Software Alternatives & Reviews

OWASP Amass VS w3af

Compare OWASP Amass VS w3af and see what are their differences

OWASP Amass logo OWASP Amass

An advanced open source tool to help information security professionals perform network mapping of attack surfaces and external asset discovery using open source information gathering and active reconnaissance techniques!

w3af logo w3af

w3af is a Web Application Attack and Audit Framework
  • OWASP Amass Landing page
    Landing page //
    2021-08-14
  • w3af Landing page
    Landing page //
    2018-09-29

OWASP Amass videos

LevelUp 0x04 - OWASP Amass – Discovering Internet Exposure

More videos:

  • Review - Jeff Foley - Advanced Recon with OWASP Amass video - DEF CON 27 Recon Village
  • Review - OWASP Amass Red Team Village Training - by Jeff Foley (Cafffix)

w3af videos

How to use the w3af website scanner in kali Linux

More videos:

  • Tutorial - What is W3af? | How to install Web Application Attack & Audit Framework?
  • Tutorial - W3AF Tutorial Part II using the GUI

Category Popularity

0-100% (relative to OWASP Amass and w3af)
Cyber Security
65 65%
35% 35
Monitoring Tools
27 27%
73% 73
Security
30 30%
70% 70
Web Application Security
26 26%
74% 74

User comments

Share your experience with using OWASP Amass and w3af. For example, how are they different and which one is better?
Log in or Post with

Social recommendations and mentions

Based on our record, w3af seems to be more popular. It has been mentiond 1 time since March 2021. We are tracking product recommendations and mentions on various public social media platforms and blogs. They can help you identify which product is more popular and what people think of it.

OWASP Amass mentions (0)

We have not tracked any mentions of OWASP Amass yet. Tracking of OWASP Amass recommendations started around Mar 2021.

w3af mentions (1)

  • 3 reasons why any website's security is important
    Testing security of your website is easy. There are dozen of web security testing tools out there you can use for free. Arachni and w3af are famous open source security scanners you can use. - Source: dev.to / over 1 year ago

What are some alternatives?

When comparing OWASP Amass and w3af, you can also consider the following products

Sublist3r - Sublist3r is a python tool designed to enumerate subdomains of websites using OSINT.

Nikto - Nikto is an Open Source (GPL) web server scanner which performs comprehensive tests against web...

SpiderFoot - Open source intelligence (OSINT) automation tool.

Burp Suite - Burp Suite is an integrated platform for performing security testing of web applications.

sn0int - sn0int is a semi-automatic OSINT framework and package manager

Acunetix - Audit your website security and web applications for SQL injection, Cross site scripting and other...