Continuous attack surface discovery and tracking, 50+ vulnerability detectors across web, API, and mobile, scheduled alerting, triage, and CI/CD integration.




Continuous attack surface discovery and tracking, 50+ vulnerability detectors across web, API, and mobile, scheduled alerting, triage, and CI/CD integration.




Xalgorix is an Apache-2.0 open-source autonomous AI pentester for web applications and source repositories. It runs a structured 22-phase methodology, orchestrates security tools and browser-assisted testing, then sends candidate findings to an independent verifier that attempts...




PackageFix is a free browser-based dependency security fixer. Paste your manifest file and get back a fixed version with every vulnerable package patched — ready to download in one click.



Mageni provides a free, open-source and enterprise-ready cybersecurity vulnerability management solution.



AI-powered code review and release management: security and compliance scanning, documentation generation, and observability instrumentation, from PR to production.




Konvu automates vulnerability triage. It checks exploitability conditions against your code and environment, produces evidence-backed verdicts, and pushes results back to the tools you already use.
External attack surface management and threat intelligence platform that monitors your domain for vulnerabilities, misconfigurations, and active threats.




vRx by Vicarius offers real-time and automated patching, patchless protection, and script-based remediation across apps, OS, and third-party software.



Continuous external attack surface monitoring to identify vulnerabilities before attackers do.

GFI LanGuard enables you to manage and maintain end-point protection across your network. It provides visibility into all the elements in your network, helps you assess where there may be potential vulnerabilities, and enables you to patch them.
PrivJs Safe helps secure projects by blocking the installation of vulnerable javascript packages. PrivJs Safe also provides an ESLint plugin @privjs/eslint-plugin-safe to actively detect the import of vulnerable npm packages in the projects.


Shieldome is a web vulnerability scanner and continuous security monitoring platform - OWASP Top 10, PCI DSS, GDPR, and SOC 2 checks with white-label reports, built for developers and agencies.



Continuous vulnerability scanning for external infrastructure, web apps, and repositories with network, port, and SAST scans, reporting by severity and automated workflow integration.




SecDash automatically detects security vulnerabilities in applications created with ChatGPT, Claude, and other AI tools, providing clear and actionable guidance.


At Nikto Online Scanner, we are dedicated to providing a comprehensive solution for assessing the security of web servers. Our platform offers a powerful tool that conducts extensive tests to identify potential vulnerabilities, misconfigurations, and security risks associated...

Software teams need a single view of all client projects—to identify expiring components and surface shared security vulnerabilities, before they turn into urgent work.



Local, private network scanner and security monitor for Windows — maps every device on your LAN and shows what it's exposing, entirely on your own machine.



CVEFinder is a freemium web-based security tool that scans websites to detect technologies and identify known CVE vulnerabilities affecting them. Allows to see public exploits for the CVEs, monitor websites weekly, export affected CVEs and more.




Timesys Vigiles is a Software Composition Analysis (SCA) tool that helps generate and analyze a Software Bill of Materials (SBOM) for publicly known cybersecurity vulnerabilities, particularly CVEs. Vigiles is optimized for embedded systems, and it provides a complete...



Oversecured is an online service designed to search security vulnerabilities in mobile apps. It's adapted to Android security and privacy. It can detect a lot of different attack vectors and privacy issues (starting from known arbitrary code executions, theft/overwrite of...




A powerful security scanning platform to identify, analyze, and mitigate vulnerabilities in your applications and infrastructure.

GuardRails continuously scans your GitHub & GitLab repositories to alert you of any vulnerabilities and security issues. Get started in minutes.
On-demand internet scanner. Trigger a live port and service scan of any IP, CIDR or country via REST API and get fresh results in seconds.


RankedRight is the triage tool that automatically ranks vulnerabilities based on the rules set by its user, factoring in what is critical to the business, and delegating it to the most appropriate person to resolve.

A single pane of glass for understanding and mitigating risks across your entire codebase and supply chain.
