Best Penetration Testing Tools - Page 3

How Many Penetration Testing Tools Products Does G2 Track?

Total Products under this Category: 172

Category Stats (Sep 2026)

  • Average Rating: 4.64/5 The average rating of products in this category, based on all submitted ratings
  • Top Trending Product: Black Duck Polaris Platform (+2.92%) - Among all products in this category, Black Duck Polaris Platform recorded the largest rating increase compared to last month

Last updated: September 26, 2026

How Does G2 Rank Penetration Testing Tools Products?

Why You Can Trust G2's Software Rankings:

  • 30 Analysts and Data Experts
  • 3,800+ Authentic Reviews
  • 172+ Products
  • Unbiased Rankings

G2's software rankings are built on verified user reviews, rigorous moderation, and a consistent research methodology maintained by a team of analysts and data experts. Each product is measured using the same transparent criteria, with no paid placement or vendor influence. While reviews reflect real user experiences, which can be subjective, they offer valuable insight into how software performs in the hands of professionals. Together, these inputs power the G2 Score, a standardized way to compare tools within every category.

G2 Grid® for Penetration Testing Tools

G2 Grid® for Penetration Testing Tools plotting products by satisfaction and market presence

Highlighted products: vPenTest, Cobalt, Astra Pentest, Oneleet, Pentera, NodeZero from Horizon3.ai, H1 Platform, and Bugcrowd.

Underlying data: [Grid® JSON](https://www.g2.com/categories/penetration-testing-tools/grids.json?focus%5B%5D=vpentest&focus%5B%5D=cobalt-io-cobalt&focus%5B%5D=astra-pentest&focus%5B%5D=oneleet&focus%5B%5D=pentera&focus%5B%5D=nodezero-from-horizon3-ai&focus%5B%5D=h1-platform&focus%5B%5D=bugcrowd)

APPCHECK

AppCheck is a Dynamic Application Security Testing (DAST) and network vulnerability testing solution, developed and supported by experienced penetration testers. We approach security testing as a hacker would, leveraging multiple proprietary crawling engines to analyse target behaviour across both modern and traditional technologies, including Single Page Applications (SPAs), APIs, and complex authentication flows such as SSO, 2FA, and TOTP. Organisations can conduct unlimited security assessments across Web Applications, SPAs, APIs, cloud services, networks, across internal or external assets. Supporting production and UAT testing, AppCheck also helps organisations ‘shift left’ by integrating with CI/CD pipelines and build servers, including ADO, GitHub, Jenkins, TeamCity, CircleCI, TravisCI, Bamboo, and GitLab CI/CD. Allowing automated security testing throughout development, identifying risks as soon as changes are introduced. AppCheck are proud to be part of the CVE Numbering Authority (CNA), contributing to global security research

Average Rating: 4.7/5.0

Total Reviews: 68

How Do G2 Users Rate APPCHECK?

  • Has the product been a good partner in doing business?: 9.5/10 (Category avg: 9.4/10)
  • Performance and Reliability: 9.3/10 (Category avg: 9.2/10)
  • Vulnerability Scan: 9.5/10 (Category avg: 9.2/10)
  • Extensibility: 8.3/10 (Category avg: 8.8/10)

Who Is the Company Behind APPCHECK?

  • Seller: APPCHECK
  • Company Website:
  • Year Founded: 2014
  • HQ Location: Leeds, GB
  • Twitter: @AppcheckNG
    649 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    104 employees on LinkedIn®

Who Uses This Product?

  • Top Industries: Computer Software, Information Technology and Services
  • Company Size: 49% Medium, 31% Small

What Do G2 Reviewers Say About APPCHECK?

AI-generated summary from verified user reviews

Pros
  • Users appreciate the ease of use of AppCheck, making complex processes straightforward and efficient.
  • Users commend AppCheck for its exceptional vulnerability detection, providing thorough coverage and easy integration into workflows.
  • Users value the excellent pricing and functionality of AppCheck, praising its usability and proactive support from the team.
  • Users commend AppCheck for its efficiency in pentesting, notably for thorough vulnerability coverage and seamless integration.
  • Users love the scanning efficiency of AppCheck, finding it reliable and easy to integrate within development workflows.
Cons
  • Users suggest that UX improvements in scoring, customization, and integrations could enhance the AppCheck experience.
  • Users find the API issues frustrating, as endpoint changes require a service request and delays functionality.
  • Users find difficult customization in AppCheck's reporting features, needing more flexibility for contextual adjustments.
  • Users experience a notable difficult learning curve with Appcheck, which may hinder initial ease of use.
  • Users find the false positives in scan results problematic, necessitating manual validation and complicating the reporting process.

