Best Vulnerability Scanner Software - Page 13

How Many Vulnerability Scanner Software Products Does G2 Track?

Total Products under this Category: 236

Category Stats (Sep 2026)

  • Average Rating: 4.59/5 (↑0.01 vs Aug 2026) The average rating of products in this category, based on all submitted ratings
  • Top Trending Product: Armis (+0.18%) - Among all products in this category, Armis recorded the largest rating increase compared to last month

Last updated: September 01, 2026

How Does G2 Rank Vulnerability Scanner Software Products?

Why You Can Trust G2's Software Rankings:

  • 30 Analysts and Data Experts
  • 7,800+ Authentic Reviews
  • 236+ Products
  • Unbiased Rankings

G2's software rankings are built on verified user reviews, rigorous moderation, and a consistent research methodology maintained by a team of analysts and data experts. Each product is measured using the same transparent criteria, with no paid placement or vendor influence. While reviews reflect real user experiences, which can be subjective, they offer valuable insight into how software performs in the hands of professionals. Together, these inputs power the G2 Score, a standardized way to compare tools within every category.

G2 Grid® for Vulnerability Scanner Software

G2 Grid® for Vulnerability Scanner Software plotting products by satisfaction and market presence

Highlighted products: Wiz, Aikido Security, CrowdStrike Falcon Cloud Security, Orca Security, Tenable Nessus, Astra Pentest, Intruder, and Burp Suite.

Underlying data: [Grid® JSON](https://www.g2.com/categories/vulnerability-scanner/grids.json?focus%5B%5D=wiz-wiz&focus%5B%5D=aikido-security&focus%5B%5D=crowdstrike-falcon-cloud-security&focus%5B%5D=orca-security&focus%5B%5D=tenable-nessus&focus%5B%5D=astra-pentest&focus%5B%5D=intruder&focus%5B%5D=burp-suite)

HTTPCS Security

Who Is the Company Behind HTTPCS Security?

  • Seller: HTTPCS by Ziwit
  • Year Founded: 2011
  • HQ Location: Montpellier, FR
  • Twitter: @httpcs
    2,812 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    27 employees on LinkedIn®

Infiltrator

Infiltrator is a FREE easy to use, intuitive network security scanner that can quickly audit your network computers for vulnerabilities, exploits, and information enumerations.

Who Is the Company Behind Infiltrator?

Initial Access Intelligence

VulnCheck's Initial Access Intelligence equips organizations with essential detection artifacts to defend against critical initial access vulnerabilities that are either actively exploited or likely to be targeted imminently. These artifacts include Suricata signatures, YARA rules, PCAPs, and private exploit proof-of-concept (PoC) code, enabling security teams to implement defenses promptly and test their systems effectively.

Who Is the Company Behind Initial Access Intelligence?

  • Seller: VulnCheck
  • Year Founded: 2021
  • HQ Location: Lexington, US
  • LinkedIn® Page: www.linkedin.com
    50 employees on LinkedIn®

Invary Runtime Integrity

Invary proactively identifies runtime threats to operating systems. With IP licensed from the NSA, our advanced technology empowers teams to uncover sophisticated threats that deceive and bypass traditional security measures. By validating the integrity of your operating system, Invary returns value back to your existing security investments. Invary's Runtime Integrity Service includes: -Continuous appraisals -Advanced kernel inspection -Runtime Integrity history -Automated kernel release baselining -Support for AWSLinux, CentOS, Debian, Red Hat, Rocky, Alma and Ubuntu -Runs on any virtualization environment including AWS, GCP, or Azure -Stream or pull appraisals via Webhook or API Restore trust and find hidden threats with Invary

Who Is the Company Behind Invary Runtime Integrity?

Launch Ready Code

Launch Ready Code scans any SaaS, website, or app and produces a Launch Readiness Score out of 100, covering four dimensions: Security (OWASP Top 10, auth flaws, exposed secrets), Reliability (error handling, race conditions), Performance (N+1 queries, bundle bloat, slow pages), and Monitoring (error tracking, alerting gaps). No code access needed — just the URL. Used by founders who built with Lovable, Bolt, Cursor, Replit, and other AI coding tools to find critical issues before they hit production or investors. Products start at $0 (free scan) through $499 one-time audit report and subscription plans from $149/month. Every paid audit is reviewed by a senior engineer before delivery.

Who Is the Company Behind Launch Ready Code?

