All Projects → andresriancho → W3af

andresriancho / W3af

w3af: web application attack and audit framework, the open source web vulnerability scanner.

Programming Languages

python
139335 projects - #7 most used programming language
HTML
75241 projects
Roff
2310 projects
javascript
184084 projects - #8 most used programming language
shell
77523 projects
c
50402 projects - #5 most used programming language

Projects that are alternatives of or similar to W3af

Blazy
Blazy is a modern login bruteforcer which also tests for CSRF, Clickjacking, Cloudflare and WAF .
Stars: ✭ 637 (-83.25%)
Mutual labels:  scanner, sql-injection
Nosqlmap
Automated NoSQL database enumeration and web application exploitation tool.
Stars: ✭ 1,928 (-49.32%)
Mutual labels:  scanner, sql-injection
Dirsearch
Web path scanner
Stars: ✭ 7,246 (+90.48%)
Mutual labels:  scanner, appsec
Blisqy
Version 0.2 - Exploit Time-based blind-SQL injection in HTTP-Headers (MySQL/MariaDB).
Stars: ✭ 179 (-95.29%)
Mutual labels:  appsec, sql-injection
sqlinjection-training-app
A simple PHP application to learn SQL Injection detection and exploitation techniques.
Stars: ✭ 56 (-98.53%)
Mutual labels:  sql-injection, appsec
Sqliv
massive SQL injection vulnerability scanner
Stars: ✭ 840 (-77.92%)
Mutual labels:  scanner, sql-injection
Pidrila
Python Interactive Deepweb-oriented Rapid Intelligent Link Analyzer
Stars: ✭ 125 (-96.71%)
Mutual labels:  scanner, appsec
solutions-bwapp
In progress rough solutions to bWAPP / bee-box
Stars: ✭ 158 (-95.85%)
Mutual labels:  sql-injection, appsec
aws-waf
Deep Security's APIs make it simple to integration with a variety of AWS Services
Stars: ✭ 42 (-98.9%)
Mutual labels:  sql-injection, cross-site-scripting
magicRecon
MagicRecon is a powerful shell script to maximize the recon and data collection process of an objective and finding common vulnerabilities, all this saving the results obtained in an organized way in directories and with various formats.
Stars: ✭ 478 (-87.43%)
Mutual labels:  scanner, sql-injection
Arachni
Web Application Security Scanner Framework
Stars: ✭ 2,942 (-22.66%)
Mutual labels:  scanner, sql-injection
Resources
No description or website provided.
Stars: ✭ 38 (-99%)
Mutual labels:  scanner, sql-injection
Whatweb
Next generation web scanner
Stars: ✭ 3,503 (-7.91%)
Mutual labels:  scanner, appsec
Netcat
💻 Netcat client and server modules written in pure Javascript for Node.js.
Stars: ✭ 315 (-91.72%)
Mutual labels:  scanner
Dependency Check Sonar Plugin
Integrates Dependency-Check reports into SonarQube
Stars: ✭ 332 (-91.27%)
Mutual labels:  appsec
Mod0burpuploadscanner
HTTP file upload scanner for Burp Proxy
Stars: ✭ 315 (-91.72%)
Mutual labels:  scanner
Raptor
Web-based Source Code Vulnerability Scanner
Stars: ✭ 314 (-91.75%)
Mutual labels:  scanner
Docker Onion Nmap
Scan .onion hidden services with nmap using Tor, proxychains and dnsmasq in a minimal alpine Docker container.
Stars: ✭ 345 (-90.93%)
Mutual labels:  scanner
Awesome Web Hacking
A list of web application security
Stars: ✭ 3,760 (-1.16%)
Mutual labels:  scanner
Api
Vulners Python API wrapper
Stars: ✭ 313 (-91.77%)
Mutual labels:  scanner

w3af - Web Application Attack and Audit Framework

w3af is an open source web application security scanner which helps developers and penetration testers identify and exploit vulnerabilities in their web applications.

The scanner is able to identify 200+ vulnerabilities, including Cross-Site Scripting, SQL injection and OS commanding.

Contributing

Pull requests are always welcome! If you're not sure where to start, please take a look at the First steps as a contributor document in our wiki. All contributions, no matter how small, are welcome.

Links and documentation

Sponsors

Holm Security sponsors the project and uses w3af as part of their amazing automated and continuous vulnerability assessment platform.

Found this project useful? Donations are accepted via ethereum at 0xb1B56F04E6cc5F4ACcB19678959800824DA8DE82

Note that the project description data, including the texts, logos, images, and/or trademarks, for each open source project belongs to its rightful owner. If you wish to add or remove any projects, please contact us at [email protected].