awesome-repositories.com
المدونة
MCP
awesome-repositories.com

اكتشف أفضل مستودعات المصادر المفتوحة باستخدام بحث مدعوم بالذكاء الاصطناعي.

استكشفعمليات بحث منسقةبدائل مفتوحة المصدربرمجيات ذاتية الاستضافةالمدونةخريطة الموقع
المشروعخادم MCPحولكيفية ترتيب النتائجالصحافة
قانونيالخصوصيةالشروط
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Back to jtpereyda/boofuzz

Open-source alternatives to Boofuzz

30 open-source projects similar to jtpereyda/boofuzz, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best Boofuzz alternative.

  • rapid7/metasploit-frameworkالصورة الرمزية لـ rapid7

    rapid7/metasploit-framework

    38,415عرض على GitHub↗

    The framework is a comprehensive penetration testing platform designed for the development, testing, and execution of security exploits. It serves as a research toolkit and automated assessment environment, enabling security professionals to identify and validate vulnerabilities within networked systems and infrastructure through repeatable, standardized procedures. The platform distinguishes itself through a modular architecture that supports reflective payload injection, allowing for the execution of code directly in memory without writing to disk. It utilizes an asynchronous event loop to

    Rubyhacktoberfest
    عرض على GitHub↗38,415
  • zan8in/afrogالصورة الرمزية لـ zan8in

    zan8in/afrog

    4,182عرض على GitHub↗

    afrog is an HTTP vulnerability scanner and web vulnerability management system that identifies security flaws and known CVEs using a YAML-based rule engine. It functions as a payload generator and scanner, comparing server responses against detection rules to find unauthorized access points. The project provides a framework for out-of-band security testing, detecting blind vulnerabilities by triggering and verifying external DNS or HTTP callbacks. Beyond web traffic, it includes a protocol fuzzer capable of executing multi-step read and write sequences over raw TCP and SSL sockets to identify

    Goafrogbug-bountypenetration-testing
    عرض على GitHub↗4,182
  • google/tsunami-security-scannerالصورة الرمزية لـ google

    google/tsunami-security-scanner

    8,584عرض على GitHub↗

    Tsunami Security Scanner is a network vulnerability scanner and security auditor designed to identify high-severity flaws across network assets. It functions as an asynchronous security probe engine that utilizes automated probes and specialized detection logic to find critical weaknesses and prioritize remediation efforts. The project is distinguished by a plugin-based scanning engine, which uses a modular architecture of interchangeable detection plugins to identify vulnerabilities. This extensibility allows for the development and integration of custom security plugins to expand the variet

    Java
    عرض على GitHub↗8,584

بحث بالذكاء الاصطناعي

استكشف المزيد من المستودعات الرائعة

صف ما تحتاجه بلغة بسيطة — وسيقوم الذكاء الاصطناعي بترتيب آلاف المشاريع مفتوحة المصدر المنسقة حسب الصلة.

Find more with AI search
  • lanjelot/patatorالصورة الرمزية لـ lanjelot

    lanjelot/patator

    3,893عرض على GitHub↗

    Patator is a multi-purpose brute force tool and modular security framework used for testing credentials, discovering network services, and fuzzing network protocols through automated payload delivery. It functions as a credential exhaustion framework and a network protocol fuzzer. The project provides specific utilities for recovering passwords from encrypted ZIP archives, enumerating DNS zones via forward and reverse queries, and identifying valid usernames and passwords across common network protocols. Its broader capabilities include web endpoint fuzzing, network service probing, and user

    Python
    عرض على GitHub↗3,893
  • reverse-shell/routersploitالصورة الرمزية لـ reverse-shell

    reverse-shell/routersploit

    13,151عرض على GitHub↗

    RouterSploit is an embedded device exploitation framework and vulnerability scanner designed to identify and exploit security flaws in networked embedded hardware and firmware. It provides a centralized toolkit for scanning for known weaknesses and common misconfigurations to gain unauthorized system access. The framework includes an architecture-specific payload generator to create custom binary payloads tailored to the target hardware. It also features an automated brute force tool that uses dictionary-based credential guessing to bypass authentication on hardware devices. The tool covers

    Python
    عرض على GitHub↗13,151
  • aflnet/aflnetالصورة الرمزية لـ aflnet

    aflnet/aflnet

    1,006عرض على GitHub↗

    AFLNet: A Greybox Fuzzer for Network Protocols (https://thuanpv.github.io/publications/AFLNet_ICST20.pdf)