What Are Recent G2 Reviews of APPCHECK?

Penetrify.cloud

Autonomous AI penetration testing

Average Rating: 5.0/5.0

Total Reviews: 11

How Do G2 Users Rate Penetrify.cloud?

  • Performance and Reliability: 10.0/10 (Category avg: 9.2/10)
  • Vulnerability Scan: 10.0/10 (Category avg: 9.2/10)
  • Extensibility: 10.0/10 (Category avg: 8.8/10)

Who Is the Company Behind Penetrify.cloud?

Who Uses This Product?

  • Company Size: 45% Large, 36% Medium

What Are Recent G2 Reviews of Penetrify.cloud?

Black Duck Polaris Platform

Black Duck builds trust in software by enabling organizations to manage application security, quality, and compliance risks at the speed their business demands. Black Duck solutions help developers to secure code as fast as they write it, development and DevSecOps teams to automate testing within development pipelines without compromising velocity, and security teams to proactively manage risk and focus remediation efforts on what matters most. With Black Duck, organizations can transform the way they build and deliver software, aligning people, processes, and technology to intelligently address software risks across their portfolio and at all stages of the application lifecycle.

Average Rating: 4.2/5.0

Total Reviews: 103

How Do G2 Users Rate Black Duck Polaris Platform?

  • Has the product been a good partner in doing business?: 8.4/10 (Category avg: 9.4/10)
  • Performance and Reliability: 6.1/10 (Category avg: 9.2/10)
  • Vulnerability Scan: 8.3/10 (Category avg: 9.2/10)
  • Extensibility: 8.9/10 (Category avg: 8.8/10)

Who Is the Company Behind Black Duck Polaris Platform?

  • Seller: Black Duck
  • Year Founded: 2024
  • HQ Location: Burlington, US
  • LinkedIn® Page: www.linkedin.com
    1,317 employees on LinkedIn®

Who Uses This Product?

  • Top Industries: Computer Software, Information Technology and Services
  • Company Size: 53% Large, 32% Medium

What Do G2 Reviewers Say About Black Duck Polaris Platform?

AI-generated summary from verified user reviews

Pros
  • Users praise the accuracy of findings from Black Duck SCA, highlighting its powerful engine and extensive knowledge base.
  • Users value the powerful identification of open source issues by Black Duck SCA, aided by extensive knowledge resources.
Cons
  • Users find that Black Duck SCA requires huge resources to deploy on-prem, which can be a significant drawback.

What Are Recent G2 Reviews of Black Duck Polaris Platform?

What Are G2 Users Discussing About Black Duck Polaris Platform?

Pynt - API Security Testing

Pynt is an innovative API Security Testing platform exposing verified API threats through simulated attacks. Hundreds of companies rely on Pynt to continuously monitor, classify and attack poorly secured APIs, before hackers do.

Average Rating: 4.8/5.0

Total Reviews: 44

How Do G2 Users Rate Pynt - API Security Testing?

  • Has the product been a good partner in doing business?: 9.2/10 (Category avg: 9.4/10)
  • Performance and Reliability: 9.1/10 (Category avg: 9.2/10)
  • Vulnerability Scan: 9.2/10 (Category avg: 9.2/10)
  • Extensibility: 8.8/10 (Category avg: 8.8/10)

Who Is the Company Behind Pynt - API Security Testing?

  • Seller: Pynt
  • Year Founded: 2022
  • HQ Location: Tel Aviv, IL
  • Twitter: @pynt_io
    361 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    13 employees on LinkedIn®

Who Uses This Product?

  • Top Industries: Computer Software, Computer & Network Security
  • Company Size: 57% Small, 23% Large

What Do G2 Reviewers Say About Pynt - API Security Testing?

AI-generated summary from verified user reviews

Pros
  • Users value the flawless execution of vulnerability detection in Pynt, making security tests effortless and efficient.
  • Users value Pynt for its impressive security capabilities, quickly identifying and addressing critical vulnerabilities in API testing.
  • Users value the seamless integration of Pynt for API security, simplifying the process of securing APIs during development.
  • Users love Pynt for its easy integrations, streamlining API security testing with minimal effort and maximum efficiency.
  • Users appreciate the automation of API security testing with Pynt, enhancing efficiency and integrating seamlessly into workflows.
Cons
  • Users often find the complex setup challenging initially, impacting the integration experience with Pynt.
  • Users find the setup complexity challenging, especially for beginners, leading to potential conflicts and a less user-friendly experience.
  • Users find Pynt's limited features lacking, particularly in reporting and dashboard capabilities for managing multiple APIs.
  • Users find the poor interface design of Pynt frustrating, suggesting it needs significant improvements for better usability.
  • Users find the user interface needs significant improvement, which affects their overall experience with Pynt.

