awesome-repositories.com
Blog
MCP
awesome-repositories.com

Découvrez les meilleurs dépôts open-source grâce à notre recherche par IA.

ExplorerRecherches sélectionnéesAlternatives open sourceLogiciels auto-hébergésBlogPlan du site
ProjetServeur MCPÀ proposNotre méthodologiePresse
Mentions légalesConfidentialitéConditions d'utilisation
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Back to bishopfox/gadgetprobe

Open-source alternatives to GadgetProbe

30 open-source projects similar to bishopfox/gadgetprobe, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best GadgetProbe alternative.

  • pwntester/ysoserial.netAvatar de pwntester

    pwntester/ysoserial.net

    3,735Voir sur GitHub↗

    ysoserial.net is a payload generator for .NET deserialization, designed to create malicious serialized objects and structured gadget chains. It serves as a tool for generating command execution strings and security testing suites used to assess vulnerabilities in .NET formatters. The tool enables the creation of sequences of object calls that trigger remote code execution during the reconstruction of serialized data. It produces specialized payloads for executing system commands, loading remote libraries, and accessing local file systems. The project includes capabilities for optimizing payl

    C#
    Voir sur GitHub↗3,735
  • federicodotta/java-deserialization-scannerAvatar de federicodotta

    federicodotta/Java-Deserialization-Scanner

    802Voir sur GitHub↗

    All-in-one plugin for Burp Suite for the detection and the exploitation of Java deserialization vulnerabilities

    Java
    Voir sur GitHub↗802
  • w-digital-scanner/w13scanAvatar de w-digital-scanner

    w-digital-scanner/w13scan

    1,945Voir sur GitHub↗

    W13scan is an automated vulnerability assessment tool designed to identify security flaws in web applications through a modular plugin architecture. It functions as a scanning engine that executes specialized security logic against web endpoints to detect injection flaws, information leaks, and configuration errors. The platform distinguishes itself by combining active probing with passive traffic analysis and out-of-band detection. It utilizes a callback-based service to verify blind vulnerabilities that do not provide immediate feedback, and it operates as a proxy to intercept and inspect l

    Smartypassive-vulnerability-scannersecurity-tools
    Voir sur GitHub↗1,945
  • allyomalley/dnsobserverA

    allyomalley/dnsobserver

    0Voir sur GitHub↗
    Voir sur GitHub↗0

Recherche par IA

Explorez plus de dépôts awesome

Décrivez vos besoins en langage naturel — l'IA classe des milliers de projets open source sélectionnés par pertinence.

Find more with AI search
  • asciimoo/wuzzAvatar de asciimoo

    asciimoo/wuzz

    10,711Voir sur GitHub↗

    Wuzz is an interactive command line HTTP client and request inspector designed for capturing, reviewing, and analyzing outgoing network calls and their payloads. It functions as a terminal-based tool for debugging API issues and testing web endpoints. The tool provides specialized filtering for response bodies, using regular expressions and format-specific query syntaxes tailored for JSON and HTML data. It allows for the persistence of captured requests and responses to disk to facilitate the reproduction of network issues and offline analysis. User settings and default request behaviors are

    Goclicurlgo
    Voir sur GitHub↗10,711
  • assetnote/wordlistsAvatar de assetnote

    assetnote/wordlists

    1,611Voir sur GitHub↗
    CSSbruteforcebruteforce-wordlistcontent-discovery
    Voir sur GitHub↗1,611
  • arturss7/tuktukA

    ArturSS7/TukTuk

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • bigsizeme/fastjson-checkAvatar de bigsizeme

    bigsizeme/fastjson-check

    368Voir sur GitHub↗

    fastjson 被动扫描、不出网payload生成

    Voir sur GitHub↗368
  • bountystrike/emissaryB

    BountyStrike/Emissary

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • coldfusion39/domi-ownedC

    coldfusion39/domi-owned

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • d3vilbug/hackbarAvatar de d3vilbug

    d3vilbug/HackBar

    1,627Voir sur GitHub↗

    HackBar plugin for Burpsuite

    Java
    Voir sur GitHub↗1,627
  • damianrusinek/zip-bombD

    damianrusinek/zip-bomb

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • danielmiessler/seclistsAvatar de danielmiessler

    danielmiessler/SecLists

    71,596Voir sur GitHub↗

    SecLists is a centralized library of security assessment data designed to support vulnerability discovery and penetration testing. It functions as a comprehensive repository of wordlists, payloads, and testing methodologies used to audit software, firmware, and internet-connected hardware for technical vulnerabilities. The project distinguishes itself through a standardized taxonomy and a language-agnostic data format, which allows security tools to predictably ingest and utilize its assets regardless of the underlying programming environment. By decoupling raw testing data from execution log

    PHP
    Voir sur GitHub↗71,596
  • dionach/cmsmapAvatar de Dionach

    Dionach/CMSmap

    1,166Voir sur GitHub↗

    CMSmap is a python open source CMS scanner that automates the process of detecting security flaws of the most popular CMSs.

