awesome-repositories.com
Blog
MCP
awesome-repositories.com

Descoperă cele mai bune repository-uri open source cu căutare AI.

ExploreazăCăutări recomandateAlternative open-sourceSoftware self-hostedBlogHartă site
ProiectServer MCPDespreCum realizăm clasamentulPresă
LegalConfidențialitateTermeni
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Back to 1n3/blackwidow

Open-source alternatives to BlackWidow

30 open-source projects similar to 1n3/blackwidow, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best BlackWidow alternative.

  • yogeshojha/rengineAvatar yogeshojha

    yogeshojha/rengine

    8,472Vezi pe GitHub↗

    Rengine is an automated reconnaissance framework and vulnerability management platform designed for attack surface monitoring. It functions as a centralized hub for discovering subdomains and open ports, gathering open-source intelligence, and tracking security flaws across target networks. The system integrates large language models to analyze reconnaissance data and generate vulnerability descriptions and insights. It distinguishes itself through a plugin-based tool integration that wraps external security scanning binaries and a target mapping system that tracks changes to assets over time

    HTMLbug-bountybugbountyhacking
    Vezi pe GitHub↗8,472
  • kathanp19/howtohuntAvatar KathanP19

    KathanP19/HowToHunt

    7,146Vezi pe GitHub↗

    HowToHunt is a bug bounty hunting knowledge base and a structured guide for web application penetration testing. It provides a research methodology for organizing security testing procedures and validating application behaviors against known vulnerability patterns. The project features a curated library of security flaws and reconnaissance techniques. It organizes security testing into modular playbooks, checklists, and categorical vulnerability mappings to align specific exploitation techniques with target weaknesses. The repository covers a systematic sequence of information gathering task

    bugbountybugbountytipsbughunting-methodology
    Vezi pe GitHub↗7,146
  • sensepost/gowitnessAvatar sensepost

    sensepost/gowitness

    4,174Vezi pe GitHub↗

    Gowitness is a system for rendering web interfaces at scale to capture visual snapshots, HTTP metadata, and network scan results. It functions as a headless browser screenshot tool and a web surface mapper used to identify and visually document the attack surface of network ranges and URL lists. The tool includes a screenshot gallery server that provides a web-based interface for browsing, filtering, and managing a database of captures. It specifically serves as an Nmap target visualizer, parsing network scan results to automatically capture screenshots of discovered web services. Capabiliti

    Gochromechrome-headlessfingerprint
    Vezi pe GitHub↗4,174

Căutare AI

Explorează mai multe repository-uri excelente

Descrie ce ai nevoie în limbaj simplu — AI-ul sortează mii de proiecte open source selectate în funcție de relevanță.

Find more with AI search
  • byt3bl33d3r/crackmapexecAvatar byt3bl33d3r

    byt3bl33d3r/CrackMapExec

    9,144Vezi pe GitHub↗

    CrackMapExec is a network penetration testing framework and automated security scanner designed to assess security postures across large IP ranges. It functions as a multi-protocol security scanner and network protocol auditor used to identify vulnerabilities and misconfigurations. The tool provides capabilities for Active Directory auditing to enumerate users and permissions, as well as post-exploitation enumeration to gather system metadata and discover lateral movement paths. It includes a framework for credential spraying and harvesting across various network services. The system utilize

    Python
    Vezi pe GitHub↗9,144
  • 1n3/sn1perAvatar 1N3

    1N3/Sn1per

    10,049Vezi pe GitHub↗

    Sn1per is a vulnerability management platform and penetration testing orchestrator designed to automate reconnaissance, vulnerability scanning, and exploit verification. It functions as a dockerized security toolkit that coordinates multiple tools into a unified automated pipeline to identify security flaws across network and web assets. The platform features an attack surface manager for discovering internet-facing assets through OSINT, DNS enumeration, and certificate transparency. It distinguishes itself with an AI-powered security analyzer that uses large language models to summarize scan