What Are Recent G2 Reviews of Pynt - API Security Testing?

Breachlock

BreachLock is the only offensive security provider combining continuous ASM, autonomous pentesting, CREST-certified penetration testing, and closed-loop remediation in a single workflow within the BreachLock Unified Platform. The platform brings together three core capabilities: • BreachLock PTaaS (Penetration Testing as a Service), which pairs certified human pentesters with AI acceleration for deep, expert-led testing. • Breach360, an autonomous penetration testing solution powered by agentic AI that discovers real attack paths, chains exploits, and proves what's exploitable with documented evidence so teams can continuously understand and remediate what matters most. • BreachLock ASM (Attack Surface Management), which discovers and prioritizes attack surface exposures in real time. Together, they offer continuous security validation for applications, networks, APIs, cloud, IoT, and LLMs. BreachLock is globally CREST-accredited with 100% in-house certified pentesters (CREST, OSCP, OSCE, CISSP) across the U.S., U.K., E.U., and Asia, and delivers audit-ready reports aligned to SOC 2, PCI DSS, ISO 27001, HIPAA, and GDPR

Average Rating: 4.6/5.0

Total Reviews: 38

How Do G2 Users Rate Breachlock?

  • Has the product been a good partner in doing business?: 9.5/10 (Category avg: 9.4/10)
  • Performance and Reliability: 8.7/10 (Category avg: 9.2/10)
  • Vulnerability Scan: 8.9/10 (Category avg: 9.2/10)
  • Extensibility: 7.6/10 (Category avg: 8.8/10)

Who Is the Company Behind Breachlock?

  • Seller: Breachlock
  • Company Website:
  • Year Founded: 2019
  • HQ Location: New York, NY
  • Twitter: @BreachLock
    274 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    137 employees on LinkedIn®

Who Uses This Product?

  • Top Industries: Computer Software, Information Technology and Services
  • Company Size: 53% Small, 39% Medium

What Do G2 Reviewers Say About Breachlock?

AI-generated summary from verified user reviews

Pros
  • Users appreciate the excellent customer support of Breachlock, noting quick responses and helpful communication throughout the process.
  • Users appreciate the excellent communication from Breachlock, making the compliance process easy and efficient.
  • Users appreciate the ease of use of Breachlock, making compliance and security management straightforward and efficient.
  • Users appreciate the detailed vulnerability detection from Breachlock, aiding in proactive security and effective risk reduction.
  • Users commend Breachlock for its efficient and thorough pentesting, making compliance easy and communication seamless.
Cons
  • Users experience frequent false positives in Breachlock, necessitating manual correction and complicating the vulnerability tracking process.
  • Users find the poor interface design frustrating, complicating tracking of vulnerabilities and increasing manual corrections needed.
  • Users find Breachlock expensive, with high prices persisting despite discounts and varying costs among different companies.
  • Users note that inadequate reporting affects presentation quality, suggesting improvements for executive-level credibility.
  • Users find the lack of detail in Breachlock's reports complicates their ability to resolve vulnerabilities effectively.

What Are Recent G2 Reviews of Breachlock?

StackHawk

StackHawk is reimagining AppSec for AI-driven development, where applications are built faster than traditional AppSec tools can keep up. Our AppSec Intelligence Platform combines scalable runtime testing with complete attack surface discovery from source code. We integrate directly into development workflows and provide context-aware remediations to developers, enabling teams to find and fix exploitable vulnerabilities before they reach production. With real-time visibility and centralized program intelligence, AppSec teams can prioritize testing and fixing what matters. Companies like British Airways, ITV, and Norstella trust StackHawk to evaluate application risk, prove program value, and scale testing coverage to match development velocity.

Average Rating: 4.6/5.0

Total Reviews: 67

How Do G2 Users Rate StackHawk?

  • Has the product been a good partner in doing business?: 9.1/10 (Category avg: 9.4/10)
  • Performance and Reliability: 9.2/10 (Category avg: 9.2/10)
  • Vulnerability Scan: 9.3/10 (Category avg: 9.2/10)
  • Extensibility: 9.2/10 (Category avg: 8.8/10)

Who Is the Company Behind StackHawk?

  • Seller: StackHawk
  • Year Founded: 2019
  • HQ Location: Denver, CO
  • Twitter: @StackHawk
    1,137 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    28 employees on LinkedIn®

Who Uses This Product?

