Tools: fuzzer (74)
Pentesting tools tagged fuzzer. See all tools or the category key.
ajpfuzzer
A command-line fuzzer for the Apache JServ Protocol (ajp13).
backfuzz
A network protocol fuzzing toolkit.
bfuzz
Input based fuzzer tool for browsers.
boofuzz
boofuzz
brainstorm
A smarter web fuzzing tool that combines local LLM models and ffuf to optimize directory and file discovery.
browser-fuzzer
Browser Fuzzer 3
bunny
A closed loop, high-performance, general purpose protocol-blind fuzzer for C programs.
choronzon
An evolutionary knowledge-based fuzzer.
cirt-fuzzer
A simple TCP/UDP protocol fuzzer.
conscan
A blackbox vulnerability scanner for the Concre5 CMS.
cookie-cadger
An auditing tool for Wi-Fi or wired Ethernet connections.
crlf-injector
A python script for testing CRLF injecting issues.
dharma
Generation-based, context-free grammar fuzzer.
dizzy
A Python based fuzzing framework with many features.
domato
DOM fuzzer.
easyfuzzer
A flexible fuzzer, not only for web, has a CSV output for efficient output analysis (platform independent).
flyr
Block-based software vulnerability fuzzing framework.
frisbeelite
A GUI-based USB device fuzzer.
ftp-fuzz
The master of all master fuzzing scripts specifically targeted towards FTP server software.
fuddly
Fuzzing and Data Manipulation Framework (for GNU/Linux).
fusil
A Python library used to write fuzzing programs.
fuzzball2
A fuzzer for TCP and IP protocol options. It sends a bunch of more or less bogus packets to the target.
fuzzdb
Attack and Discovery Pattern Dictionary for Application Fault Injection Testing.
fuzzdiff
A simple tool designed to help out with crash analysis during fuzz testing. It selectively 'un-fuzzes' portions of a fuz
fuzzowski
A Network Protocol Fuzzer made by NCCGroup based on Sulley and BooFuzz.
goofuzz
A Bash script that uses advanced Google search techniques to obtain sensitive information in files or directories withou
grammarinator
A random test generator / fuzzer that creates test cases according to an input ANTLR v4 grammar.
grr
High-throughput fuzzer and emulator of DECREE binaries.
hexorbase
A database application designed for administering and auditing multiple database servers simultaneously from a centraliz
hodor
A general-use fuzzer that can be configured to use known-good input and delimiters in order to fuzz specific locations.
honggfuzz
A general-purpose fuzzer with simple, command-line interface.
http-fuzz
A simple http fuzzer.
ifuzz
A binary file fuzzer with several options.
ikeprober
Tool crafting IKE initiator packets and allowing many options to be manually set. Useful to find overflows, error condit
jbrofuzz
Web application protocol fuzzer that emerged from the needs of penetration testing.
kitty-framework
Fuzzing framework written in python.
malybuzz
A Python tool focused in discovering programming faults in network software.
manul
A coverage-guided parallel fuzzer for open-source and blackbox binaries on Windows, Linux and MacOS.
melkor
An ELF fuzzer that mutates the existing data in an ELF sample given to create orcs (malformed ELFs), however, it does no
notspikefile
A Linux based file format fuzzing tool
oat
A toolkit that could be used to audit security within Oracle database servers.
peach
A SmartFuzzer that is capable of performing both generation and mutation based fuzzing.
peach-fuzz
Simple vulnerability scanning framework.
pentbox
A security suite that packs security and stability testing oriented tools for networks and systems.
portmanteau
An experimental unix driver IOCTL security tool that is useful for fuzzing and discovering device driver attack surface.
powerfuzzer
Powerfuzzer is a highly automated web fuzzer based on many other Open Source fuzzers available (incl. cfuzzer, fuzzled,
profuzz
Simple PROFINET fuzzer based on Scapy.
pyjfuzz
Python JSON Fuzzer.
ratproxy
A passive web application security assessment tool
s3-fuzzer
A concurrent, command-line AWS S3 Fuzzer.
samesame
Command line tool to generate crafty homograph strings.
sandsifter
The x86 processor fuzzer.
sharpfuzz
AFL-based fuzz testing for .NET.
sloth-fuzzer
A smart file fuzzer.
smtp-fuzz
Simple smtp fuzzer.
snmp-fuzzer
SNMP fuzzer uses Protos test cases with an entirely new engine written in Perl.
socketfuzz
Simple socket fuzzer.
spiderpig-pdffuzzer
A javascript pdf fuzzer.
spike-fuzzer
IMMUNITYsec's fuzzer creation kit in C.
sploitego
Maltego Penetration Testing Transforms.
sqlbrute
Brute forces data out of databases using blind SQL injection.
sshfuzz
A SSH Fuzzing utility written in Perl that uses Net::SSH2.
sulley
A pure-python fully automated and unattended fuzzing framework.
taof
A GUI cross-platform Python generic network protocol fuzzer.
tcpcontrol-fuzzer
2^6 TCP control bit fuzzer (no ECN or CWR).
tftp-fuzz
Master TFTP fuzzing script as part of the ftools series of fuzzers.
thefuzz
CLI fuzzing tool.
trinity
A Linux System call fuzzer.
uff
Unleashed ffuf. A fork of ffuf with more functions & a modified HTTP stack.
unifuzzer
A fuzzing tool for closed-source binaries based on Unicorn and LibFuzzer.
uniofuzz
The universal fuzzing tool for browsers, web services, files, programs and network services/ports
w3af
Web Application Attack and Audit Framework.
webshag
A multi-threaded, multi-platform web server audit tool.
wsfuzzer
A Python tool written to automate SOAP pentesting of web services.