Ecosyste.ms: Awesome

An open API service indexing awesome lists of open source software.

Awesome Lists | Featured Topics | Projects

Projects in Awesome Lists tagged with security-scanner

A curated list of projects in awesome lists tagged with security-scanner .

https://github.com/projectdiscovery/nuclei

Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.

attack-surface cve-scanner dast hacktoberfest nuclei-engine security security-scanner subdomain-takeover vulnerability-assessment vulnerability-detection vulnerability-scanner

Last synced: 16 Dec 2024

https://github.com/cisofy/lynis

Lynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentless, and installation optional.

auditing compliance devops devops-tools gdpr hardening hipaa linux pci-dss security-audit security-hardening security-scanner security-tools security-vulnerability shell system-hardening unix vulnerability-assessment vulnerability-detection vulnerability-scanners

Last synced: 16 Dec 2024

https://github.com/CISOfy/Lynis

Lynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentless, and installation optional.

auditing compliance devops devops-tools gdpr hardening hipaa linux pci-dss security-audit security-hardening security-scanner security-tools security-vulnerability shell system-hardening unix vulnerability-assessment vulnerability-detection vulnerability-scanners

Last synced: 17 Nov 2024

https://github.com/CISOfy/lynis

Lynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentless, and installation optional.

auditing compliance devops devops-tools gdpr hardening hipaa linux pci-dss security-audit security-hardening security-scanner security-tools security-vulnerability shell system-hardening unix vulnerability-assessment vulnerability-detection vulnerability-scanners

Last synced: 29 Oct 2024

https://github.com/wpscanteam/wpscan

WPScan WordPress security scanner. Written for security professionals and blog maintainers to test the security of their WordPress websites. Contact us via [email protected]

hacking-tool scan scanner security security-scanner wordpress wpscan wpvulndb

Last synced: 16 Dec 2024

https://github.com/pycqa/bandit

Bandit is a tool designed to find common security issues in Python code.

bandit linter python security security-scanner security-tools static-code-analysis

Last synced: 16 Dec 2024

https://github.com/PyCQA/bandit

Bandit is a tool designed to find common security issues in Python code.

bandit linter python security security-scanner security-tools static-code-analysis

Last synced: 26 Oct 2024

https://github.com/GhostTroops/scan4all

Official repository vuls Scan: 15000+PoCs; 23 kinds of application password crack; 7000+Web fingerprints; 146 protocols and 90000+ rules Port scanning; Fuzz, HW, awesome BugBounty( ͡° ͜ʖ ͡°)...

0day attack auto brute-force bugbounty bugbounty-tools golang hacker hacktools nmap nuclei pentest-tool recon security-scanner security-tools ssh tools vulnerabilities-scan vulnerability-detection vulnerability-scanners

Last synced: 31 Oct 2024

https://github.com/ghosttroops/scan4all

Official repository vuls Scan: 15000+PoCs; 23 kinds of application password crack; 7000+Web fingerprints; 146 protocols and 90000+ rules Port scanning; Fuzz, HW, awesome BugBounty( ͡° ͜ʖ ͡°)...

0day attack auto brute-force bugbounty bugbounty-tools golang hacker hacktools nmap nuclei pentest-tool recon security-scanner security-tools ssh tools vulnerabilities-scan vulnerability-detection vulnerability-scanners

Last synced: 17 Dec 2024

https://github.com/k8gege/ladon

Ladon大型内网渗透扫描器,PowerShell、Cobalt Strike插件、内存加载、无文件扫描。含端口扫描、服务识别、网络资产探测、密码审计、高危漏洞检测、漏洞利用、密码读取以及一键GetShell,支持批量A段/B段/C段以及跨网段扫描,支持URL、主机、域名列表扫描等。网络资产探测32种协议(ICMP\NBT\DNS\MAC\SMB\WMI\SSH\HTTP\HTTPS\Exchange\mssql\FTP\RDP)或方法快速获取目标网络存活主机IP、计算机名、工作组、共享资源、网卡地址、操作系统版本、网站、子域名、中间件、开放服务、路由器、交换机、数据库、打印机等,大量高危漏洞检测模块MS17010、Zimbra、Exchange

brute-force exp exploit getshell hack hacking ipscanner ladon netscan password pentest poc portscan scanner security security-scanner security-tools tools