  • Top Industries: Information Technology and Services, Computer Software
  • Company Size: 46% Small, 35% Medium

What Do G2 Reviewers Say About StackHawk?

AI-generated summary from verified user reviews

Pros
  • Users value the easy integrations of StackHawk, facilitating seamless setups with major CI tools and configurations.
  • Users praise the excellent customer support from StackHawk, highlighting their responsiveness and helpfulness in addressing queries.
  • Users value the customizability of StackHawk, appreciating its flexibility and integration options for unique workflows.
  • Users find that StackHawk greatly enhances efficiency, enabling quicker identification and resolution of security vulnerabilities.
  • Users commend StackHawk for its scanning efficiency, enabling quick identification of vulnerabilities and seamless CI/CD integration.
Cons
  • Users find the complex setup challenging, particularly with the YAML configurations and onboarding processes for applications.
  • Users find the high learning curve of StackHawk challenging due to its complex scripting and setup process.
  • Users find StackHawk lacking features, specifically in API management and vulnerability reproducibility, hindering its usability.
  • Users find the limited scope of StackHawk restricts functionality and automation in vulnerability management.
  • Users find the setup complexity of StackHawk frustrating due to YAML configuration and onboarding challenges.

What Are Recent G2 Reviews of StackHawk?

What Are G2 Users Discussing About StackHawk?

Beagle Security

Beagle Security helps you identify vulnerabilities in your web applications, APIs, GraphQL and remediate them with actionable insights before hackers harm you in any manner. With Beagle Security, you can integrate automated penetration testing into your CI/CD pipeline to identify security issues earlier in your development lifecycle and ship safer web applications. Major features: - Checks your web apps & APIs for 3000+ test cases to find security loopholes - OWASP & SANS standards - Recommendations to address security issues - Security test complex web apps with login - Compliance reports (GDPR, HIPAA & PCI DSS) - Test scheduling - DevSecOps integrations - API integration - Team access - Integrations with popular tools like Slack, Jira, Asana, Trello & 100+ other tools

Average Rating: 4.7/5.0

Total Reviews: 85

How Do G2 Users Rate Beagle Security?

  • Has the product been a good partner in doing business?: 9.5/10 (Category avg: 9.4/10)
  • Performance and Reliability: 9.0/10 (Category avg: 9.2/10)
  • Vulnerability Scan: 9.7/10 (Category avg: 9.2/10)
  • Extensibility: 6.7/10 (Category avg: 8.8/10)

Who Is the Company Behind Beagle Security?

  • Seller: Beagle Security
  • Year Founded: 2020
  • HQ Location: San Francisco, US
  • Twitter: @beaglesecure
    206 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    55 employees on LinkedIn®

Who Uses This Product?

  • Who Uses This: CEO, Director
  • Top Industries: Marketing and Advertising, Information Technology and Services
  • Company Size: 91% Small, 7% Medium

What Do G2 Reviewers Say About Beagle Security?

AI-generated summary from verified user reviews

Pros
  • Users commend the attractive reporting of Beagle Security, finding it easy to configure and comprehensive.
  • Users appreciate the easy setup of Beagle Security, finding it efficient for quick and effective implementation.

What Are Recent G2 Reviews of Beagle Security?

What Are G2 Users Discussing About Beagle Security?

Qodex.ai

Qodex is a continuous testing platform built for teams shipping software at AI speed. It runs real tests across APIs, browser UIs, and security workflows, and reviews pull requests with execution evidence instead of model guesses. Teams can create reusable HTTP and Playwright scenarios from plain-language briefs, OpenAPI or Swagger specifications, Postman collections, spreadsheets, and existing tests. Scenarios can run on demand, on schedules, in CI/CD, through webhooks, and on pull requests. Findings include failing requests and responses, browser screenshots, and the context needed to distinguish a product defect from a stale test or environment issue. Qodex helps engineering teams catch breaking changes earlier while keeping tests readable, editable, and owned by the team.

Average Rating: 4.9/5.0

Total Reviews: 60

How Do G2 Users Rate Qodex.ai?

  • Has the product been a good partner in doing business?: 9.4/10 (Category avg: 9.4/10)

Who Is the Company Behind Qodex.ai?

  • Seller: QodexAI
  • Company Website:
  • Year Founded: 2023
  • HQ Location: San Francisco, California
  • LinkedIn® Page: linkedin.com
    13 employees on LinkedIn®

Who Uses This Product?

  • Top Industries: Computer Software, Information Technology and Services
  • Company Size: 75% Small, 20% Medium

What Do G2 Reviewers Say About Qodex.ai?