    Shellattack-surfaceattack-surface-managementattacksurface
    Vezi pe GitHub↗10,049
  • 3xp10it/xcdnAvatar 3xp10it

    3xp10it/xcdn

    337Vezi pe GitHub↗

    尝试找出cdn背后的真实ip

    Python
    Vezi pe GitHub↗337
  • 1337g/cve-2017-102711

    1337g/CVE-2017-10271

    0Vezi pe GitHub↗
    Vezi pe GitHub↗0
  • auth0/repo-supervisorAvatar auth0

    auth0/repo-supervisor

    653Vezi pe GitHub↗

    Scan your code for security misconfiguration, search for passwords and secrets. :mag:

    JavaScript
    Vezi pe GitHub↗653
  • 1n3/findsploitAvatar 1N3

    1N3/Findsploit

    1,833Vezi pe GitHub↗

    Find exploits in local and online databases instantly

    Shell
    Vezi pe GitHub↗1,833
  • b1gcat/darkeyeB

    b1gcat/DarkEye

    0Vezi pe GitHub↗
    Vezi pe GitHub↗0
  • baidu/openraspAvatar baidu

    baidu/openrasp

    2,964Vezi pe GitHub↗

    🔥Open source RASP solution

    C++
    Vezi pe GitHub↗2,964
  • bigblackhat/ofxB

    bigblackhat/oFx

    0Vezi pe GitHub↗
    Vezi pe GitHub↗0
  • bigsizeme/burplugin-java-rceAvatar bigsizeme

    bigsizeme/burplugin-java-rce

    109Vezi pe GitHub↗

    *本软件仅限用于学习交流禁止用于任何非法行为 本软件为burpsuite的一个插件,实验作品只是为插件开发做一个实验。使用burpsuite提供的API很少,希望抛砖引玉fork指正。 本版本支持elasticsearch java语言远程命令执行及文件上传 elasticsearchgroov语言远程命令执行及文件上传 struts2-005、 struts2-009、struts2-013、struts2-016、struts2-019、struts2-020、struts2-devmode、 struts2-032、struts2-033、…

    Java
    Vezi pe GitHub↗109
  • bitthebyte/eagleAvatar BitTheByte

    BitTheByte/Eagle

    128Vezi pe GitHub↗

    Multithreaded Plugin based vulnerability scanner for mass detection of web-based applications vulnerabilities

    Python
    Vezi pe GitHub↗128
  • boy-hack/gwhatwebAvatar boy-hack

    boy-hack/gwhatweb

    213Vezi pe GitHub↗

    CMS识别 python gevent实现

    Python
    Vezi pe GitHub↗213
  • arachni/arachniAvatar Arachni

    Arachni/arachni

    4,000Vezi pe GitHub↗

    Arachni is a dynamic application security testing vulnerability scanner and web application security tool. It functions as a distributed web audit framework that performs active and passive audits to identify security flaws such as SQL injection and cross-site scripting. The project features a JavaScript-aware web crawler that executes scripts and monitors DOM changes to analyze modern dynamic web applications. It utilizes server platform fingerprinting to target compatible security payloads and provides a grid-based system to distribute scanning workloads across multiple nodes. The tool cov

    Rubyanalysisarachniaudit
    Vezi pe GitHub↗4,000
  • bountyyfi/lonkeroAvatar bountyyfi

    bountyyfi/lonkero

    929Vezi pe GitHub↗

    Lonkero - Wraps around your attack surface. Professional-grade scanner for real penetration testing. Fast. Modular. Rust.

