Top #vulnerability Tools & Software

Explore 16 hand-picked tools and software tagged with vulnerability — ranked by popularity and community signals.

sqlmap

github

Automatic SQL injection and database takeover tool

Database Python
★ 37,075

nuclei

github

Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.

Security Go
★ 27,961

nuclei-templates

github

Community curated list of templates for the nuclei engine to find security vulnerabilities.

Security JavaScript
★ 12,297

xray

github

一款长亭自研的完善的安全评估工具,支持常见 web 安全问题扫描和自定义 poc | 使用之前务必先阅读文档

Security
★ 11,532

kubescape

github

Kubescape is an open-source Kubernetes security platform for your IDE, CI/CD pipelines, and clusters. It includes risk analysis, security, compliance, and misconfiguration scanning, saving Kubernetes users and administrators precious time, effort, and resources.

DevOps Go
★ 11,313

PoC-in-GitHub

github

📡 PoC auto collect from GitHub. ⚠️ Be careful Malware.

Security
★ 7,697

DependencyCheck

github

OWASP dependency-check is a software composition analysis utility that detects publicly disclosed vulnerabilities in application dependencies.

Security Java
★ 7,530

brakeman

github

A static analysis security vulnerability scanner for Ruby on Rails applications

Security Ruby
★ 7,230

syzkaller

github

syzkaller is an unsupervised coverage-guided kernel fuzzer

Security Go
★ 6,149

dalfox

github

🌙🦊 Dalfox is a powerful open-source XSS scanner and utility focused on automation.

Security Go
★ 4,961

xunfeng

github

巡风是一款适用于企业内网的漏洞快速应急,巡航扫描系统。

Security Python
★ 3,596

vulnerability-Checklist

github

This repository contain a lot of web and api vulnerability checklist , a lot of vulnerability ideas and tips from twitter

Security
★ 3,469

dockle

github

Container Image Linter for Security, Helping build the Best-Practice Docker Image, Easy to start

Security Go
★ 3,250

GScan

github

本程序旨在为安全应急响应人员对Linux主机排查时提供便利,实现主机侧Checklist的自动全面化检测,根据检测结果自动数据聚合,进行黑客攻击路径溯源。

Security Python
★ 2,818

osv.dev

github

Open source vulnerability DB and triage service.

Security Go
★ 2,650

vulnhuntr

github

Zero shot vulnerability discovery using LLMs

AI Tools Python
★ 2,645