AI-generated summary from verified user reviews

Pros
  • Users highlight the ease of use of Qodex.ai, enabling quick learning and efficient API testing for all skill levels.
  • Users appreciate the automation of testing in Qodex.ai, greatly reducing testing time and enhancing reliability.
  • Users value the easy interface for writing test cases, streamlining the testing process and enhancing efficiency.
  • Users appreciate the testing efficiency of Qodex.ai, streamlining the testing process and reducing shipment time significantly.
  • Users appreciate the effortless automation of Qodex.ai, which streamlines API testing and enhances team productivity.
Cons
  • Users note that the slow loading of the UI can hinder their experience and requires improvement.
  • Users find the poor documentation hampers their ability to fully utilize Qodex.ai's advanced features effectively.
  • Users report slow performance with Qodex.ai, noting delays in UI loading and chatbot response times.
  • Users report bug issues including repeated test cases, and suggest improvements in bug classification and accuracy.
  • Users report bugs related to test cases and suggest improvements for prioritizing and flagging issues effectively.

What Are Recent G2 Reviews of Qodex.ai?

Detectify

Detectify sets a new standard for advanced application security testing, challenging traditional DAST by providing evolving coverage of each and every exposed asset across the changing attack surface. AppSec teams trust Detectify to expose how attackers will exploit their Internet-facing applications. The Detectify platform automates continuous real-world, payload-based attacks fuelled by its global community of elite ethical hackers into its own expert-built engines, exposing critical weaknesses before it's too late. The Detectify solution includes: - Automated discovery of known and unknown digital assets via domain & cloud connectors - Continuous coverage (24/7) of every corner of the attack surface with dynamic testing. Not just predefined targets - 100% payload-based testing fuelled by elite ethical hackers for a high signal-to-noise ratio - Distributed coverage across an unmatched array of relevant technologies - Actionable remediation tips for software development teams - Team functionality to easily share reports - Powerful integrations platform to prioritize and triage vulnerability findings onward to development teams -Advanced API functionality -Capabilities to set custom attack surface security policies

Average Rating: 4.5/5.0

Total Reviews: 49

How Do G2 Users Rate Detectify?

  • Has the product been a good partner in doing business?: 9.7/10 (Category avg: 9.4/10)
  • Performance and Reliability: 9.5/10 (Category avg: 9.2/10)
  • Vulnerability Scan: 9.3/10 (Category avg: 9.2/10)
  • Extensibility: 7.2/10 (Category avg: 8.8/10)

Who Is the Company Behind Detectify?

  • Seller: Detectify
  • Year Founded: 2013
  • HQ Location: Stockholm, Sweden
  • Twitter: @detectify
    11,256 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    96 employees on LinkedIn®

Who Uses This Product?

  • Top Industries: Information Technology and Services, Computer Software
  • Company Size: 47% Small, 35% Medium

What Do G2 Reviewers Say About Detectify?

AI-generated summary from verified user reviews

Pros
  • Users praise Detectify for its automation capabilities, making security testing seamless and adaptable to existing workflows.
  • Users appreciate Detectify's automation testing capabilities, making security assessments easier and more efficient to manage.
  • Users appreciate the customizability of Detectify, enjoying its easy integration and tailored security testing options.
  • Users praise Detectify for its easy integration and comprehensive dynamic application security testing, enhancing security without complex setups.
  • Users value Detectify for its effective dynamic application security testing and seamless integration into existing workflows.
Cons
  • Users find the initial setup complex, which can create challenges in getting started with Detectify.
  • Users struggle with the complex queries in Detectify, which hinder understanding of the spidering outcomes and assessments.
  • Users find the complex setup of Detectify challenging, making initial use more difficult than expected.
  • Users find Detectify expensive when testing multiple sites, affecting its accessibility for wider use.
  • Users face inaccuracies in Detectify's spidering results, leading to uncertainty in thorough application assessments.

What Are Recent G2 Reviews of Detectify?

What Are G2 Users Discussing About Detectify?

