awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
Back to droope/droopescan

Projects sharing features with Droopescan

30 open-source projects similar to droope/droopescan, ranked by shared indexed features. Tags may describe platforms or build tools rather than the same primary purpose. Check each project’s use case, license, and deployment requirements before treating it as a replacement.

  • wpscanteam/wpscanwpscanteam avatar

    wpscanteam/wpscan

    9,636View on GitHub↗

    WPScan is a security analysis utility and vulnerability scanner designed specifically for auditing WordPress installations and other content management systems. It functions as a web application security tool that identifies misconfigurations, outdated software, and security holes in core installations, plugins, and themes. The tool employs black-box scanning techniques to perform site component enumeration, identifying users, themes, and plugins by matching known file paths and response signatures. It matches these detected components against a database of known security flaws to analyze the

    Ruby
    View on GitHub↗9,636
  • tuhinshubhra/cmseekTuhinshubhra avatar

    Tuhinshubhra/CMSeeK

    2,543View on GitHub↗

    CMS Detection and Exploitation suite - Scan WordPress, Joomla, Drupal and over 180 other CMSs

    Pythonbruteforcecmscms-bruteforce
    View on GitHub↗2,543
  • rezasp/joomscanrezasp avatar

    rezasp/joomscan

    1,190View on GitHub↗

    OWASP Joomla Vulnerability Scanner Project https://www.secologist.com/

    Raku
    View on GitHub↗1,190
  • w-digital-scanner/w13scanw-digital-scanner avatar

    w-digital-scanner/w13scan

    1,945View on GitHub↗

    W13scan is an automated vulnerability assessment tool designed to identify security flaws in web applications through a modular plugin architecture. It functions as a scanning engine that executes specialized security logic against web endpoints to detect injection flaws, information leaks, and configuration errors. The platform distinguishes itself by combining active probing with passive traffic analysis and out-of-band detection. It utilizes a callback-based service to verify blind vulnerabilities that do not provide immediate feedback, and it operates as a proxy to intercept and inspect l

    Smartypassive-vulnerability-scannersecurity-tools
    View on GitHub↗1,945

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Find more with AI search
  • commixproject/commixcommixproject avatar

    commixproject/commix

    5,757View on GitHub↗

    Commix is an automated tool for detecting and exploiting OS command injection vulnerabilities in web applications. It probes user-supplied input vectors with heuristic test payloads, analyzes response differences to identify injection points, and then automates the execution of arbitrary operating system commands on the target server. The tool distinguishes itself through a multi-layer filter bypass engine that evaluates input constraints independently per filter type and composes tailored evasion strategies into a single payload. A modular payload tamper pipeline transforms raw injection str

    Python
    View on GitHub↗5,757
  • crashbrz/webxmlexploiterC

    crashbrz/WebXmlExploiter

    0View on GitHub↗
    View on GitHub↗0
  • d3vilbug/hackbard3vilbug avatar

    d3vilbug/HackBar

    1,627View on GitHub↗

    HackBar plugin for Burpsuite

    Java
    View on GitHub↗1,627
  • dionach/cmsmapDionach avatar

    Dionach/CMSmap

    1,166View on GitHub↗

    CMSmap is a python open source CMS scanner that automates the process of detecting security flaws of the most popular CMSs.

    Python
    View on GitHub↗1,166
  • ekultek/whatwafEkultek avatar

    Ekultek/WhatWaf

    2,901View on GitHub↗

    Detect and bypass web application firewalls and protection systems

    Python
    View on GitHub↗2,901
  • federicodotta/java-deserialization-scannerfedericodotta avatar

    federicodotta/Java-Deserialization-Scanner

    802View on GitHub↗

    All-in-one plugin for Burp Suite for the detection and the exploitation of Java deserialization vulnerabilities

    Java
    View on GitHub↗802
  • gyoisamurai/gyoithongyoisamurai avatar

    gyoisamurai/GyoiThon

    822View on GitHub↗

    GyoiThon is a growing penetration test tool using Machine Learning.

    Python
    View on GitHub↗822
  • hacktus/jmx2rceH

    Hacktus/jmx2rce

    0View on GitHub↗
    View on GitHub↗0
  • immunit/drupwnimmunIT avatar

    immunIT/drupwn

    618View on GitHub↗

    Drupal enumeration & exploitation tool

    Python
    View on GitHub↗618
  • j3ssie/osmedeusj3ssie avatar

    j3ssie/Osmedeus

    6,425View on GitHub↗

    Osmedeus is a security workflow orchestration engine that coordinates AI agents, shell commands, and scanning tools through declarative YAML pipelines. It functions as a distributed security scanner, a declarative workflow automator, and an AI agent framework for security, enabling automated multi-step security analysis with conditional branching, parallel execution, and distributed workers. The engine distinguishes itself through a hybrid runner model that executes workflow steps on the local host, inside Docker containers, or over SSH to remote machines, selected per step or module. It supp