Last synced: 20 Dec 2024

https://github.com/k8gege/Ladon

Ladon大型内网渗透工具,可PowerShell模块化、可CS插件化、可内存加载,无文件扫描。含端口扫描、服务识别、网络资产探测、密码审计、高危漏洞检测、漏洞利用、密码读取以及一键GetShell,支持批量A段/B段/C段以及跨网段扫描,支持URL、主机、域名列表扫描等。Ladon 12.2内置262个功能,网络资产探测模块32个通过多种协议(ICMP\NBT\DNS\MAC\SMB\WMI\SSH\HTTP\HTTPS\Exchange\mssql\FTP\RDP)以及方法快速获取目标网络存活主机IP、计算机名、工作组、共享资源、网卡地址、操作系统版本、网站、子域名、中间件、开放服务、路由器、交换机、数据库、打印机等信息,高危漏洞检测16个含MS17010、Zimbra、Exchange

brute-force exp exploit getshell hack hacking ipscanner ladon netscan password pentest poc portscan scanner security security-scanner security-tools tools

Last synced: 11 Nov 2024

https://github.com/microsoft/applicationinspector

A source code analyzer built for surfacing features of interest and other characteristics to answer the question 'What's in the code?' quickly using static analysis with a json based rules engine. Ideal for scanning components before use or detecting feature level changes.

application-inspector detection security-scanner security-tools software-characterization static-analysis

Last synced: 17 Dec 2024

https://github.com/microsoft/ApplicationInspector

A source code analyzer built for surfacing features of interest and other characteristics to answer the question 'What's in the code?' quickly using static analysis with a json based rules engine. Ideal for scanning components before use or detecting feature level changes.

application-inspector detection security-scanner security-tools software-characterization static-analysis

Last synced: 29 Oct 2024

https://github.com/FeeiCN/Cobra

Source Code Security Audit (源代码安全审计)

cobra code-audit security-audit security-scanner security-tools sourcecode-analysis

Last synced: 01 Nov 2024

https://github.com/feeicn/cobra

Source Code Security Audit (源代码安全审计)

cobra code-audit security-audit security-scanner security-tools sourcecode-analysis

Last synced: 25 Sep 2024

https://github.com/zegl/kube-score

Kubernetes object analysis with recommendations for improved reliability and security. kube-score actively prevents downtime and bugs in your Kubernetes YAML and Charts. Static code analysis for Kubernetes.

analysis automation charts ci go hacktoberfest helm k8s kube-score kubernetes kubernetes-manifests kubernetes-monitoring linter security security-scanner static-code-analysis static-code-analyzer

Last synced: 17 Dec 2024

https://github.com/ajinabraham/nodejsscan

nodejsscan is a static security code scanner for Node.js applications.

code-analysis code-review devsecops javascript lint node node-security nodejs nodejsscan sast security security-scanner static-analysis

Last synced: 19 Dec 2024

https://ajinabraham.github.io/NodeJsScan

nodejsscan is a static security code scanner for Node.js applications.

code-analysis code-review devsecops javascript lint node node-security nodejs nodejsscan sast security security-scanner static-analysis

Last synced: 13 Oct 2024

https://github.com/codingo/reconnoitre

A security tool for multithreaded information gathering and service enumeration whilst building directory structures to store results, along with writing out recommendations for further testing.

discover-services enumeration hacking hacking-tool kali-linux nmap offensive-security oscp penetration-testing range scanner scanning security security-audit security-scanner security-tools service-enumeration services-discovered snmp virtual-hosts

