Tools: webapp (287)
Pentesting tools tagged webapp. See all tools or the category key.
0d1n
Web security tool to make fuzzing at HTTP inputs, made in C with libCurl.
abuse-ssl-bypass-waf
Bypassing WAF by abusing SSL/TLS Ciphers.
adfind
Simple admin panel finder for php,js,cgi,asp and aspx admin panels.
adminpagefinder
This python script looks for a large amount of possible administrative interfaces on a given site.
albatar
A SQLi exploitation framework in Python.
anti-xss
A XSS vulnerability scanner.
arachni
A feature-full, modular, high-performance Ruby framework aimed towards helping penetration testers and administrators ev
astra
Automated Security Testing For REST API's.
atlas
Open source tool that can suggest sqlmap tampers to bypass WAF/IDS/IPS.
badministration
A tool which interfaces with management or administration applications from an offensive standpoint.
badsecrets
A library for detecting known secrets across many web frameworks.
bbqsql
SQL injection exploit tool.
bbscan
A tiny Batch web vulnerability Scanner.
bing-lfi-rfi
Python script for searching Bing for sites that may have local and remote file inclusion vulnerabilities.
blisqy
Exploit Time-based blind-SQL injection in HTTP-Headers (MySQL/MariaDB).
brutemap
Penetration testing tool that automates testing accounts to the site's login page.
brutexss
Cross-Site Scripting Bruteforcer.
bsqlbf
Blind SQL Injection Brute Forcer.
bsqlinjector
Blind SQL injection exploitation tool written in ruby.
c5scan
Vulnerability scanner and information gatherer for the Concrete5 CMS.
caido-desktop
Intercepting proxy to replay, inject, scan and fuzz HTTP requests.
cansina
A python-based Web Content Discovery Tool.
cariddi
Take a list of domains, crawl urls and scan for endpoints, secrets, api keys, file extensions, token.
cent
Community edition nuclei templates.
chankro
Tool that generates a PHP capable of run a custom binary (like a meterpreter) or a bash script (p.e. reverse shell) bypa
cjexploiter
Drag and Drop ClickJacking exploit development assistance tool.
clairvoyance
Obtain GraphQL API Schema even if the introspection is not enabled.
cloudget
Python script to bypass cloudflare from command line. Built upon cfscrape module.
cms-few
Joomla, Mambo, PHP-Nuke, and XOOPS CMS SQL injection vulnerability scanning tool written in Python.
cmsfuzz
Fuzzer for wordpress, cold fusion, drupal, joomla, and phpnuke.
cmsscan
CMS scanner to identify and find vulnerabilities for Wordpress, Drupal, Joomla, vBulletin.
cmsscanner
CMS Scanner Framework.
comission
WhiteBox CMS analysis.
commentor
Extract all comments from the specified URL resource.
corscanner
Fast CORS misconfiguration vulnerabilities scanner.
corsy
CORS Misconfiguration Scanner.
crabstick
Automatic remote/local file inclusion vulnerability analysis and exploit tool.
crackql
GraphQL password brute-force and fuzzing utility
crawlic
Web recon tool (find temporary files, parse robots.txt, search folders, google dorks and search domains hosted on same s
csrftester
The OWASP CSRFTester Project attempts to give developers the ability to test their applications for CSRF flaws.
cybercrowl
A Python Web path scanner tool.
dalfox
Powerful open-source XSS scanner and utility focused on automation.
darkdump
Open Source Intelligence interface for Deep Web scraping.
darkjumper
This tool will try to find every website that host at the same server at your target.
darkscrape
OSINT Tool For Scraping Dark Websites.
davscan
Fingerprints servers, finds exploits, scans WebDAV.
dawnscanner
A static analysis security scanner for ruby written web applications.
dff-scanner
Tool for finding path of predictable resource locations.
dirble
Fast directory scanning and scraping tool.
dirbuster-ng
C CLI implementation of the Java dirbuster tool.
dirhunt
Find web directories without bruteforce.
dirscraper
OSINT Scanning tool which discovers and maps directories found in javascript files hosted on a website.
docem
Uility to embed XXE and XSS payloads in docx,odt,pptx,etc (OXML_XEE on steroids).
domi-owned
A tool used for compromising IBM/Lotus Domino servers.
