Less Googling, More Hacking!

303 InfoSec Tools in Our Directory

303 Tools in InfoSec Tools

vulnx

vulnx

by anouarbensaad

vulnx 🕷️ an intelligent Bot, Shell can achieve automatic injection, and help researchers detect security vulnerabilities CMS system. It can perform a quick CMS security detection, information collection (including sub-domain name, ip address, country information, organizational information and time zone, etc.) and vulnerability scanning.

auto-exploiter bot cloudflare-detection
1939
View Details
Awesome-SOC

Awesome-SOC

by SOC-Community

A collection of sources of documentation and best practices to build and run a SOC

security tool
55
View Details
GraphQLmap

GraphQLmap

by swisskyrepo

GraphQLmap is a scripting engine to interact with a graphql endpoint for pentesting purposes. - Do not use for illegal testing ;)

capture-the-flag ctf fuzz
1492
View Details
XSRFProbe

XSRFProbe

by 0xInfection

The Prime Cross Site Request Forgery (CSRF) Audit and Exploitation Toolkit.

audit crafted-tokens crawler
1212
View Details
Injectus

Injectus

by dubs3c

CRLF and open redirect fuzzer

crlf-injection open-redirect-injection python
111
View Details
Corsy

Corsy

by s0md3v

CORS Misconfiguration Scanner

cors cors-misconfiguration-scanner cors-scanner
1424
View Details
fav-up

fav-up

by pielco11

IP lookup by favicon using Shodan

cloudflare cloudflare-bypass favicon-icon
1164
View Details
crlfuzz

crlfuzz

by dwisiswant0

A fast tool to scan CRLF vulnerability written in Go

crlf-injection go golang
1429
View Details
gauplus

gauplus

by bp0lr

Gau Plus

security tool
293
View Details
unimap

unimap

by Edu4rdSHL

Scan only once by IP address and reduce scan times with Nmap for large amounts of data.

ip-scan nmap open-ports
388
View Details
gotator

gotator

by Josue87

Gotator is a tool to generate DNS wordlists through permutations.

bug-bounty bugbounty reconnaissance
478
View Details
puredns

puredns

by d3mondev

Puredns is a fast domain resolver and subdomain bruteforcing tool that can accurately filter out wildcard subdomains and DNS poisoned entries.

bugbounty dns dns-bruteforcer
1871
View Details
github-subdomains

github-subdomains

by gwen001

Find subdomains on GitHub.

bugbounty github go
726
View Details
hostintel

hostintel

by keithjjones

A modular Python application to collect intelligence for malicious hosts.

cybersecurity investigation
268
View Details
pharos

pharos

by cmu-sei

Automated static analysis tools for binary programs

binary-analysis reverse-engineering
1601
View Details

Frequently Asked Questions about InfosecMania

Learn more about Cybersecurity Tools and how they can enhance your security posture

InfoSecMania is a comprehensive directory of cybersecurity tools and resources designed to help security professionals find the right tools for their needs.

You can submit a tool by clicking on the 'Submit Tool' link in the navigation menu and filling out the submission form with details about your tool.

No, InfoSecMania includes both free and commercial tools. Each tool listing indicates whether it's free, paid, or offers a freemium model.

Tools are categorized based on their primary function, such as penetration testing, vulnerability assessment, network security, etc. Many tools may appear in multiple categories if they serve multiple purposes.

We only list tools and resources from publicly available, reputable sources — most of which are open-source and widely used in the cybersecurity community. However, always review and test tools in a safe, legal environment, like your lab or VM.

We actively monitor public repositories, GitHub, and community forums to keep our tool listings fresh. Many tools are auto-sourced from open-source feeds and security communities.