Last synced: 21 Dec 2024

https://github.com/FeeiCN/GSIL

GitHub Sensitive Information Leakage(GitHub敏感信息泄露监控)

security-scanner security-tools sensitive-data sensitive-data-security

Last synced: 08 Nov 2024

https://github.com/feeicn/gsil

GitHub Sensitive Information Leakage(GitHub敏感信息泄露监控)

security-scanner security-tools sensitive-data sensitive-data-security

Last synced: 25 Sep 2024

https://github.com/codingo/Reconnoitre

A security tool for multithreaded information gathering and service enumeration whilst building directory structures to store results, along with writing out recommendations for further testing.

discover-services enumeration hacking hacking-tool kali-linux nmap offensive-security oscp penetration-testing range scanner scanning security security-audit security-scanner security-tools service-enumeration services-discovered snmp virtual-hosts

Last synced: 01 Nov 2024

https://github.com/adminisme/serverscan

ServerScan一款使用Golang开发的高并发网络扫描、服务探测工具。

cobalt-strike golang linux macos nmap pentest-tool port-scanner-in-go security-scanner serverscan service-discovery win

Last synced: 19 Dec 2024

https://github.com/Adminisme/ServerScan

ServerScan一款使用Golang开发的高并发网络扫描、服务探测工具。

cobalt-strike golang linux macos nmap pentest-tool port-scanner-in-go security-scanner serverscan service-discovery win

Last synced: 19 Nov 2024

https://github.com/doyensec/inql

InQL is a robust, open-source Burp Suite extension for advanced GraphQL testing, offering intuitive vulnerability detection, customizable scans, and seamless Burp integration.

api-documentation-tool bugbounty bugbounty-tool burp-extensions burpsuite graphql graphql-security penetration-testing security-audit security-scanner security-tools

Last synced: 18 Dec 2024

https://github.com/shekyan/slowhttptest

Application Layer DoS attack simulator

performance-metrics security-scanner slowhttptest

Last synced: 18 Dec 2024

https://github.com/bishopfox/gitgot

Semi-automated, feedback-driven tool to rapidly search through troves of public data on GitHub for sensitive secrets.

fuzzy-matching gist-search gists github-api osint python recon reconnaissance security security-scanner security-tools sensitive-data-exposure

Last synced: 21 Dec 2024

https://github.com/BishopFox/GitGot

Semi-automated, feedback-driven tool to rapidly search through troves of public data on GitHub for sensitive secrets.

fuzzy-matching gist-search gists github-api osint python recon reconnaissance security security-scanner security-tools sensitive-data-exposure

Last synced: 03 Nov 2024

https://github.com/FeeiCN/ESD

Enumeration sub domains(枚举子域名)

brute-force security-scanner security-tools subdomain-brute subdomain-scanner

Last synced: 19 Nov 2024

https://github.com/feeicn/esd

Enumeration sub domains(枚举子域名)

brute-force security-scanner security-tools subdomain-brute subdomain-scanner

Last synced: 03 Nov 2024

https://github.com/protofire/solhint

Solhint is an open-source project to provide a linting utility for Solidity code.

ast code-quality dapp developer-tools ethereum linter security-scanner smart-contracts solhint solidity

Last synced: 17 Dec 2024

https://protofire.github.io/solhint/

Solhint is an open-source project to provide a linting utility for Solidity code.

ast code-quality dapp developer-tools ethereum linter security-scanner smart-contracts solhint solidity

Last synced: 16 Nov 2024

https://github.com/WithSecureLabs/doublepulsar-detection-script

A python2 script for sweeping a network to find windows systems compromised with the DOUBLEPULSAR implant.

countercept doublepulsar script security-scanner security-tools

Last synced: 19 Nov 2024

https://github.com/withsecurelabs/doublepulsar-detection-script

A python2 script for sweeping a network to find windows systems compromised with the DOUBLEPULSAR implant.