Core Impact

Core Impact is an easy-to-use penetration testing tool with commercially developed and tested exploits that enables security teams to exploit security weaknesses, increase productivity, and improve efficiencies. With guided automation and certified exploits , this powerful penetration testing software enables you to safely test your environment using the same techniques as today's attackers. Core Impact gives you visibility into the effectiveness of your defenses and reveals where your most pressing risks exist in your environment. This enables you to assess your organization’s ability to detect, prevent, and respond to real-world, multi-staged threats against your infrastructure, applications, and people. Organizations can rely on Core Impact to measure their ability to identify attacks, track, and validate their effectiveness through a variety of approaches, including: - Demonstrating what vulnerabilities surfaced from scanners are truly exploitable, revealing how chains of exploitable vulnerabilities open paths to your organization’s mission-critical systems and assets. - Re-testing exploited systems to verify that remediation measures or compensating controls are effective and working. - Simplifying testing for new users by providing intuitive, step-by-step wizards and rapid penetration tests so they can automatically gather the information they need. - Deploying phishing campaigns for social engineering tests to discover which users are susceptible and what credentials can be harvested. Core Impact’s Key Features Include: · Guide Automation and Patented Agents · Certified Exploits · Reporting and Visibility · Programmable Self-Destruct & Error Prevention · Teaming, Automated Retesting, and Validation Core Impact is also interoperable with Vuln Scanners, like Fortra VM, and Red Team Tools such as Cobalt Strike and Outflank OST. View our product bundles https://www.coresecurity.com/products/bundles. Learn more at https://www.coresecurity.com/products/core-impact

Average Rating: 4.1/5.0

Total Reviews: 29

How Do G2 Users Rate Core Impact?

  • Has the product been a good partner in doing business?: 8.9/10 (Category avg: 9.4/10)
  • Performance and Reliability: 9.1/10 (Category avg: 9.2/10)
  • Vulnerability Scan: 9.1/10 (Category avg: 9.2/10)
  • Extensibility: 8.6/10 (Category avg: 8.8/10)

Who Is the Company Behind Core Impact?

  • Seller: Fortra
  • Company Website:
  • Year Founded: 1982
  • HQ Location: Eden Prairie, Minnesota
  • Twitter: @fortraofficial
    2,773 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    1,784 employees on LinkedIn®

Who Uses This Product?

  • Top Industries: Computer & Network Security, Information Technology and Services
  • Company Size: 37% Small, 33% Large

What Are Recent G2 Reviews of Core Impact?

What Are G2 Users Discussing About Core Impact?

OnSecurity

OnSecurity is the CREST-accredited AI-augmented penetration testing platform that unifies expert-led manual testing, continuous vulnerability management, and remediation tracking in one connected programme. Built by penetration testers for security and engineering teams, OnSecurity's Platform moves organisations beyond one-off, point-in-time pentests to an always-on offensive security programme. The platform gives teams live visibility into findings as they're discovered, free retesting and remediation workflows, and a single source of truth for vulnerability status across the business, cutting manual admin and reporting effort by 30-50% and saving security teams significant time on every test cycle. OnSecurity helps secure over 500 organisations including Gousto, Lidl, Yonder, Retail in Motion, Incident.io, L&G Group and many more...

Average Rating: 4.9/5.0

Total Reviews: 36

How Do G2 Users Rate OnSecurity?

  • Has the product been a good partner in doing business?: 9.7/10 (Category avg: 9.4/10)
  • Performance and Reliability: 10.0/10 (Category avg: 9.2/10)
  • Vulnerability Scan: 9.8/10 (Category avg: 9.2/10)
  • Extensibility: 9.3/10 (Category avg: 8.8/10)

Who Is the Company Behind OnSecurity?

  • Seller: On Security
  • Year Founded: 2018
  • HQ Location: Bristol, GB
  • Twitter: @weareonsecurity
    1,338 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    62 employees on LinkedIn®

Who Uses This Product?

  • Top Industries: Computer Software, Information Technology and Services
  • Company Size: 64% Small, 31% Medium

What Are Recent G2 Reviews of OnSecurity?

What Are G2 Users Discussing About OnSecurity?

Defendify All-In-One Cybersecurity Solution

Founded in 2017, Defendify is pioneering All-In-One Cybersecurity® for organizations with growing security needs, backed by experts offering ongoing guidance and support. Delivering multiple layers of protection, Defendify provides an all-in-one, easy-to-use platform designed to strengthen cybersecurity across people, process, and technology, continuously. With Defendify, organizations streamline cybersecurity assessments, testing, policies, training, detection, response & containment in one consolidated and cost-effective cybersecurity solution. 3 layers, 13 solutions, 1 platform, including: • Managed Detection & Response • Cyber Incident Response Plan • Cybersecurity Threat Alerts • Phishing Simulations • Cybersecurity Awareness Training • Cybersecurity Awareness Videos • Cybersecurity Awareness Posters & Graphics • Technology Acceptable Use Policy • Cybersecurity Risk Assessments • Penetration Testing • Vulnerability Scanning • Compromised Password Scanning • Website Security Scanning See Defendify in action at www.defendify.com.

