Nessus AlternativesOnly Free apps categorised as Vulnerability Scanners

The best free Vulnerability Scanner alternative to Nessus is SiteOne Crawler, which is also Open Source. If that doesn't suit you, our users have ranked more than 50 alternatives to Nessus and many of them are free Vulnerability Scanners so hopefully you can find a suitable replacement. Other interesting free Vulnerability Scanner alternatives to Nessus are Metasploit, OpenVAS, PhoneSploit Pro and CVEFinder.

Copy a direct link to this comment to your clipboard
Nessus alternatives page was last updated

Alternatives list

  1. SiteOne Crawler icon
     22 likes

    A free in-depth website analyzer providing audits of security, performance, SEO, accessibility and other technical aspects. Available as a desktop application for Windows/macOS/Linux and as a CLI tool for advanced users and CI/CD processes. It also includes an offline web page exporter.

    36 SiteOne Crawler alternatives

    Cost / License

    • Free
    • Open Source (MIT)

    Application types

    Platforms

    • Mac
    • Windows
    • Linux
     
  2. Metasploit icon
     47 likes

    Metasploit Community Edition simplifies network discovery and vulnerability verification for specific exploits, increasing the effectiveness of vulnerability scanners such as Nexpose - for free. This helps prioritize remediation and eliminate false positives, providing true...

    23 Metasploit alternatives

    Cost / License

    • Free Personal
    • Open Source

    Platforms

    • Windows
    • Linux
    • BSD
     
  3. OpenVAS icon
     24 likes

    The Open Vulnerability Assessment System (OpenVAS) is a framework of several services and tools offering a comprehensive and powerful vulnerability scanning and vulnerability management solution.

    34 OpenVAS alternatives

    Cost / License

    • Freemium
    • Open Source

    Application type

    Platforms

    • Linux
     
  4. CVEFinder icon
     Like

    CVEFinder is a freemium web-based security tool that scans websites to detect technologies and identify known CVE vulnerabilities affecting them. Allows to see public exploits for the CVEs, monitor websites weekly, export affected CVEs and more.

    Cost / License

    • Freemium
    • Proprietary

    Application type

    Platforms

    • Online
     
  5. OpenSCAP icon
     4 likes

    SCAP is a line of standards managed by NIST. It was created to provide a standardized approach to maintaining the security of enterprise systems, such as automatically verifying the presence of patches, checking system security configuration settings, and examining systems for...

    Cost / License

    • Free
    • Open Source

    Application type

    Platforms

    • Linux
     
  6. nuclei icon
     2 likes

    Nuclei is used to send requests across targets based on a template, leading to zero false positives and providing fast scanning on a large number of hosts. Nuclei offers scanning for a variety of protocols, including TCP, DNS, HTTP, SSL, File, Whois, Websocket, Headless etc.

    26 nuclei alternatives

    Cost / License

    • Free
    • Open Source (MIT)

    Application type

    Platforms

    • Mac
    • Windows
    • Linux
     
  7. Whitespots icon
     3 likes

    📈 Measure and control your application security state; 🔎 Scan your code, containers, web and mobile applications; 🔥 Remove duplicates, validate results, and create Jira tasks in seconds; 🕜 Save your engineers time and automate your processes; ? Self-hosted.

    Cost / License

    • Freemium
    • Proprietary

    Application type

    Platforms

    • Self-Hosted
     
  8. Probely icon
     16 likes

    Probely is a top-tier cloud-based DAST Scanner designed for DevOps, empowering Security and Development teams to work together to secure their web applications and APIs.

    Cost / License

    • Freemium
    • Proprietary

    Platforms

    • Online
     
  9. skipfish icon
     13 likes

    A fully automated, active web application security reconnaissance tool. Key features: High speed: pure C code, highly optimized HTTP handling, minimal CPU footprint - easily achieving 2000 requests per second with responsive targets.

    Cost / License

    • Free
    • Open Source

    Application type

    Alerts

    • Discontinued

    Platforms

    • Mac
    • Windows
    • Linux
    • BSD
     
  10. We facilitate quick discovery and reporting of vulnerabilities in websites and network infrastructures, providing a set of powerful and tightly integrated pentesting tools that enable you to perform easier, faster, and more effective pentests.

    32 Pentest-Tools.com alternatives

    Cost / License

    • Freemium
    • Proprietary

    Platforms

    • Online
    • Software as a Service (SaaS)
     
  11. Take care of your company's reputation and the trust of your customers. Scanning your environment 24 hours a day allows you to stay ahead of cyberattackers and avoid financial losses due to a data breach.

    Cost / License

    • Freemium
    • Proprietary

    Application type

    Platforms

    • Online
    • Software as a Service (SaaS)
     
12 of 23 Nessus alternatives