countercept doublepulsar script security-scanner security-tools

Last synced: 16 Dec 2024

https://github.com/Hackmanit/Web-Cache-Vulnerability-Scanner

Web Cache Vulnerability Scanner is a Go-based CLI tool for testing for web cache poisoning. It is developed by Hackmanit GmbH (http://hackmanit.de/).

bugbounty hacking hacking-tool penetration-testing penetration-testing-tools pentesting scanner security security-audit security-scanner security-tools vulnerability-scanners web-cache

Last synced: 05 Nov 2024

https://github.com/adysec/nuclei_poc

Nuclei POC,每日更新 | 自动整合全网Nuclei的漏洞POC,实时同步更新最新POC,保存已被删除的POC。通过批量克隆Github项目,获取Nuclei POC,并将POC按类别分类存放,使用Github Action实现(已有14wPOC,已校验有效性并去重)

daily exploit exploits fingerprint hack-tools hacker hacking nuclei nuclei-templates poc scanner security security-scanner vulnerability-detection

Last synced: 20 Dec 2024

https://github.com/legit-labs/legitify

Detect and remediate misconfigurations and security risks across all your GitHub and GitLab assets

ci devops devsecops github gitlab golang sdlc-security security security-scanner supply-chain-security

Last synced: 20 Dec 2024

https://github.com/Legit-Labs/legitify

Detect and remediate misconfigurations and security risks across all your GitHub and GitLab assets

ci devops devsecops github gitlab golang sdlc-security security security-scanner supply-chain-security

Last synced: 02 Nov 2024

https://github.com/CaringCaribou/caringcaribou

A friendly car security exploration tool for the CAN bus

can-bus ecu fuzzing python security-scanner security-testing xcp

Last synced: 15 Nov 2024

https://github.com/caringcaribou/caringcaribou

A friendly car security exploration tool for the CAN bus

can-bus ecu fuzzing python security-scanner security-testing xcp

Last synced: 03 Nov 2024

https://github.com/dpnishant/jsprime

a javascript static security analysis tool

javascript security-scanner security-tools static-analysis

Last synced: 15 Dec 2024

https://github.com/0xsauby/yasuo

A ruby script that scans for vulnerable & exploitable 3rd-party web applications on a network

hacking-tool network-security pentest-scripts pentest-tool pentesting pentesting-networks ruby security-automation security-scanner security-tools

Last synced: 31 Oct 2024

https://github.com/eviltik/evilscan

NodeJS Simple Network Scanner

port-scanner scanner security-scanner security-tools

Last synced: 15 Dec 2024

https://github.com/Semper-Viventem/MetaRadar

The app for BLE ether monitoring tracks your environment, finds some devices, makes relations between devices around you, and tracks devices' movements.

android android-ble ble bluetooth radar scanner security-scanner security-tools

Last synced: 31 Oct 2024

https://github.com/insidersec/insider

Static Application Security Testing (SAST) engine focused on covering the OWASP Top 10, to make source code analysis to find vulnerabilities right in the source code, focused on a agile and easy to implement software inside your DevOps pipeline. Support the following technologies: Java (Maven and Android), Kotlin (Android), Swift (iOS), .NET Full Framework, C#, and Javascript (Node.js).

android android-security cli csharp dotnet insider ios ios-security javascript kotlin maven nodejs owasp sast security-automation security-scanner security-tools static-analysis static-analyzer swift

Last synced: 21 Dec 2024

https://github.com/0x4D31/burpa

Burp-Automator: A Burp Suite Automation Tool with Slack Integration. It can be used with Jenkins and Selenium to automate Dynamic Application Security Testing (DAST).

automation burp burpsuite devops python security security-automation security-scanner security-tools web-security

Last synced: 07 Nov 2024

https://github.com/swisskyrepo/vulny-code-static-analysis

Python script to detect vulnerabilities inside PHP source code using static analysis, based on regex

audit detect-vulnerabilities hacktoberfest php php-source security-scanner security-tools static-analysis statical-analysis vulnerabilities

