
Faraday introduces a new concept (IPE) Integrated Penetration-Test Environment a multiuser Penetration test IDE . Designed for distrib...
Faraday introduces a new concept (IPE) Integrated Penetration-Test Environment a multiuser Penetration test IDE . Designed for distrib...
Cloud Cracker is an online password cracking service for penetration testers and network auditors who need to check the secu...
SVMAP is a part of a suite of tools called SIPVicious and it’s my favorite scanner of choice It can be used to scan identify and fingerp...
VoIPong is a utility which detects all Voice Over IP calls on a pipeline , and for those which are G711 encoded, dumps actual conversati...
SNMPCheck allows you to enumerate the SNMP devices and places the output in a very human readable friendly format. It could be useful ...
nbtscan is a command-line tool that scans for open NETBIOS nameservers on a local or remote TCP/IP network , and this is a first step ...
Maligno is an open source penetration testing tool written in python, that serves Metasploit payloads. It generates shellcode with ms...
URLCrazy checks for mistyped domain names of websites. It can detect typo domain squatters and help protect your domain security by ...
The free community Vyatta Core software(VC) is an award-winning open source network operating system providing...
Nagios XI is a system and network monitoring application. It watches hosts and services that you specify, alerting you when things go bad ...
Nipper (short for Network Infrastructure Parser, previously known as CiscoParse) audits the security of network devices such as switche...
Argus is a fixed-model Real Time Flow Monitor designed to track and report on the status and performance of all network transactions s...
Fiddler is a Web Debugging Proxy which logs all HTTP(S) traffic between your computer and the Internet. Fiddler allows you to inspect...
Foremost is a console program to recover files based on their headers, footers, and internal data structures. This process is common...
Immunity Canvas is a commercial vulnerability exploitation tool from Dave Aitel's ImmunitySec. It includes more than 370 exploits an...
QualysGuard is a popular SaaS (software as a service) vulnerability management offering. It's web-based UI offers network discov...
Skipfish is an active web application security reconnaissance tool . It prepares an interactive sitemap for the targeted site by carryi...
GoLismero is an open source framework for security testing . It's currently geared towards web security, but it can easily be expa...
Cisco Torch is a mass scanning, fingerprinting, and exploitation tool was written while working on the next edition of the "Hac...
Nmap ("Network Mapper") is a free and open source (license) utility for network discovery and security auditing. Many syste...
SAINT 8 is a fully-integrated security tool suite that combines vulnerability scanning , with penetration testing , social engineering ...
The Firewall Tester (FTester) is a tool designed for testing firewall filtering policies and Intrusion Detection System (ID...
Web Application Firewalls (WAFs) can be detected through stimulus/response testing scenarios. Here is a short listing of possible detec...
Fragroute intercepts, modifies, and rewrites egress traffic destined for a specified host, implementing most of the attacks described in...
The BlindElephant is a Web Application Fingerprinter attempts to discover the version of a (known) web application by comparing sta...
The Security Auditor's Research Assistant (SARA) is a third generation network security analysis tool that that has been available ...
IronWASP (Iron Web application Advanced Security testing Platform) is an open source system for web application vulnerability testin...