    Rust
    Vezi pe GitHub↗929
  • boy-hack/w11scanAvatar boy-hack

    boy-hack/w11scan

    472Vezi pe GitHub↗

    w11scan是一款分布式的WEB指纹识别系统(包括CMS识别、js框架、组件容器、代码语言、WAF等等),管理员可以在WEB端新增/修改指纹,建立批量的扫描任务,并且支持多种搜索语法。

    CSS
    Vezi pe GitHub↗472
  • boy-hack/w8fuckcdnAvatar boy-hack

    boy-hack/w8fuckcdn

    784Vezi pe GitHub↗

    Get website IP address by scanning the entire net 通过扫描全网绕过CDN获取网站IP地址

    Python
    Vezi pe GitHub↗784
  • blackye/webdirdigAvatar blackye

    blackye/webdirdig

    129Vezi pe GitHub↗

    webdirdig web敏感目录\信息泄漏扫描脚本

    Python
    Vezi pe GitHub↗129
  • capt-meelo/telewreckAvatar capt-meelo

    capt-meelo/telewreck

    97Vezi pe GitHub↗

    A Burp extension to detect and exploit versions of Telerik Web UI vulnerable to CVE-2017-9248. This extension is based on the original exploit tool written by Paul Taylor (@bao7uo) which is available at https://github.com/bao7uo/dp_crypto. Credits and big thanks to him.

    Python
    Vezi pe GitHub↗97
  • chaitin/xrayAvatar chaitin

    chaitin/xray

    11,612Vezi pe GitHub↗

    Xray is a security assessment tool focused on web vulnerability scanning, attack surface mapping, and technology fingerprinting. It identifies common security flaws through automated scanning and semantic analysis, while verifying findings via a custom proof-of-concept execution engine. The system distinguishes itself with a containerized vulnerability testbed used to deploy pre-configured vulnerable applications. This environment allows for the simulation of specific vulnerabilities and edge-case scenarios to validate scanner accuracy and eliminate false positives. The platform covers a bro

    Vuepassive-vulnerability-scannerpocsecurity
    Vezi pe GitHub↗11,612
  • chichou/grab.jsAvatar chichou

    chichou/grab.js

    50Vezi pe GitHub↗

    simple TCP banner grabbing with node.js

    Shell
    Vezi pe GitHub↗50
  • cloudflare/flanAvatar cloudflare

    cloudflare/flan

    4,162Vezi pe GitHub↗

    Flan is a containerized network vulnerability scanner and security auditor. It identifies open ports and service versions across a network to detect known security weaknesses and misconfigurations. The system is designed to run within isolated container environments, utilizing configuration maps to manage target lists and secrets. It includes a dedicated mechanism for archiving scan output files and security analysis data to remote S3 buckets for long-term storage. The tool generates formatted vulnerability summaries and security reports in multiple document formats for technical analysis. I

    Python
    Vezi pe GitHub↗4,162
  • cloudtracer/pasktoAvatar cloudtracer

    cloudtracer/paskto

    150Vezi pe GitHub↗

    Paskto will passively scan the web using the Common Crawl internet index either by downloading the indexes on request or parsing data from your local system. URLs are then processed through Nikto and known URL lists to identify interesting content. Hash signatures are also used to identify known…

    JavaScript
    Vezi pe GitHub↗150
  • codedx/burp-extensionAvatar codedx

    codedx/burp-extension

    5Vezi pe GitHub↗

    burp-extension

    Java
    Vezi pe GitHub↗5
  • codewatchorg/burp-indicatorsofvulnerabilityAvatar codewatchorg

    codewatchorg/Burp-IndicatorsOfVulnerability

    42Vezi pe GitHub↗

    Burp extension that checks application requests and responses for indicators of vulnerability or targets for attack

    Java
    Vezi pe GitHub↗42
  • darrenmartyn/visualdoorD

    darrenmartyn/VisualDoor

    0Vezi pe GitHub↗
    Vezi pe GitHub↗0
  • deibit/cansinaAvatar deibit

    deibit/cansina

    899Vezi pe GitHub↗

    Web Content Discovery Tool

    Pythonpentestingpythonsecurity-audit
    Vezi pe GitHub↗899
  • aipengjie/sensitivefilescanAvatar aipengjie

    aipengjie/sensitivefilescan

    183Vezi pe GitHub↗

    this tools can be searched web leak files

    Python
    Vezi pe GitHub↗183