    C
    عرض على GitHub↗1,006
  • accurics/terrascanالصورة الرمزية لـ accurics

    accurics/terrascan

    5,210عرض على GitHub↗

    Terrascan is an infrastructure as code security scanner and cloud configuration auditor designed to detect security violations and compliance risks in cloud templates and Dockerfiles before provisioning. It utilizes the Open Policy Agent to evaluate infrastructure templates against both standard security policies and custom organizational rules. The project functions as a security guardrail within build pipelines, blocking risky deployments by integrating scanning logic directly into CI/CD workflows. It also includes a container registry vulnerability scanner that collects vulnerability data

    Go
    عرض على GitHub↗5,210
  • 1n3/brutexالصورة الرمزية لـ 1N3

    1N3/BruteX

    2,265عرض على GitHub↗
    Shellbrutebrute-forcebruteforce
    عرض على GitHub↗2,265
  • aquasecurity/trivyالصورة الرمزية لـ aquasecurity

    aquasecurity/trivy

    36,462عرض على GitHub↗

    Trivy is a comprehensive security scanner designed to identify vulnerabilities and misconfigurations across container images, filesystems, and infrastructure as code files. It functions as a software composition analysis tool and an infrastructure security scanner, providing automated checks for CI/CD pipelines and cloud environments to ensure the integrity of the software supply chain. The tool distinguishes itself through a modular, plugin-based architecture that allows for the independent inspection of diverse targets. It utilizes a declarative policy engine to evaluate configurations agai

    Gocontainersdevsecopsdocker
    عرض على GitHub↗36,462
  • aquasecurity/kube-hunterالصورة الرمزية لـ aquasecurity

    aquasecurity/kube-hunter

    5,064عرض على GitHub↗

    Kube-hunter is a security scanner and vulnerability hunter for Kubernetes clusters. It operates as a cloud-native penetration tool designed to identify security weaknesses, infrastructure misconfigurations, and exploitable gaps by simulating attacker techniques. The tool distinguishes itself through a dual-mode scanning engine that executes both remote external probes and internal network scans. It features identity-based impersonation, allowing it to use service account tokens and pod identities to simulate security access from specific cluster roles and determine the potential blast radius

    Python
    عرض على GitHub↗5,064
  • aquasecurity/trivy-operatorالصورة الرمزية لـ aquasecurity

    aquasecurity/trivy-operator

    1,890عرض على GitHub↗

    Kubernetes-native security toolkit

    Go
    عرض على GitHub↗1,890
  • assetnote/batchqlالصورة الرمزية لـ assetnote

    assetnote/batchql

    412عرض على GitHub↗

    GraphQL security auditing script with a focus on performing batch GraphQL queries and mutations

    Python
    عرض على GitHub↗412
  • assetnote/kiterunnerالصورة الرمزية لـ assetnote

    assetnote/kiterunner

    3,204عرض على GitHub↗

    Contextual Content Discovery Tool

    Go
    عرض على GitHub↗3,204
  • attackercan/burp-xss-sql-pluginالصورة الرمزية لـ attackercan

    attackercan/burp-xss-sql-plugin

    44عرض على GitHub↗

    Publishing plugin which I used for years which helped me to find several bugbounty-worthy XSSes, OpenRedirects and SQLi.

    Python
    عرض على GitHub↗44
  • aboul3la/sublist3rالصورة الرمزية لـ aboul3la

    aboul3la/Sublist3r

    10,957عرض على GitHub↗

    Sublist3r is a subdomain enumeration tool and passive reconnaissance framework designed to discover subdomains by querying search engines and public intelligence sources. It functions as a security tool for identifying the digital footprint of a target domain. The project provides both passive enumeration through multi-source API aggregation and active discovery via a DNS brute force tool. It includes a TCP port scanner to identify active services and open ports on discovered subdomains, facilitating attack surface mapping. The tool can be used as a standalone utility or as a Python security

    Python
    عرض على GitHub↗10,957
  • brendan-rius/c-jwt-crackerالصورة الرمزية لـ brendan-rius

    brendan-rius/c-jwt-cracker

    2,548عرض على GitHub↗

    JWT brute force cracker written in C

    Cbrute-forcecrackerjwt-authentication
    عرض على GitHub↗2,548
  • bountyyfi/lonkeroالصورة الرمزية لـ bountyyfi

    bountyyfi/lonkero

    929عرض على GitHub↗

    Lonkero - Wraps around your attack surface. Professional-grade scanner for real penetration testing. Fast. Modular. Rust.

