Scanning & Enumeration Tools

281 tools
onedrive_user_enum
onedrive_user_enum
Open Source Reconnaissance Scanning & Enumeration

onedrive user enumeration - pentest tool to enumerate valid o365 users

OneLinerBounty
OneLinerBounty
Open Source Reconnaissance Scanning & Enumeration

OneLinerBounty is a collection of quick, actionable bug bounty tips in one-liner format. Perfect for bug hunters looking to boost their skil…

OneListForAll
OneListForAll
Free Password Attacks Scanning & Enumeration

Wordlists for web fuzzing: curated micro, categorized short/long, and combined final lists.

OpenVAS / Greenbone
OpenVAS / Greenbone
Open Source Kali Scanning & Enumeration

Open-source vulnerability assessment framework. Full-featured scanner with a web interface, regularly updated Network Vulnerability Tests (N…

optik
optik
Free Scanning & Enumeration

Optik is a set of symbolic execution tools that assist smart-contract fuzzers

Osmedeus
Osmedeus
Open Source Reconnaissance Scanning & Enumeration

Workflow engine for offensive security reconnaissance. Orchestrates multiple tools (amass, subfinder, nuclei, etc.) in automated pipelines f…

osv-scanner
osv-scanner
Open Source Scanning & Enumeration

Vulnerability scanner written in Go which uses the data provided by https://osv.dev

OWASP ZAP
OWASP ZAP
Open Source Kali Scanning & Enumeration Web Application

OWASP's Zed Attack Proxy — one of the world's most popular free web application security scanners. Features active/passive scanning, spideri…

packemon
packemon
Open Source Forensics Scanning & Enumeration

Packet monster (っ‘-’)╮=͟͟͞͞◒ ヽ( '-'ヽ) TUI tool for sending packets of arbitrary input and monitoring packets on any network interfaces (de…

paper_collection
paper_collection
Free Exploitation Scanning & Enumeration

Academic papers related to fuzzing, binary analysis, and exploit dev, which I want to read or have already read

ParamSpider
ParamSpider
Open Source Reconnaissance Scanning & Enumeration

Mining URLs from dark corners of Web Archives for bug hunting/fuzzing/further probing

PayloadsAllTheThings
PayloadsAllTheThings
Open Source Exploitation Post-Exploitation

A list of useful payloads and bypass for Web Application Security and Pentest/CTF

pbtk
pbtk
Open Source Reverse Engineering Scanning & Enumeration

A toolset for reverse engineering and fuzzing Protobuf-based apps

penetration-testing-cheat-sheet
penetration-testing-cheat-sheet
Open Source Exploitation Reconnaissance

This is more of a checklist for myself. May contain useful tips and tricks.

Penetration-Testing-Cheat-Sheet
Penetration-Testing-Cheat-Sheet
Open Source Password Attacks Post-Exploitation

An in-depth guide to help people who are new to penetration testing or red teaming and are looking to gain an overview of the penetration te…

pentest-ai
pentest-ai
Open Source Exploitation Reconnaissance

The most autonomous pentesting AI on the market. MCP server + Python agents with 150+ security tools, exploit chaining, and PoC validation.

pentest-mcp
pentest-mcp
Open Source Exploitation Password Attacks

NOT for educational purposes: An MCP server for professional penetration testers including STDIO/HTTP/SSE support, nmap, go/dirbuster, nikto…

pentesting-framework
pentesting-framework
Open Source Password Attacks Scanning & Enumeration

Pentesting Framework is a bundle of penetration testing tools, Includes - security, pentesting, hacking and many more.

pentmenu
pentmenu
Open Source Exploitation Reconnaissance

A bash script for recon and DOS attacks

perseus
perseus
Open Source Reverse Engineering Scanning & Enumeration

AI-powered security assessment SKILLS for your codebase. Multi-language (JS, Go, Python, Rust, Java, PHP, Ruby, C#). Works with Claude Code,…

PhishingSecLists
PhishingSecLists
Free Password Attacks Scanning & Enumeration

To be used with tools like GoBuster & DirBuster but these lists are specifically tailored and designed for scanning phishing < landing pages…

PHP-Antimalware-Scanner
PHP-Antimalware-Scanner
Open Source Exploitation Scanning & Enumeration

AMWScan (PHP Antimalware Scanner) is a free tool to scan php files and analyze your project to find any malicious code inside it.

phuzz
phuzz
Free Scanning & Enumeration

Modular & Open-Source Coverage-Guided Web Application Fuzzer for PHP

Project-Deep-Focus
Project-Deep-Focus
Open Source Exploitation Reconnaissance

Your personal 'Mini Shodan'. A high-performance network reconnaissance engine designed for massive scale asset discovery. Specializes in ide…