Web Scanner - Exploitation - Information Gathering

Photon is a incredibly fast crawler designed for automating OSINT(Open Source Intelligence). This tool designed with the simple...
A complete versatile framework to cover up everything from Reconnaissance...
The OSINT project, the main idea of which is to collect all the possible Google dorks search combinations and to find the information about the specific web-site:
Infosploit is an Information Gathering Tool that can be used during a penetration test, OSINT to enumerate Information about...
Shcheck detects which security headers are enabled on certain websites. It just check headers and print a report about which are enabled and which not.
Filebuster is a HTTP fuzzer / content discovery script with loads of features and built to be easy to use and fast! It uses one of the fastest HTTP classes in the world...
SecretFinder is a python script to discover sensitive data like api keys, access token, authorizations, jwt,..etc in JavaScript(JS) files. It verifies the files with large regular expression.
Pompem is an open source tool, designed to automate the search for Exploits and Vulnerability in the most important databases.
Complete Automated pentest framework for Servers, Application Layer to Web Security. Tishna is Web Server Security Penetration
A plugin-based scanner that aids security researchers in identifying issues with several CMS.
Wfuzz is a command line tool written in python. It is used to discover common vulnerabilities in web applications through the method of fuzzing.
Spaghetti is an Open Source web application scanner, it is designed to find various default and insecure files...
--xss : Scan Site if vulnerable [Xss] url must be between double citation --sql : Scan Site if vulnerable [Sql] url must be between double citation