Luna

Luna is an external vulnerability scanning platform that helps businesses discover and fix security weaknesses across their internet-facing infrastructure. Using 11,000+ security templates, Luna detects CVEs, misconfigurations, and common web vulnerabilities including XSS, SQLi, RCE, and SSRF across websites, servers, and network services. The platform offers four scan modes, Quick, Comprehensive, CVE-only, and Deep, with port scanning across the top 1,000 ports, SSL/TLS certificate analysis, and CVSS-based risk scoring for every finding. Vulnerabilities are mapped to OWASP Top 10 2025 categories with compliance reporting for Cyber Essentials, ISO 27001, SOC 2, PCI DSS, and GDPR. Luna is fully cloud-based with nothing to install. Teams can add domains or IP addresses and run their first scan in under five minutes. Scheduled scans run on custom cron expressions with Slack and email alerts for critical findings. A full REST API supports CI/CD pipeline integration. The platform includes vulnerability lifecycle management to track findings from Open to Acknowledged to Fixed, with false positive marking and remediation guidance. Reports export as PDF, CSV, or JSON. Luna is designed for lean IT teams, startups, and SMEs that need enterprise-grade vulnerability scanning without enterprise pricing or complexity. Plans start at $249/month for up to 50 targets, with a 14-day free trial.

Who Is the Company Behind Luna?

  • Seller: Luna
  • Year Founded: 2025
  • HQ Location: London, GB
  • LinkedIn® Page: www.linkedin.com
    1 employees on LinkedIn®

Mandiant Ransomware Validation

Ransomware Protection Ransomware and multifaceted extortion have become top cyber security threats for organizations of all shapes and sizes.

Who Is the Company Behind Mandiant Ransomware Validation?

  • Seller: Google
  • Year Founded: 1998
  • HQ Location: Mountain View, CA
  • Twitter: @google
    31,899,995 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    301,144 employees on LinkedIn®
  • Ownership: NASDAQ:GOOG

MetaDefender Drive

MetaDefender Drive boots directly from a USB port to scan laptops and servers before the operating system loads. It performs deep forensic analysis of files, memory, drivers, and system components, all without installing software. Detailed reports identify malware, vulnerabilities, and integrity issues, pinpointing exactly what needs remediation.

Who Is the Company Behind MetaDefender Drive?

  • Seller: OPSWAT
  • Year Founded: 2002
  • HQ Location: Tampa, Florida
  • Twitter: @OPSWAT
    7,257 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    1,185 employees on LinkedIn®

NESS

NESS (Network Environment Scanning and Security), focuses on developing software to help companies prevent and predict cyberattacks and failures within their technological infrastructure.

Who Is the Company Behind NESS?

  • Seller: NESS
  • Year Founded: 2023
  • HQ Location: Bogotá, CO
  • LinkedIn® Page: www.linkedin.com
    6,042 employees on LinkedIn®

Next-Gen Secret Scanning

Astrix Security's Next-Gen Secret Scanning solution is designed to secure and manage exposed secrets—such as API keys, tokens, and other machine credentials—across diverse cloud environments. By providing comprehensive visibility and rich contextual insights, it enables organizations to identify, prioritize, and remediate secret exposures efficiently, ensuring business processes remain uninterrupted.

Who Is the Company Behind Next-Gen Secret Scanning?

Nextron Systems

We Detect Hackers. Our signature database with more than 17,000 hand crafted and high quality rules is focused on APTs (advanced persistent threats), their tool sets, scripts and malware.

Who Is the Company Behind Nextron Systems?

Noetic Platform

Noetic’s full-stack visibility and effective controls monitoring empowers enterprises to see the full picture and truly understand significance of relationships between entities, so you can identify gaps and continuously improve efficacy. Find out what you can do with Noetic.

Who Is the Company Behind Noetic Platform?

  • Seller: Noetic Cyber
  • Year Founded: 2020
  • HQ Location: Boston, US
  • Twitter: @NoeticCyber
    124 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    3,157 employees on LinkedIn®

NoxScan

Scan all 65,535 TCP ports daily, not just the top 1,000. NoxScan uses eBPF + masscan for high performance port discovery, ZGrab2 for service enrichment, and Nuclei for vulnerability detection. AI filters false positives and maps findings to CVEs with proper severity scores. Auto discovery of your external attack surface. SOC 2 and ISO 27001 audit ready PDF reports out of the box. From €10/mo. 30 day free trial, no credit card needed.

Who Is the Company Behind NoxScan?

Lauren Worth
LW
Researched and written by Lauren Worth
Updated April 10, 2026