Open Source Nessus Alternatives
The best open source alternative to Nessus is Metasploit. It's not free, so if you're looking for a free alternative, you could try OpenVAS or PhoneSploit Pro. If that doesn't suit you, our users have ranked more than 25 alternatives to Nessus and 12 is open source so hopefully you can find a suitable replacement. Other interesting open source alternatives to Nessus are skipfish, OpenSCAP, Tsunami and nuclei.
Nessus alternatives are mainly Vulnerability Scanners but may also be Penetration Testing Tools or Cloud Computing Services. Filter by these if you want a narrower list of alternatives or looking for a specific functionality of Nessus.- Free Personal • Open Source
- Penetration Testing Tool
- Vulnerability Scanner
20 Metasploit alternatives- Windows
- Linux
- BSD
Metasploit Community Edition simplifies network discovery and vulnerability verification for specific exploits, increasing the effectiveness of vulnerability scanners such as Nexpose - for free. This helps prioritize remediation and eliminate false positives, providing true...
- - Metasploit is the most popular Windows & Linux alternative to Nessus.
- - Metasploit is the most popular Open Source & free alternative to Nessus.
Metasploit Features
Opinions about Metasploit as a Alternative to Nessus
- 23 OpenVAS alternatives
- Free • Open Source
- Vulnerability Scanner
- Linux
The Open Vulnerability Assessment System (OpenVAS) is a framework of several services and tools offering a comprehensive and powerful vulnerability scanning and vulnerability management solution.
OpenVAS Features
Opinions about OpenVAS as a Alternative to Nessus
- 19 PhoneSploit Pro alternatives
- Free • Open Source
- Penetration Testing Tool
- Mac
- Windows
- Linux
An all-in-one hacking tool written in Python to remotely exploit Android devices using ADB (Android Debug Bridge) and Metasploit-Framework.
- - PhoneSploit Pro is the most popular Mac alternative to Nessus.
PhoneSploit Pro Features
A fully automated, active web application security reconnaissance tool. Key features: High speed: pure C code, highly optimized HTTP handling, minimal CPU footprint - easily achieving 2000 requests per second with responsive targets.
skipfish Features
DiscontinuedSkipfish is no longer maintained. Last version, 2.10 beta, released in December 2012, can be still downloaded from Google Code Archive
- 13 OpenSCAP alternatives
- Free • Open Source
- Vulnerability Scanner
- Linux
SCAP is a line of standards managed by NIST. It was created to provide a standardized approach to maintaining the security of enterprise systems, such as automatically verifying the presence of patches, checking system security configuration settings, and examining systems for...
- 18 Tsunami alternatives
- Free • Open Source
- Vulnerability Scanner
- Self-Hosted
Tsunami is a general purpose network security scanner with an extensible plugin system for detecting high severity vulnerabilities with high confidence.
Tsunami Features
- 18 nuclei alternatives
- Free • Open Source
- Vulnerability Scanner
- Mac
- Windows
- Linux
Nuclei is used to send requests across targets based on a template, leading to zero false positives and providing fast scanning on a large number of hosts. Nuclei offers scanning for a variety of protocols, including TCP, DNS, HTTP, SSL, File, Whois, Websocket, Headless etc.
nuclei Features
RedEye is an open-source analytic tool developed by CISA and DOE’s Pacific Northwest National Laboratory to assist Red Teams with visualizing and reporting command and control activities. This tool, released in October 2022 on GitHub, allows an operator to assess and display...
RedEye Features
- 14 BabySploit alternatives
- Free • Open Source
- Penetration Testing Tool
- Self-Hosted
- Python
BabySploit is a penetration testing toolkit aimed at making it easy to learn how to use bigger, more complicated frameworks like Metasploit. With a very easy to use UI and toolkit, anybody from any experience level will find...
- 2 Strobes alternatives
- Freemium • Open Source
- Vulnerability Scanner
- Software as a Service (SaaS)
Strobes is a one-stop-shop solution for all security stakeholders to ensure that their enterprise is well guarded against security issues and cyber attacks. Right from viewing all the security threats for every asset in the dashboard to supporting integrations with leading...
Strobes Features
kube-hunter hunts for security weaknesses in Kubernetes clusters. The tool was developed to increase awareness and visibility for security issues in Kubernetes environments. You should NOT run kube-hunter on a Kubernetes cluster that you don't own!
- 6 WoTT alternatives
- Freemium • Open Source
- Linux
- Online
- Software as a Service (SaaS)
Improve your authentication security for your linux servers with mutual TLS (mTLS). WoTT automatically rotates private keys with our public key infrastructure (PKI) and lets you seamlessly and easily manage certificates at scale.