    Rust
    عرض على GitHub↗929
  • aquasecurity/kube-benchالصورة الرمزية لـ aquasecurity

    aquasecurity/kube-bench

    8,078عرض على GitHub↗

    kube-bench is a Kubernetes security benchmark scanner and configuration auditor. It verifies if a cluster adheres to the Center for Internet Security standards and other hardening guides to identify security misconfigurations and vulnerabilities. The tool operates as a containerized security scanner, utilizing host namespaces to analyze nodes and control plane components without requiring the installation of binaries directly on the host. It supports multiple Kubernetes distributions, applying environment-specific benchmarks to ensure auditing accuracy for managed services. The project cover

    Go
    عرض على GitHub↗8,078
  • cisco-talos/mutiny-fuzzerالصورة الرمزية لـ Cisco-Talos

    Cisco-Talos/mutiny-fuzzer

    630عرض على GitHub↗

    Blog post here: http://blog.talosintelligence.com/2018/01/tutorial-mutiny-fuzzing-framework-and.html

    Python
    عرض على GitHub↗630
  • coinbase/salusالصورة الرمزية لـ coinbase

    coinbase/salus

    29عرض على GitHub↗

    Salus: Guardian of Code Safety and Security

    HTML
    عرض على GitHub↗29
  • danielmiessler/seclistsالصورة الرمزية لـ danielmiessler

    danielmiessler/SecLists

    71,596عرض على GitHub↗

    SecLists is a centralized library of security assessment data designed to support vulnerability discovery and penetration testing. It functions as a comprehensive repository of wordlists, payloads, and testing methodologies used to audit software, firmware, and internet-connected hardware for technical vulnerabilities. The project distinguishes itself through a standardized taxonomy and a language-agnostic data format, which allows security tools to predictably ingest and utilize its assets regardless of the underlying programming environment. By decoupling raw testing data from execution log

    PHP
    عرض على GitHub↗71,596
  • danmcinerney/pentest-machineD

    DanMcInerney/pentest-machine

    0عرض على GitHub↗
    عرض على GitHub↗0
  • deepfence/secretscannerالصورة الرمزية لـ deepfence

    deepfence/SecretScanner

    3,270عرض على GitHub↗

    SecretScanner is a security tool designed to search filesystems and container images for unprotected passwords, API keys, and other sensitive data. It functions as a static secret detector and container image scanner that identifies hardcoded credentials by matching content against a database of known secret types. The tool inspects container image layers to find secrets hidden within the filesystem hierarchy and parses local directories and host-mounted paths. It provides the ability to export scan findings in machine-readable JSON format for automated analysis and processing. The scanning

    Gocontainersdevsecopsdocker
    عرض على GitHub↗3,270
  • deepfence/threatmapperالصورة الرمزية لـ deepfence

    deepfence/ThreatMapper

    5,282عرض على GitHub↗

    ThreatMapper is a cloud native application protection platform and infrastructure security scanner. It functions as a vulnerability management system and cloud workload telemetry collector designed to monitor workloads and detect security risks across cloud and container environments. The platform distinguishes itself through a network traffic visualizer that uses machine learning to classify communication patterns and a graph-based attack mapping system to identify high-risk paths between vulnerabilities and network dependencies. Its broader capabilities cover cloud infrastructure complianc

    TypeScriptcloud-nativecloudsecuritycnapp
    عرض على GitHub↗5,282
  • denandz/fuzzotronالصورة الرمزية لـ denandz

    denandz/fuzzotron

    534عرض على GitHub↗

    A TCP/UDP based network daemon fuzzer

    C
    عرض على GitHub↗534
  • devanshbatham/headerpwnD

    devanshbatham/headerpwn

    0عرض على GitHub↗
    عرض على GitHub↗0
  • dobin/ffwالصورة الرمزية لـ dobin

    dobin/ffw

    122عرض على GitHub↗

    A fuzzing framework for network servers

    Python
    عرض على GitHub↗122
  • dvyukov/go-fuzzالصورة الرمزية لـ dvyukov

    dvyukov/go-fuzz

    4,853عرض على GitHub↗

    go-fuzz is a coverage-guided randomized testing tool for identifying crashes and logic bugs in Go code. It consists of a fuzzer that evolves random inputs based on code execution paths, an instrumentation tool that produces binaries for tracking coverage, and a seed corpus manager. The tool utilizes compile-time binary instrumentation to monitor branch coverage and employs a feedback-driven mutation loop to prioritize inputs that reach new sections of the codebase. It includes capabilities for comparative differential testing to identify logic errors by executing different implementations of

    Go
    عرض على GitHub↗4,853
  • dwisiswant0/crlfuzzالصورة الرمزية لـ dwisiswant0

    dwisiswant0/crlfuzz

    1,543عرض على GitHub↗

    A fast tool to scan CRLF vulnerability written in Go

    Go
    عرض على GitHub↗1,543
  • bo0om/parampampamالصورة الرمزية لـ Bo0oM

    Bo0oM/ParamPamPam

    277عرض على GitHub↗

    This tool for brute discover GET and POST parameters.

    Python
    عرض على GitHub↗277