


Discover the cybersecurity tools used by penetration testers, bug bounty hunters, SOC analysts, digital forensics experts, malware researchers, cloud security engineers and ethical hackers. 302 curated tools - every link goes to the official source.
302 tools
The de-facto network scanner for host discovery, port scanning and service/OS fingerprinting.
Internet-scale TCP port scanner that can sweep huge ranges extremely fast.
OWASP in-depth attack-surface mapping and subdomain enumeration.
Fast passive subdomain discovery using many public sources.
Fast, multi-purpose HTTP toolkit for probing live web servers.
Fast SYN/CONNECT port scanner focused on reliability and simplicity.
Query domain, IP and registrar registration records for recon.
Gather emails, subdomains, hosts and names from public sources.
Automated OSINT engine that correlates data across 200+ modules.
Link-analysis and OSINT graphing for people, infrastructure and orgs.
Modular web reconnaissance framework with a Metasploit-like workflow.
Investigate Google accounts from an email or other identifiers.
Template-based vulnerability scanner with a huge community rule set.
Full-featured open-source vulnerability management and scanning.
Industry-standard vulnerability scanner (free Essentials tier).
Classic web server scanner for dangerous files, misconfigs and versions.
Scan containers, filesystems and IaC for CVEs and misconfigurations.
The leading web app testing proxy - intercept, fuzz and exploit.
Free web app scanner and intercepting proxy from OWASP.
Automated SQL injection detection and database takeover.
Fast web fuzzer for content discovery, params and virtual hosts.
Brute-force URIs, DNS subdomains and vhosts.
Official sources only.Every link goes straight to the vendor's official website, documentation or GitHub releases. We never mirror or host binaries. Use these tools only on systems you own or are authorized to test.