Last synced: 15 Dec 2024

https://github.com/hahwul/authz0

🔑 Authz0 is an automated authorization test tool. Unauthorized access can be identified based on URLs and Roles & Credentials.

auth authorization authz bugbounty golang golang-application security security-scanner security-tools

Last synced: 22 Dec 2024

https://github.com/Ostorlab/oxo

OXO is a security scanning orchestrator for the modern age.

scanner security security-scanner security-tools

Last synced: 04 Nov 2024

https://github.com/swisskyrepo/Vulny-Code-Static-Analysis

Python script to detect vulnerabilities inside PHP source code using static analysis, based on regex

audit detect-vulnerabilities hacktoberfest php php-source security-scanner security-tools static-analysis statical-analysis vulnerabilities

Last synced: 27 Oct 2024

https://github.com/charlie-belmer/nosqli

NoSql Injection CLI tool, for finding vulnerable websites using MongoDB.

mongodb nosql nosql-injection security security-automation security-scanner security-tools sqlinjection

Last synced: 17 Dec 2024

https://github.com/aaronjwood/PortAuthority

A handy systems and security-focused tool, Port Authority is a very fast Android port scanner. Port Authority also allows you to quickly discover hosts on your network and will display useful network information about your device and other hosts.

android dns-lookup java network-discovery port-scanner security-scanner tcp wake-on-lan

Last synced: 03 Nov 2024

https://github.com/Charlie-belmer/nosqli

NoSql Injection CLI tool, for finding vulnerable websites using MongoDB.

mongodb nosql nosql-injection security security-automation security-scanner security-tools sqlinjection

Last synced: 03 Nov 2024

https://github.com/palkeo/pakala

Offensive vulnerability scanner for ethereum, and symbolic execution tool for the Ethereum Virtual Machine

ethereum ethereum-virtual-machine security security-scanner symbolic-execution

Last synced: 15 Nov 2024

https://github.com/sdnewhop/grinder

:mag_right: Python framework to automatically discover and enumerate hosts from different back-end systems (Shodan, Censys)

censys censys-api database-scanner grabber masscan nmap python python-framework security-scanner shodan shodan-api vulnerability-scanners vulners

Last synced: 21 Nov 2024

https://github.com/0x4d31/salt-scanner

Linux vulnerability scanner based on Salt Open and Vulners audit API, with Slack notifications and JIRA integration

devops devops-tools python salt saltstack security security-audit security-scanner security-tools vulnerability-scanners vulnerability-scanning

Last synced: 27 Sep 2024

https://github.com/petermosmans/security-scripts

A collection of security related Python and Bash shell scripts. Analyze hosts on generic security vulnerabilities. Wrapper around popular tools like nmap (portscanner), nikto (webscanner) and testssl.sh (SSL/TLS scanner)

nikto nmap python security security-scanner security-tools ssl testssl

Last synced: 17 Dec 2024

https://github.com/0x4D31/salt-scanner

Linux vulnerability scanner based on Salt Open and Vulners audit API, with Slack notifications and JIRA integration

devops devops-tools python salt saltstack security security-audit security-scanner security-tools vulnerability-scanners vulnerability-scanning

Last synced: 28 Oct 2024

https://github.com/PeterMosmans/security-scripts

A collection of security related Python and Bash shell scripts. Analyze hosts on generic security vulnerabilities. Wrapper around popular tools like nmap (portscanner), nikto (webscanner) and testssl.sh (SSL/TLS scanner)

nikto nmap python security security-scanner security-tools ssl testssl

Last synced: 06 Nov 2024

https://github.com/rfc-st/humble

A humble, and 𝗳𝗮𝘀𝘁, security-oriented HTTP headers analyzer.

analysis checklist cybersecurity header-parser headers http infosec kali-linux owasp python3 security security-audit security-scanner security-tools

Last synced: 21 Nov 2024

https://github.com/geeksonsecurity/vuln-web-apps

A curated list of vulnerable web applications.

security security-scanner vulnerabilities vulnerability-scanners

Last synced: 18 Nov 2024