☣️Top 21 Web Application Hacking Tools☣️

  • Thread starter ObsidianOmen
  • Start date
  • Tagged users None
ObsidianOmen

ObsidianOmen

Golden Member
Joined
October 6, 2025
Messages
98
Reaction score
1,128
Points
83
  • Thread Author
  • #1
1. Burp Suite - Framework.

2. ZAP Proxy - Framework.

3. Dirsearch - HTTP bruteforcing.

4. Nmap - Port scanning.

5. Sublist3r - Subdomain discovery.

6. Amass - Subdomain discovery.

7. SQLmap - SQLi exploitation.

8. Metasploit - Framework.

9. WPscan - WordPress exploitation.

10. Nikto - Webserver scanning.

11. HTTPX - HTTP probing.

12. Nuclei - YAML based template scanning.

13. FFUF - HTTP probing.

14. Subfinder - Subdomain discovery.

15. Masscan - Mass IP and port scanner.

16. Lazy Recon - Subdomain discovery.

17. XSS Hunter - Blind XSS discovery.

18. Aquatone - HTTP based recon.

19. LinkFinder - Endpoint discovery
through JS files.

20. JS-Scan - Endpoint discovery through JS files.

21. GAU - Historical attack surface mapping.
 
  • Tags
    1986 21 application cybersecurity hacking hacking tools tools top web web application web application security
  • Top