Average Rating: 4.7/5.0

Total Reviews: 57

How Do G2 Users Rate Defendify All-In-One Cybersecurity Solution?

  • Has the product been a good partner in doing business?: 9.8/10 (Category avg: 9.4/10)
  • Performance and Reliability: 9.8/10 (Category avg: 9.2/10)
  • Vulnerability Scan: 9.7/10 (Category avg: 9.2/10)
  • Extensibility: 8.8/10 (Category avg: 8.8/10)

Who Is the Company Behind Defendify All-In-One Cybersecurity Solution?

  • Seller: Defendify
  • Year Founded: 2017
  • HQ Location: Portland, Maine
  • Twitter: @defendify
    305 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    36 employees on LinkedIn®

Who Uses This Product?

  • Top Industries: Information Technology and Services, Computer & Network Security
  • Company Size: 65% Small, 35% Medium

What Do G2 Reviewers Say About Defendify All-In-One Cybersecurity Solution?

AI-generated summary from verified user reviews

Pros
  • Users highlight the ease of use of Defendify, streamlining cybersecurity management for small and medium-sized businesses.
  • Users praise Defendify for its comprehensive and cost-effective cybersecurity features, streamlining management for small to medium-sized businesses.
  • Users appreciate the easy setup of Defendify, finding it quick and simple for effective cybersecurity management.
  • Users value the ease of use of Defendify, appreciating quick setup and actionable insights for cybersecurity management.
  • Users value the continuous monitoring features of Defendify, easing the burden of network security management significantly.
Cons
  • Users note that inadequate reporting hinders effective communication, calling for improvements in clarity and detail.
  • Users feel that the poor reporting features hinder effective communication and internal analysis of cybersecurity efforts.
  • Users express frustration over the lack of concise information in reports, preferring clearer and more detailed summaries.
  • Users find the limited customization options restrictive, wishing for more personalized reporting and branding capabilities.
  • Users desire custom reporting options and co-branding features to enhance the personalization of their experience.

What Are Recent G2 Reviews of Defendify All-In-One Cybersecurity Solution?

What Are G2 Users Discussing About Defendify All-In-One Cybersecurity Solution?

Appknox

Appknox is an on-demand mobile application security platform that helps businesses detect and fix security vulnerabilities using an Automated Security Testing suite. We have been successfully reducing delivery timelines, manpower costs & mitigating security threats for Global Banks and Enterprises in 10 + countries.

Average Rating: 4.4/5.0

Total Reviews: 41

How Do G2 Users Rate Appknox?

  • Has the product been a good partner in doing business?: 9.2/10 (Category avg: 9.4/10)
  • Performance and Reliability: 9.1/10 (Category avg: 9.2/10)
  • Vulnerability Scan: 8.7/10 (Category avg: 9.2/10)
  • Extensibility: 9.3/10 (Category avg: 8.8/10)

Who Is the Company Behind Appknox?

  • Seller: Appknox
  • Year Founded: 2014
  • HQ Location: Singapore, Singapore
  • Twitter: @appknox
    3,055 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    84 employees on LinkedIn®

Who Uses This Product?

  • Top Industries: Information Technology and Services, Financial Services
  • Company Size: 41% Small, 36% Medium

What Are Recent G2 Reviews of Appknox?

What Are G2 Users Discussing About Appknox?

BugBase

BugBase is a Continuous Vulnerability Assessment Platform that conducts comprehensive security operations such as bug bounty programs and next-gen pentesting (VAPT) to assist startups and enterprises in effectively identifying, managing and mitigating vulnerabilities.

Average Rating: 4.5/5.0

Total Reviews: 45

How Do G2 Users Rate BugBase?

  • Has the product been a good partner in doing business?: 9.5/10 (Category avg: 9.4/10)
  • Performance and Reliability: 8.7/10 (Category avg: 9.2/10)
  • Vulnerability Scan: 9.1/10 (Category avg: 9.2/10)
  • Extensibility: 8.2/10 (Category avg: 8.8/10)

Who Is the Company Behind BugBase?

  • Seller: BugBase
  • Year Founded: 2021
  • HQ Location: Singapore, US
  • Twitter: @BugBase
    1,673 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    43 employees on LinkedIn®

Who Uses This Product?

  • Top Industries: Computer & Network Security, Computer Software
  • Company Size: 60% Small, 21% Medium

What Do G2 Reviewers Say About BugBase?