dontgo403
Tool to bypass 40X response codes..
doork
Passive Vulnerability Auditor.
dorknet
Selenium powered Python script to automate searching for vulnerable web apps.
droopescan
A plugin-based scanner that aids security researchers in identifying issues with several CMSs, mainly Drupal & Silverstr
drupal-module-enum
Enumerate on drupal modules.
drupalscan
Simple non-intrusive Drupal scanner.
drupwn
Drupal enumeration & exploitation tool.
dsfs
A fully functional File inclusion vulnerability scanner (supporting GET and POST parameters) written in under 100 lines
dsjs
A fully functional JavaScript library vulnerability scanner written in under 100 lines of code.
dsss
A fully functional SQL injection vulnerability scanner (supporting GET and POST parameters) written in under 100 lines o
dsstore-crawler
A parser + crawler for .DS_Store files exposed publically.
dsxs
A fully functional Cross-site scripting vulnerability scanner (supporting GET and POST parameters) written in under 100
eos
Enemies Of Symfony - Debug mode Symfony looter.
epicwebhoneypot
Tool which aims to lure attackers using various types of web vulnerability scanners by tricking them into believing that
evine
Interactive CLI Web Crawler.
extended-ssrf-search
Smart ssrf scanner using different methods like parameter brute forcing in post and get.
fbht
A Facebook Hacking Tool
fdsploit
A File Inclusion & Directory Traversal fuzzing, enumeration & exploitation tool.
fhttp
This is a framework for HTTP related attacks. It is written in Perl with a GTK interface, has a proxy for debugging and
filebuster
An extremely fast and flexible web fuzzer.
filegps
A tool that help you to guess how your shell was renamed after the server-side script of the file uploader saved it.
fimap
A little tool for local and remote file inclusion auditing and exploitation.
fingerprinter
CMS/LMS/Library etc Versions Fingerprinter.
flask-session-cookie-manager2
Decode and encode Flask session cookie.
flask-session-cookie-manager3
Decode and encode Flask session cookie.
fockcache
Tool to make cache poisoning by trying X-Forwarded-Host and X-Forwarded-Scheme headers on web pages.
fuxploider
Tool that automates the process of detecting and exploiting file upload forms flaws.
gau
Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl.
ghauri
An advanced cross-platform tool that automates the process of detecting and exploiting SQL injection security flaws.
ghost-py
Webkit based webclient (relies on PyQT).
gitdump
A pentesting tool that dumps the source code from .git even when the directory traversal is disabled.
gittools
A repository with 3 tools for pwn'ing websites with .git repositories available'.
golismero
Opensource web security testing framework.
goop-dump
Tool to dump a git repository from a website, focused on as-complete-as-possible dumps and handling weird edge-cases.
gopherus
Tool generates gopher link for exploiting SSRF and gaining RCE in various servers.
grabber
A web application scanner. Basically it detects some kind of vulnerabilities in your website.
graphql-path-enum
Tool that lists the different ways of reaching a given type in a GraphQL schema.
graphqlmap
Scripting engine to interact with a graphql endpoint for pentesting purposes.
graphw00f
GraphQL endpoint detection and engine fingerprinting.
grpc-pentest-suite
Set of tools for pentesting gRPC-Web Applications.
h2csmuggler
HTTP Request Smuggling over HTTP/2 Cleartext (h2c).
h2t
Scans a website and suggests security headers to apply.
hetty
HTTP toolkit for security research. Aims to become an open source alternative to commercial software like Burp Suite Pro
hookshot
Integrated web scraper and email account data breach comparison tool.
htcap
A web application analysis tool for detecting communications between javascript and the server.
http2smugl
Http2Smugl - Tool to detect and exploit HTTP request smuggling in cases it can be achieved via HTTP/2 -> HTTP/1.1 conver
httpforge
A set of shell tools that let you manipulate, send, receive, and analyze HTTP messages. These tools can be used to test,
httpgrep
Async HTTP(S) scanner that greps response bodies and headers for strings or regex across hosts, ports, CIDR/ranges and T
httppwnly
"Repeater" style XSS post-exploitation tool for mass browser control.
httpx
A fast and multi-purpose HTTP toolkit allow to run multiple probers using retryablehttp library.
identywaf
Blind WAF identification tool.
