Less Googling, More Hacking!

297 InfoSec Tools in Our Directory

67 Tools in Bug Bounty

Verified
LinkFinder

LinkFinder

by GerbenJavado

A python script that finds endpoints in JavaScript files

endpoints infosec
3956
View Details
Verified
dnsx

dnsx

by projectdiscovery

dnsx is a fast and multi-purpose DNS toolkit allow to run multiple DNS queries of your choice with a list of user-supplied resolvers.

cli dns-bruteforcer dns-client
2369
View Details
Verified
assetfinder

assetfinder

by tomnomnom

Find domains and subdomains related to a given domain

security tool
3291
View Details
Featured
Sublist3r

Sublist3r

by aboul3la

Fast subdomains enumeration tool for penetration testers

security tool
10371
View Details
Verified
dalfox

dalfox

by hahwul

🌙🦊 Dalfox is a powerful open-source XSS scanner and utility focused on automation.

bugbounty bugbounty-tool cicd-pipeline
4286
View Details
Verified
Gopherus

Gopherus

by tarunkant

This tool generates gopher link for exploiting SSRF and gaining RCE in various servers

fastcgi github-rce gopher
3088
View Details
Verified
hakrawler

hakrawler

by hakluke

Simple, fast web crawler designed for easy, quick discovery of endpoints and assets within a web application

bugbounty crawling hacking
4717
View Details
uro

uro

by s0md3v

declutters url lists for crawling/pentesting

security tool
1372
View Details
dnsgen

dnsgen

by AlephNullSK

DNSGen is a powerful and flexible DNS name permutation tool designed for security researchers and penetration testers. It generates intelligent domain name variations to assist in subdomain discovery and security assessments.

domains osint recon
976
View Details
lazyrecon

lazyrecon

by nahamsec

This script is intended to automate your reconnaissance process in an organized fashion

security tool
1969
View Details
Gxss

Gxss

by KathanP19

A tool to check a bunch of URLs that contain reflecting params.

bugbounty bugbounty-tool golang
577
View Details
Jeeves

Jeeves

by ferreiraklet

Jeeves SQLI Finder

security tool
217
View Details
Featured
gitleaks

gitleaks

by gitleaks

Find secrets with Gitleaks 🔑

ai-powered ci-cd cicd
19975
View Details
Featured
katana

katana

by projectdiscovery

A next-generation crawling and spidering framework.

cli crawler gocrawler
13718
View Details
Verified
reconftw

reconftw

by six2dez

reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities

bug-bounty bugbounty dns
6298
View Details

Frequently Asked Questions about InfosecMania

Learn more about Cybersecurity Tools and how they can enhance your security posture

InfoSecMania is a comprehensive directory of cybersecurity tools and resources designed to help security professionals find the right tools for their needs.

You can submit a tool by clicking on the 'Submit Tool' link in the navigation menu and filling out the submission form with details about your tool.

No, InfoSecMania includes both free and commercial tools. Each tool listing indicates whether it's free, paid, or offers a freemium model.

Tools are categorized based on their primary function, such as penetration testing, vulnerability assessment, network security, etc. Many tools may appear in multiple categories if they serve multiple purposes.

We only list tools and resources from publicly available, reputable sources — most of which are open-source and widely used in the cybersecurity community. However, always review and test tools in a safe, legal environment, like your lab or VM.

We actively monitor public repositories, GitHub, and community forums to keep our tool listings fresh. Many tools are auto-sourced from open-source feeds and security communities.