AI-generated summary from verified user reviews

Pros
  • Users appreciate the user-friendly interface of BugBase, making it ideal for new bug bounty hunters.
  • Users appreciate the simple and user-friendly interface of BugBase, making it ideal for new bug bounty hunters.
  • Users value the enhanced cybersecurity of BugBase, benefiting from secure bounty programs and robust vulnerability detection.
  • Users value the user-friendly interface and powerful features of BugBase, enhancing security and project efficiency.
  • Users value the easy integrations of BugBase, simplifying workflows and enhancing security across various tools and technologies.
Cons
  • Users experience slow performance on BugBase, facing lagging issues and delayed support responses that hinder their productivity.
  • Users feel that BugBase is expensive and lacks competitive pricing compared to other bug bounty platforms.
  • Users find the difficult setup of BugBase challenging, particularly for those lacking technical expertise in vulnerability assessment.
  • Users face a steep learning curve with BugBase, which can hinder the experience for those new to bug bounty programs.
  • Users report poor customer support with BugBase, causing frustration and hindering their bug hunting experience.

What Are Recent G2 Reviews of BugBase?

Hackrate Ethical Hacking Platform

Hackrate Ethical Hacking Platform is a crowdsourced security testing solution designed to connect businesses with ethical hackers in order to identify and remediate security vulnerabilities. By leveraging the expertise of a diverse pool of ethical hackers, Hackrate enables organizations to enhance their cybersecurity posture efficiently and effectively. The platform is tailored for businesses of all sizes, from startups to large enterprises, seeking to bolster their security measures. With the increasing frequency of cyber threats, organizations are recognizing the importance of proactive security testing. Hackrate facilitates this by allowing companies to tap into a global network of skilled ethical hackers who can provide insights and solutions to potential vulnerabilities. This collaborative approach not only accelerates the testing process but also enriches the quality of security assessments through varied perspectives and methodologies. One of the key features of Hackrate is its user-friendly interface, which simplifies the onboarding process for both businesses and ethical hackers. Companies can initiate security testing within hours, streamlining the process of vulnerability identification. This rapid deployment is critical for organizations that need to address security concerns promptly, especially in a fast-paced digital landscape. Furthermore, Hackrate offers flexible pricing plans, making it accessible for businesses with varying budgets and security needs. Security and confidentiality are paramount in the realm of cybersecurity, and Hackrate prioritizes these aspects by implementing robust encryption and adhering to industry-standard security protocols. This commitment ensures that sensitive data remains protected throughout the testing process, fostering trust between businesses and ethical hackers. By utilizing Hackrate, organizations can confidently engage in security testing without compromising their data integrity. Overall, Hackrate Ethical Hacking Platform stands out as a comprehensive solution for businesses aiming to enhance their security frameworks. By combining the expertise of ethical hackers with an efficient, secure platform, Hackrate offers a practical approach to identifying and addressing security vulnerabilities, ultimately contributing to a safer digital environment.

Average Rating: 4.9/5.0

Total Reviews: 35

How Do G2 Users Rate Hackrate Ethical Hacking Platform?

  • Has the product been a good partner in doing business?: 10.0/10 (Category avg: 9.4/10)
  • Performance and Reliability: 9.7/10 (Category avg: 9.2/10)
  • Vulnerability Scan: 9.9/10 (Category avg: 9.2/10)
  • Extensibility: 9.6/10 (Category avg: 8.8/10)

Who Is the Company Behind Hackrate Ethical Hacking Platform?

  • Seller: Hackrate
  • Year Founded: 2020
  • HQ Location: Budapest, HU
  • Twitter: @hackrate
    363 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    12 employees on LinkedIn®

Who Uses This Product?

  • Top Industries: Computer Software, Information Technology and Services
  • Company Size: 83% Small, 11% Large

What Do G2 Reviewers Say About Hackrate Ethical Hacking Platform?

AI-generated summary from verified user reviews

Pros
  • Users appreciate the supportive communication from the Hackrate team, enhancing the overall positive experience of collaboration.
  • Users commend the highly motivated and skilled customer support team at Hackrate, enhancing their experience in cybersecurity projects.
  • Users appreciate the ease of use of Hackrate, benefiting from its concise rules and responsive support.
  • Users value the expertise of Hackrate's founders, appreciating their real-world insights and supportive approach throughout the service.
  • Users commend the motivated and skilled team of Hackrate, contributing to successful cybersecurity project completions.
Cons
  • Users report poor customer support, especially during high activity periods, leading to occasional delays in assistance.
  • Users find the poor interface design of Hackrate challenging, often struggling to navigate and locate necessary information.

What Are Recent G2 Reviews of Hackrate Ethical Hacking Platform?

What Are G2 Users Discussing About Hackrate Ethical Hacking Platform?

Lauren Worth
LW
Researched and written by Lauren Worth
Updated March 5, 2025