injectus
CRLF and open redirect fuzzer.
interactsh-client
Open-Source Solution for Out of band Data Extraction.
ipsourcebypass
This Python script can be used to bypass IP source restrictions using HTTP headers.
jaeles
The Swiss Army knife for automated Web Application Testing.
jaidam
Penetration testing tool that would take as input a list of domain names, scan them, determine if wordpress or joomla pl
jast
Just Another Screenshot Tool.
jdeserialize
A library that interprets Java serialized objects. It also comes with a command-line tool that can generate compilable c
jexboss
Jboss verify and Exploitation Tool.
jira-scan
A simple remote scanner for Atlassian Jira
jok3r
Network and Web Pentest Framework.
jomplug
This php script fingerprints a given Joomla system and then uses Packet Storm's archive to check for bugs related to the
jooforce
A Joomla password brute force tester.
joomlascan
Joomla scanner scans for known vulnerable remote file inclusion paths and files.
joomlavs
A black box, Ruby powered, Joomla vulnerability scanner.
jshell
Get a JavaScript shell with XSS.
jsonbee
A ready to use JSONP endpoints/payloads to help bypass content security policy (CSP).
jsparser
Parse javascript using Tornado and JSBeautifier to discover interesting enpoints.
jsql-injection
A Java application for automatic SQL database injection.
jstillery
Advanced JavaScript Deobfuscation via Partial Evaluation.
juumla
Python tool created to identify Joomla version, scan for vulnerabilities and search for config files.
jwt-hack
A tool for hacking / security testing to JWT.
kadimus
LFI Scan & Exploit Tool.
katana-pd
Crawling and spidering framework.
kiterunner
Contextual Content Discovery Tool.
konan
Advanced Web Application Dir Scanner.
kubolt
Utility for scanning public kubernetes clusters.
lfi-exploiter
This perl script leverages /proc/self/environ to attempt getting code execution out of a local file inclusion vulnerabil
lfi-fuzzploit
A simple tool to help in the fuzzing for, finding, and exploiting of local file inclusion vulnerabilities in Linux-based
lfi-image-helper
A simple script to infect images with PHP Backdoors for local file inclusion attacks.
lfi-sploiter
This tool helps you exploit LFI (Local File Inclusion) vulnerabilities. Post discovery, simply pass the affected URL and
lfifreak
A unique automated LFi Exploiter with Bind/Reverse Shells.
lfimap
Local file inclusion discovery and exploitation tool.
liffy
A Local File Inclusion Exploitation tool.
lightbulb
Python framework for auditing web applications firewalls.
linkfinder
Discovers endpoint and their parameters in JavaScript files.
list-urls
Extracts links from webpage.
log4j-bypass
Log4j web app tester that includes WAF bypasses.
log4j-scan
A fully automated, accurate, and extensive scanner for finding log4j RCE CVE-44228.
lorsrf
Find the parameters that can be used to find SSRF or Out-of-band resource load.
lulzbuster
A multithreaded, very fast and smart HTTP(S) directory and file bruteforcer written in C on top of libcurl.
magescan
Scan a Magento site for information.
malicious-pdf
Generate a bunch of malicious pdf files with phone-home functionality.
mando.me
Web Command Injection Tool.
meg
Fetch many paths for many hosts - without killing the hosts.
metoscan
Tool for scanning the HTTP methods supported by a webserver.
monsoon
A fast HTTP enumerator that allows you to execute a large number of HTTP requests.
mooscan
A scanner for Moodle LMS.
morxtraversal
Path Traversal checking tool.
multiinjector
Automatic SQL injection utility using a lsit of URI addresses to test parameter manipulation.
nosqli
NoSQL scanner and injector.
nosqlmap
Automated Mongo database and NoSQL web application exploitation tool
novahot
A webshell framework for penetration testers.
okadminfinder
Tool to find admin panels / admin login pages.
onionsearch
Script that scrapes urls on different .onion search engines.
opendoor
OWASP WEB Directory Scanner.
owasp-bywaf
A web application penetration testing framework (WAPTF).
owtf
The Offensive (Web) Testing Framework.
pappy-proxy
An intercepting proxy for web application testing.
parameth
This tool can be used to brute discover GET and POST parameters.
parampampam
This tool for brute discover GET and POST parameters.
