws and taking over of database servers.

πŸ•ΈοΈ Web / API

-

πŸͺŸ Windows

🐧 Linux

-

πŸ€‘ Free

Loading...

nuclei

Fast and customizable vulnerability scanner based on simple YAML based DSL.

πŸ–₯️ Infrastructure

πŸ•ΈοΈ Web / API

-

πŸͺŸ Windows

🍎 MacOS

🐧 Linux

-

πŸ€‘ Free

Loading...

feroxbuster

A fast, simple, recursive content discovery tool written in Rust.

πŸ•ΈοΈ Web / API

-

πŸͺŸ Windows

🍎 MacOS

🐧 Linux

-

πŸ€‘ Free

Loading...

kiterunner

Kiterunner is a tool that is capable of performing traditional content discovery and bruteforcing of routes/endpoints in modern applications.

πŸ•ΈοΈ Web / API

-

🍎 MacOS

🐧 Linux

-

πŸ€‘ Free

Loading...

dalfox

Dalfox is a powerful open-source XSS scanner and utility focused on automation.

πŸ•ΈοΈ Web / API

-

πŸͺŸ Windows

🍎 MacOS

🐧 Linux

-

πŸ€‘ Free

Loading...

crlfuzz

A fast tool to scan CRLF vulnerability written in Go

πŸ•ΈοΈ Web / API

-

πŸͺŸ Windows

🍎 MacOS

🐧 Linux

-

πŸ€‘ Free

Loading...

headi

Customisable and automated HTTP header injection

πŸ•ΈοΈ Web / API

-

🐧 Linux

-

πŸ€‘ Free

Loading...

byp4xx

40X/HTTP bypasser in Go. Features: Verb tampering, headers, #bugbountytips, User-Agents, extensions, default credentials...

πŸ•ΈοΈ Web / API

-

πŸ€‘ Free

Loading...

LEAKEY

A bash script which checks and validates leaked credentials.

πŸ•ΈοΈ Web / API

-

πŸ€‘ Free

Loading...

CloakQuest3r

Uncover the true IP address of websites safeguarded by Cloudflare & Others

πŸ•ΈοΈ Web / API

-

πŸͺŸ Windows

🍎 MacOS

🐧 Linux

-

πŸ€‘ Free

Loading...

clairvoyance

Obtain GraphQL API schema even if the introspection is disabled

πŸ•ΈοΈ Web / API

-

🐧 Linux

-

πŸ€‘ Free

Loading...

graphqlMaker

Finds graphql queries in javascript files

πŸ•ΈοΈ Web / API

-

🐧 Linux

-

πŸ€‘ Free

Loading...

No results found

Looks like there's nothing that matches your filters.
Check back in later!

Tools by category

πŸ•ΈοΈ Web / API

🟦 Blue Team

πŸŸ₯ Red Team

πŸŸͺ Purple Team

☁️ Cloud

πŸ“± Mobile

πŸ“‘ Compiled Application

πŸ§‘β€πŸ’» Code Review

πŸ”οΈ OSINT

πŸ–₯️ Infrastructure

πŸ€” Other

Upvote to start earning kudos!

indiedex-logo

Pentest List is a curation of the latest top-rated tools and content in penetration testing and security defense. Discover cutting-edge tools, blogs, and more, covering port scanning, SQL injection, and a wide range of other vulnerability exploits.

Links

Wiki

Blog

2024 Pentest List, All Rights Reserved.