    Go
    View on GitHub↗6,425
  • m4ll0k/wascanM

    m4ll0k/WAScan

    0View on GitHub↗
    View on GitHub↗0
  • m4ll0k/wpsekuM

    m4ll0k/WPSeku

    0View on GitHub↗
    View on GitHub↗0
  • mrcl0wnlab/shellshockhunterM

    MrCl0wnLab/ShellShockHunter

    0View on GitHub↗
    View on GitHub↗0
  • n00py/wpforcen00py avatar

    n00py/WPForce

    975View on GitHub↗

    Wordpress Attack Suite

    Pythonhacking-tooljavascriptkeylogger
    View on GitHub↗975
  • projectdiscovery/nucleiprojectdiscovery avatar

    projectdiscovery/nuclei

    29,189View on GitHub↗

    Nuclei is a modular security scanning framework designed for automated vulnerability detection and infrastructure reconnaissance. It functions as a template-driven engine that executes security checks across diverse network protocols, allowing users to define custom detection logic to identify vulnerabilities, misconfigurations, and exposed assets. The platform distinguishes itself through its highly extensible architecture, which supports distributed scanning, headless browser automation for dynamic web content, and out-of-band interaction monitoring to detect blind vulnerabilities. It integ

    Goattack-surfacecve-scannerdast
    View on GitHub↗29,189
  • rastating/wordpress-exploit-frameworkrastating avatar

    rastating/wordpress-exploit-framework

    1,047View on GitHub↗

    A Ruby framework designed to aid in the penetration testing of WordPress systems.

    Ruby
    View on GitHub↗1,047
  • s0md3v/xsstrikes0md3v avatar

    s0md3v/XSStrike

    14,752View on GitHub↗

    XSStrike is an automated security scanning engine designed for web application discovery, input

    Pythonwaf-detectionxssxss-bruteforce
    View on GitHub↗14,752
  • scipag/vulscanscipag avatar

    scipag/vulscan

    3,761View on GitHub↗

    Vulscan is a network service auditor and vulnerability scanner that utilizes the Nmap Scripting Engine to identify security flaws. It functions as a version-based flaw detector, matching detected software banners against an offline vulnerability database to identify potential security risks without requiring a constant internet connection. The tool provides mechanisms for refining identification accuracy, including an interactive mode for manual version overriding and configurable matching logic to filter results. It manages security data through a system for loading local datasets and synchr

    Lua
    View on GitHub↗3,761
  • six2dez/reconftwsix2dez avatar

    six2dez/reconftw

    7,226View on GitHub↗

    reconftw is an attack surface management framework and reconnaissance workflow orchestrator designed to automate the discovery, mapping, and monitoring of external digital assets. It operates as a modular tool-chain pipeline that coordinates a sequence of security tools to perform intelligence gathering and vulnerability scanning. The project distinguishes itself through a cloud-native deployment model that parallelizes scanning workloads across a fleet of remote VPS instances to bypass local resource constraints. It utilizes container-based environment isolation to ensure consistent executio

    Shellbug-bountybugbountybugbounty-tool
    View on GitHub↗7,226
  • snoopysecurity/awesome-burp-extensionssnoopysecurity avatar

    snoopysecurity/awesome-burp-extensions

    3,422View on GitHub↗

    A curated list of amazingly awesome Burp Extensions

    View on GitHub↗3,422
  • spinkham/skipfishS

    spinkham/skipfish

    0View on GitHub↗
    View on GitHub↗0
  • stark0de/nginxpwnerstark0de avatar

    stark0de/nginxpwner

    1,599View on GitHub↗

    Nginxpwner is a simple tool to look for common Nginx misconfigurations and vulnerabilities.

    Python
    View on GitHub↗1,599
  • sullo/niktosullo avatar

    sullo/nikto

    10,104View on GitHub↗

    Nikto is an open-source HTTP security auditing tool and web server vulnerability scanner. It functions as a reconnaissance engine designed to identify insecure server options, outdated software, and common vulnerabilities by analyzing HTTP responses. The project differentiates itself through capabilities for intrusion detection evasion and web server fingerprinting. It uses request-level encoding and timing spacers to bypass security filters and employs signature-based identification to determine specific server software versions and misconfigurations. The scanner covers broad capability are

    Perl
    View on GitHub↗10,104
  • swisskyrepo/wordpresscanswisskyrepo avatar

    swisskyrepo/Wordpresscan

    653View on GitHub↗

    A simple Wordpress scanner written in python based on the work of WPScan (Ruby version), some features are inspired by WPSeku.

    Python
    View on GitHub↗653
  • vigolium/vigoliumvigolium avatar

    vigolium/vigolium

    737View on GitHub↗

    Vigolium - High-fidelity vulnerability scanner fusing agentic AI with native speed, modularity, and precision

    Go
    View on GitHub↗737
  • whoot/typo-enumeratorW

    whoot/Typo-Enumerator

    0View on GitHub↗
    View on GitHub↗0