Less Googling, More Hacking!

381 InfoSec Tools in Our Directory

77 Tools in Bug Bounty

Verified
Gopherus

Gopherus

by tarunkant

This tool generates gopher link for exploiting SSRF and gaining RCE in various servers

fastcgi github-rce gopher
3088
View Details
Verified
hakrawler

hakrawler

by hakluke

Simple, fast web crawler designed for easy, quick discovery of endpoints and assets within a web application

bugbounty crawling hacking
4717
View Details
uro

uro

by s0md3v

declutters url lists for crawling/pentesting

security tool
1372
View Details
dnsgen

dnsgen

by AlephNullSK

DNSGen is a powerful and flexible DNS name permutation tool designed for security researchers and penetration testers. It generates intelligent domain name variations to assist in subdomain discovery and security assessments.

domains osint recon
976
View Details
lazyrecon

lazyrecon

by nahamsec

This script is intended to automate your reconnaissance process in an organized fashion

security tool
1969
View Details
Gxss

Gxss

by KathanP19

A tool to check a bunch of URLs that contain reflecting params.

bugbounty bugbounty-tool golang
577
View Details
Jeeves

Jeeves

by ferreiraklet

Jeeves SQLI Finder

security tool
217
View Details
Featured
gitleaks

gitleaks

by gitleaks

Find secrets with Gitleaks 🔑

ai-powered ci-cd cicd
19975
View Details
Featured
katana

katana

by projectdiscovery

A next-generation crawling and spidering framework.

cli crawler gocrawler
13718
View Details
Verified
reconftw

reconftw

by six2dez

reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities

bug-bounty bugbounty dns
6298
View Details
Featured
subfinder

subfinder

by projectdiscovery

Fast passive subdomain enumeration tool.

bugbounty hacking osint
11717
View Details
Verified
GitDorker

GitDorker

by obheda12

A Python program to scrape secrets from GitHub through usage of a large repository of dorks.

security tool
2384
View Details
Verified
S3Scanner

S3Scanner

by sa7mon

Scan for misconfigured S3 buckets across S3-compatible APIs!

aws bugbounty gcp
2779
View Details
Verified
httpx

httpx

by projectdiscovery

httpx is a fast and multi-purpose HTTP toolkit that allows running multiple probes using the retryablehttp library.

bugbounty cli cybersecurity
8523
View Details
Verified
dnsrecon

dnsrecon

by darkoperator

DNS Enumeration Script

security tool
2776
View Details

Frequently Asked Questions about InfosecMania

Learn more about Cybersecurity Tools and how they can enhance your security posture

InfoSecMania is a comprehensive directory of cybersecurity tools and resources designed to help security professionals find the right tools for their needs.

You can submit a tool by clicking on the 'Submit Tool' link in the navigation menu and filling out the submission form with details about your tool.

Feel free to connect with us on LinkedIn, Discord, or just write to us at [email protected].

Tools are categorized based on their primary function, such as penetration testing, vulnerability assessment, network security, etc. Many tools may appear in multiple categories if they serve multiple purposes.

We only list tools and resources from publicly available, reputable sources — most of which are open-source and widely used in the cybersecurity community. However, always review and test tools in a safe, legal environment, like your lab or VM.

We actively monitor public repositories, GitHub, and community forums to keep our tool listings fresh. Many tools are auto-sourced from open-source feeds and security communities.