awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Ekultek avatar

Ekultek/WhatWaf

0
View on GitHub↗
2,901 stars·470 forks·Python·3 views

WhatWaf

Detect and bypass web application firewalls and protection systems

Features

  • Open Source Intelligence - Detection and bypass tool for web application firewalls.
  • Network and Web Reconnaissance - Detects and bypasses web application firewalls.
  • Web Application Scanning - Detects and bypasses web application firewalls.

Star history

Star history chart for ekultek/whatwafStar history chart for ekultek/whatwaf

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Start searching with AI

Open-source alternatives to WhatWaf

Similar open-source projects, ranked by how many features they share with WhatWaf.
  • gyoisamurai/gyoithongyoisamurai avatar

    gyoisamurai/GyoiThon

    822View on GitHub↗

    GyoiThon is a growing penetration test tool using Machine Learning.

    Python
    View on GitHub↗822
  • scipag/vulscanscipag avatar

    scipag/vulscan

    3,761View on GitHub↗

    Vulscan is a network service auditor and vulnerability scanner that utilizes the Nmap Scripting Engine to identify security flaws. It functions as a version-based flaw detector, matching detected software banners against an offline vulnerability database to identify potential security risks without requiring a constant internet connection. The tool provides mechanisms for refining identification accuracy, including an interactive mode for manual version overriding and configurable matching logic to filter results. It manages security data through a system for loading local datasets and synchr

    Lua
    View on GitHub↗3,761
  • enablesecurity/wafw00fEnableSecurity avatar

    EnableSecurity/wafw00f

    6,414View on GitHub↗

    WAFW00F allows one to identify and fingerprint Web Application Firewall (WAF) products protecting a website.

    Python
    View on GitHub↗6,414
  • urbanadventurer/whatweburbanadventurer avatar

    urbanadventurer/WhatWeb

    6,424View on GitHub↗

    WhatWeb is a web application fingerprinting tool that identifies the technology stack powering a website by scanning HTTP responses and page content. It matches responses against a library of over 1800 signatures to detect CMS platforms, JavaScript libraries, web servers, embedded devices, and third-party addons, while also extracting technical metadata such as software versions, user accounts, and module names. The tool operates through a plugin-based detection framework that supports both passive and aggressive scanning modes. Passive plugins analyze existing HTTP headers and page content w

    Rubyapplication-securityappsechacking
    View on GitHub↗6,424
See all 30 alternatives to WhatWaf→

Frequently asked questions

What does ekultek/whatwaf do?

Detect and bypass web application firewalls and protection systems

What are the main features of ekultek/whatwaf?

The main features of ekultek/whatwaf are: Open Source Intelligence, Network and Web Reconnaissance, Web Application Scanning.

What are some open-source alternatives to ekultek/whatwaf?

Open-source alternatives to ekultek/whatwaf include: urbanadventurer/whatweb — WhatWeb is a web application fingerprinting tool that identifies the technology stack powering a website by scanning… scipag/vulscan — Vulscan is a network service auditor and vulnerability scanner that utilizes the Nmap Scripting Engine to identify… enablesecurity/wafw00f — WAFW00F allows one to identify and fingerprint Web Application Firewall (WAF) products protecting a website. gyoisamurai/gyoithon — GyoiThon is a growing penetration test tool using Machine Learning. w-digital-scanner/w13scan — W13scan is an automated vulnerability assessment tool designed to identify security flaws in web applications through… yogeshojha/rengine — Rengine is an automated reconnaissance framework and vulnerability management platform designed for attack surface…