    Python
    Voir sur GitHub↗1,166
  • dwisiswant0/cf-checkD

    dwisiswant0/cf-check

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • droope/droopescanAvatar de droope

    droope/droopescan

    1,432Voir sur GitHub↗

    A plugin-based scanner that aids security researchers in identifying issues with several CMSs, mainly Drupal & Silverstripe.

    HTML
    Voir sur GitHub↗1,432
  • ekultek/whatwafAvatar de Ekultek

    Ekultek/WhatWaf

    2,901Voir sur GitHub↗

    Detect and bypass web application firewalls and protection systems

    Python
    Voir sur GitHub↗2,901
  • aws-samples/automated-security-helperAvatar de aws-samples

    aws-samples/automated-security-helper

    657Voir sur GitHub↗

    ASH is an extensible, open source SAST, SCA, and IaC security scanner orchestration engine.

    Python
    Voir sur GitHub↗657
  • frohoff/ysoserialAvatar de frohoff

    frohoff/ysoserial

    8,750Voir sur GitHub↗

    ysoserial is a security research tool and payload generator designed to identify and exploit insecure Java deserialization. It functions as a framework for creating malicious serialized objects that can trigger remote code execution on Java virtual machines. The project provides a library of known gadget chains, which are sequences of vulnerable class calls that achieve arbitrary command execution during the deserialization process. It automates the generation of these payloads by leveraging common third-party libraries. The tool covers capabilities for security penetration testing, Java app

    Javadeserializationexploitgadget
    Voir sur GitHub↗8,750
  • gchq/cyberchefAvatar de gchq

    gchq/CyberChef

    35,120Voir sur GitHub↗

    CyberChef is a web-based application designed for performing complex data encoding, decoding, encryption, and analysis tasks. It provides a visual interface where users construct data transformation pipelines by chaining modular operations together, allowing raw input to be processed into a desired output format entirely within the local browser environment. The tool functions as a client-side cryptographic workbench, ensuring that all data processing logic remains local to the user's machine to maintain privacy and eliminate server-side overhead. By utilizing functional pipeline composition

    JavaScriptcompressiondata-analysisdata-manipulation
    Voir sur GitHub↗35,120
  • google/security-crawl-mazeG

    google/security-crawl-maze

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • gwen001/github-regexpG

    gwen001/github-regexp

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • gwen001/pentest-toolsAvatar de gwen001

    gwen001/pentest-tools

    3,303Voir sur GitHub↗

    A collection of custom security tools for quick needs.

    Pythonauditbashbugbounty
    Voir sur GitHub↗3,303
  • gyoisamurai/gyoithonAvatar de gyoisamurai

    gyoisamurai/GyoiThon

    822Voir sur GitHub↗

    GyoiThon is a growing penetration test tool using Machine Learning.

    Python
    Voir sur GitHub↗822
  • hahwul/hbxssH

    hahwul/hbxss

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • hakluke/hakcheckurlH

    hakluke/hakcheckurl

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • iamstoxe/urlgrabAvatar de IAmStoxe

    IAmStoxe/urlgrab

    343Voir sur GitHub↗

    A golang utility to spider through a website searching for additional links.

    Go
    Voir sur GitHub↗343
  • ioactive/burpjdser-ngAvatar de IOActive

    IOActive/BurpJDSer-ng

    15Voir sur GitHub↗

    Allows you to deserialize java objects to XML and lets you dynamically load classes/jars as needed

    Java
    Voir sur GitHub↗15
  • josue87/gotatorAvatar de Josue87

    Josue87/gotator

    525Voir sur GitHub↗

    Gotator is a tool to generate DNS wordlists through permutations.

    Go
    Voir sur GitHub↗525
  • ambionics/phpggcAvatar de ambionics

    ambionics/phpggc

    3,832Voir sur GitHub↗

    phpggc is a security assessment utility and command-line tool designed for the automated generation, obfuscation, and wrapping of serialized object chains. It functions as a gadget chain framework used to identify and verify remote code execution vectors by testing for PHP object injection vulnerabilities. The project provides a modular system for constructing complex serialized object sequences and includes a dedicated payload obfuscator to transform byte streams for bypassing web application firewalls and security filters. It also features a generator for wrapping serialized data into archi

    PHP
    Voir sur GitHub↗3,832