paramspider
Mining URLs from dark corners of Web Archives for bug hunting/fuzzing/further probing.
payloadmask
Web Payload list editor to use techniques to try bypass web application firewall.
peepingtom
A tool to take screenshots of websites. Much like eyewitness.
phantomcollect
Lightweight stealth web data collection framework for ethical security testing.
php-findsock-shell
A Findsock Shell implementation in PHP + C.
php-malware-finder
Detect potentially malicious PHP files.
pinkerton
JavaScript file crawler and secret finder.
pixload
Image Payload Creating/Injecting tools.
plecost
Wordpress finger printer Tool.
plown
A security scanner for Plone CMS.
poly
Polymorphic webshells.
pown
Security testing and exploitation toolkit built on top of Node.js and NPM.
ppfuzz
A fast tool to scan client-side prototype pollution vulnerability written in Rust.
ppmap
A scanner/exploitation tool written in GO, which leverages client-side Prototype Pollution to XSS by exploiting known ga
proxenet
THE REAL hacker friendly proxy for web application pentests.
pwndrop
Self-deployable file hosting service for red teamers, allowing to easily upload and share payloads over HTTP and WebDAV.
pyfiscan
Free web-application vulnerability and version scanner.
python-witnessme
Web Inventory tool, takes screenshots of webpages using Pyppeteer.
python2-jsbeautifier
JavaScript unobfuscator and beautifier.
rabid
A CLI tool and library allowing to simply decode all kind of BigIP cookies.
rapidscan
The Multi-Tool Web Vulnerability Scanner.
recollapse
Tool for black-box regex fuzzing to bypass validations and discover normalizations in web applications.
remot3d
An Simple Exploit for PHP Language.
restler-fuzzer
First stateful REST API fuzzing tool for automatically testing cloud services through their REST APIs and finding securi
riwifshell
Web backdoor - infector - explorer.
rookie
Load cookies from your web browsers.
ruler
A tool to abuse Exchange services.
rustbuster
DirBuster for Rust.
rww-attack
Performs a dictionary attack against a live Microsoft Windows Small Business Server.
sawef
Send Attack Web Forms.
scanqli
SQLi scanner to detect SQL vulns.
scrying
Collect RDP, web, and VNC screenshots smartly.
second-order
Second-order subdomain takeover scanner.
secretfinder
A python script to find sensitive data (apikeys, accesstoken, jwt,..) in javascript files.
secscan
Web Apps Scanner and Much more utilities.
see-surf
Security tool to find potential vulnerable Server Side Request Forgery (SSRF) parameters.
serializationdumper
A tool to dump Java serialization streams in a more human readable form.
shortfuzzy
A web fuzzing script written in perl.
shuffledns
A wrapper around massdns written in GO.
sitadel
Web Application Security Scanner.
sitediff
Fingerprint a web app using local files as the fingerprint sources.
sj
A tool for auditing endpoints defined in exposed (Swagger/OpenAPI) definition files.
smplshllctrlr
PHP Command Injection exploitation tool.
smuggler
An HTTP Request Smuggling / Desync testing tool written in Python 3.
smuggler-py
Python tool used to test for HTTP Desync/Request Smuggling attacks.
snallygaster
Tool to scan for secret files on HTTP servers.
snuck
Automatic XSS filter bypass.
sourcemapper
Extract JavaScript source trees from Sourcemap files.
spaf
Static Php Analysis and Fuzzer.
sparty
An open source tool written in python to audit web applications using sharepoint and frontpage architecture.
spiga
Configurable web resource scanner.
spike-proxy
A Proxy for detecting vulnerabilities in web applications
spipscan
SPIP (CMS) scanner for penetration testing purpose written in Python.
sqid
A SQL injection digger.
ssrf-sheriff
A simple SSRF-testing sheriff written in Go.
ssrfmap
Automatic SSRF fuzzer and exploitation tool.
stews
A Security Tool for Enumerating WebSockets.
striker
An offensive information and vulnerability scanner.
subjs
Fetches javascript file from a list of URLS or subdomains.
themole
Automatic SQL injection exploitation tool.
tidos-framework
Offensive Web Application Penetration Testing Framework.
torcrawl
Crawl and extract (regular or onion) webpages through TOR network.
tplmap
Automatic Server-Side Template Injection Detection and Exploitation Tool.
