• Categories
  • Tools

    Below is a catalogue of different security tools, products, and services that I use in my work and personal life. These tools are being referenced as a convenience for informational purposes only and do not necessarily constitute an endorsement.

    Acunetix

    Acunetix is a dynamic web vulnerability scanner that automates web application security testing. The tool has an...

    Arachni

    Arachni is a high performance web application security scanner built on the Ruby framework, aimed towards helping...

    Burp Suite

    Burp Suite is an intercepting proxy server for security testing of web applications. It operates as a man-in-the-middle...

    CRXcavator

    CRXcavator automatically scans the entire Chrome Web Store every 3 hours and produces a quantified risk score for...

    GoLismero

    GoLismero is an open source framework for security testing. It's currently geared towards web security, but...

    MobSF

    Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing,...

    PingCastle

    PingCastle is a free, Windows-based utility to audit the risk level of your AD infrastructure and check for vulnerable...

    Sn1per

    Sn1per works by automating a bunch of processes that collect basic recon on a target domain, (for example executing...

    sqlmap

    sqlmap is an open source penetration testing tool that automates the process of detecting and exploiting SQL injection...

    WPScan

    WPScan is an open source WordPress security scanner. You can use it to scan your WordPress website for known vulnerabilities...