CanIPhish is a platform for simulated phishing and security awareness training, offering realistic simulations and integrated eLearning.
CyberChef is a web app for encryption, encoding, compression, and data analysis, offering a wide range of operations in a drag-and-drop interface.
Dalfox is a powerful open-source XSS scanner and utility focused on automation, designed for detecting and verifying XSS vulnerabilities.
Dradis Pro streamlines pentesting with collaboration, automation, and consistent reporting, trusted by security teams worldwide.
EC-Council offers cybersecurity courses online, providing industry-recognized certifications and training for career advancement.
Feroxbuster is a fast, simple, recursive content discovery tool written in Rust, designed for forced browsing.
Ghauri is a cross-platform tool for detecting and exploiting SQL injection flaws, automating the process for security professionals.
Gobuster is a tool to brute-force URIs, DNS subdomains, and virtual hostnames, aiding in web application reconnaissance.
Intelligence X is a search engine and data archive for searching Tor, I2P, data leaks, and the public web by email, domain, IP, and more.
Interactsh is a tool and service for capturing and handling out-of-band interactions during security testing.
JWT Debugger is a web application to create, encode, decode, and debug JWT (JSON Web Tokens).
John the Ripper jumbo is an advanced password cracker supporting hundreds of hash types and running on various platforms.