typo3scan
Enumerate Typo3 version and extensions.
uncaptcha2
Defeating the latest version of ReCaptcha with 91% accuracy.
uppwn
A script that automates detection of security flaws on websites' file upload systems'.
urldigger
A python tool to extract URL addresses from different HOT sources and/or detect SPAM and malicious code
urlextractor
Information gathering & website reconnaissance.
urx
Extracts URLs from OSINT Archives for Security Insights.
vane
A vulnerability scanner which checks the security of WordPress installations using a black box approach.
vanguard
A comprehensive web penetration testing tool written in Perl thatidentifies vulnerabilities in web applications.
vbscan
A black box vBulletin vulnerability scanner written in perl.
vsvbp
Black box tool for Vulnerability detection in web applications.
vulnerabilities-spider
A tool to scan for web vulnerabilities.
vulnx
Cms and vulnerabilites detector & An intelligent bot auto shell injector.
w13scan
Passive Security Scanner.
wafninja
A tool which contains two functions to attack Web Application Firewalls.
wafp
An easy to use Web Application Finger Printing tool written in ruby using sqlite3 databases for storing the fingerprints
wafpass
Analysing parameters with all payloads' bypass methods, aiming at benchmarking security solutions like WAF.
wascan
Web Application Scanner.
waybackpack
Download the entire Wayback Machine archive for a given URL.
wayparam
Fetch and normalize parameterized URLs from the Wayback CDX API.
wcvs
Web Cache Vulnerability Scanner is a Go-based CLI tool for testing for web cache poisoning.
web-soul
A plugin based scanner for attacking and data mining web sites written in Perl.
webanalyze
Port of Wappalyzer (uncovers technologies used on websites) in go to automate scanning.
webborer
A directory-enumeration tool written in Go.
webhandler
A handler for PHP system functions & also an alternative 'netcat' handler.
webkiller
Tool Information Gathering Write By Python.
webslayer
A tool designed for brute forcing Web Applications.
webtech
Identify technologies used on websites.
webxploiter
An OWASP Top 10 Security scanner.
weirdaal
AWS Attack Library.
whatwaf
Detect and bypass web application firewalls and protection systems.
whichcdn
Tool to detect if a given website is protected by a Content Delivery Network.
witchxtool
A perl script that consists of a port scanner, LFI scanner, MD5 bruteforcer, dork SQL injection scanner, fresh proxy sca
wordpress-exploit-framework
A Ruby framework for developing and using modules which aid in the penetration testing of WordPress powered websites and
wpforce
Wordpress Attack Suite.
wpintel
Chrome extension designed for WordPress Vulnerability Scanning and information gathering.
wpseku
Simple Wordpress Security Scanner.
ws-attacker
A modular framework for web services penetration testing.
wssip
Application for capturing, modifying and sending custom WebSocket data from client to server and vice versa.
wuzz
Interactive cli tool for HTTP inspection.
x8
Hidden parameters discovery suite.
xmlrpc-bruteforcer
An XMLRPC brute forcer targeting Wordpress written in Python 3.
xspear
Powerful XSS Scanning and Parameter analysis tool&gem.
xss-freak
An XSS scanner fully written in Python3 from scratch.
xsscon
Simple XSS Scanner tool.
xsscrapy
XSS spider - 66/66 wavsep XSS detected.
xssless
An automated XSS payload generator written in python.
xsspy
Web Application XSS Scanner.
xsss
A brute force cross site scripting scanner.
xssscan
Command line tool for detection of XSS attacks in URLs. Based on ModSecurity rules from OWASP CRS.
xsssniper
An automatic XSS discovery tool
xssya
A Cross Site Scripting Scanner & Vulnerability Confirmation.
xwaf
Automatic WAF bypass tool.
xxxpwn
A tool Designed for blind optimized XPath 1 injection attacks.
xxxpwn-smart
A fork of xxxpwn adding further optimizations and tweaks.
yaaf
Yet Another Admin Finder.
yasuo
A ruby script that scans for vulnerable & exploitable 3rd-party web applications on a network.
yawast
The YAWAST Antecedent Web Application Security Toolkit.
ycrawler
A web crawler that is useful for grabbing all user supplied input related to a given website and will save the output. I
ysoserial
A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.