# Top Free Penetration Testing Tools

## How Many Penetration Testing Tools Products Does G2 Track?

**Total Products under this Category:** 134

### Category Stats (Jul 2026)

- **Average Rating:** 4.64/5 The average rating of products in this category, based on all submitted ratings
- **Top Trending Product:** Titania Nipper InfraSight (+1.1%) - Among all products in this category, Titania Nipper InfraSight recorded the largest rating increase compared to last month

_Last updated: July 31, 2026_

## How Does G2 Rank Penetration Testing Tools Products?

**Why You Can Trust G2's Software Rankings:**

- 30 Analysts and Data Experts
- 3,500+ Authentic Reviews
- 134+ Products
- Unbiased Rankings

G2's software rankings are built on verified user reviews, rigorous moderation, and a consistent research methodology maintained by a team of analysts and data experts. Each product is measured using the same transparent criteria, with no paid placement or vendor influence. While reviews reflect real user experiences, which can be subjective, they offer valuable insight into how software performs in the hands of professionals. Together, these inputs power the G2 Score, a standardized way to compare tools within every category.

## G2 Grid® for Penetration Testing Tools
 ![G2 Grid® for Penetration Testing Tools plotting products by satisfaction and market presence](https://www.g2.com/categories/penetration-testing-tools/grids.png?focus%5B%5D=55515&focus%5B%5D=168853&focus%5B%5D=154599&focus%5B%5D=1333324&focus%5B%5D=1282377&focus%5B%5D=54142&focus%5B%5D=99367&focus%5B%5D=39589)

Highlighted products: Cobalt, vPenTest, Astra Pentest, Oneleet, NodeZero from Horizon3.ai, Bugcrowd, Verizon Penetration Testing, and H1 Platform.

Underlying data: [Grid® JSON](https://www.g2.com/categories/penetration-testing-tools/grids.json?focus%5B%5D=cobalt-io-cobalt&focus%5B%5D=vpentest&focus%5B%5D=astra-pentest&focus%5B%5D=oneleet&focus%5B%5D=nodezero-from-horizon3-ai&focus%5B%5D=bugcrowd&focus%5B%5D=verizon-penetration-testing&focus%5B%5D=h1-platform)

**Sponsored**

### Intruder

Intruder's continuous exposure management platform helps security, IT, and engineering teams stop breaches before they start. By unifying AI penetration testing, attack surface monitoring, cloud security, and vulnerability management in one intuitive platform, Intruder gives stretched teams an always-on security source of truth. Our approach focuses on continuous automated scanning using expertise and agentic solutions to ensure that the findings we deliver are accurate, prioritized by real-world risk, and ready to act on. Founded in 2015 by Chris Wallis, a former ethical hacker turned corporate blue teamer, Intruder is now protecting over 3,000 companies worldwide. Intruder has been awarded multiple accolades, was selected for GCHQ’s Cyber Accelerator, included on Deloitte’s Tech Fast 50 2023 list as the fastest-growing cybersecurity company in the UK and was named in G2’s 2026 Best Software Awards.

[Visit website](https://www.g2.com/external_clickthroughs/record?secure%5Bad_program%5D=ppc&secure%5Bad_slot%5D=category_product_list&secure%5Bcategory_id%5D=1519&secure%5Bchosen_at%5D=2026-07-31T10%3A57%3A11Z&secure%5Bdisplayable_resource_id%5D=1519&secure%5Bdisplayable_resource_type%5D=Category&secure%5Bmedium%5D=sponsored&secure%5Bplacement_reason%5D=page_category&secure%5Bplacement_resource_ids%5D%5B%5D=1519&secure%5Bprioritized%5D=false&secure%5Bproduct_id%5D=27706&secure%5Bresource_id%5D=1519&secure%5Bresource_type%5D=Category&secure%5Bsource_type%5D=category_page&secure%5Bsource_url%5D=https%3A%2F%2Fwww.g2.com%2Fcategories%2Fpenetration-testing-tools%2Ffree%3Fopen_modal_url%3D%252Fproducts%252Findusface-was%252Fwishlists%253Fhost_path%253D%25252Fcategories%25252Fpenetration-testing-tools%25252Ffree%2526source%253Dcategory&secure%5Btoken%5D=8e3fd3b8e10ce607eec497fd00afc0efb7eadd7b005d935ea0e3878398ddf92d&secure%5Burl%5D=https%3A%2F%2Fwww.intruder.io%2F%3Futm_source%3Dg2%26utm_medium%3Dp_referral%26utm_campaign%3Dglobal%7Cfixed%7Cg2_clicks_2025&secure%5Burl_type%5D=free_trial)

### [vPenTest](https://www.g2.com/products/vpentest/reviews)

Vonahi Security is building the future of offensive cybersecurity by delivering automated, high-quality penetration testing through its SaaS platform, vPenTest. Designed to replicate the tools, techniques, and methodologies of experienced consultants, vPenTest brings the benefits of manual network penetration testing into an easy-to-use, automated solution. Traditionally, penetration testing has been a manual, time consuming, and expensive process that many organizations only perform once or twice a year. This often leaves businesses exposed to emerging threats between assessments. vPenTest addresses this gap by offering fast, consistent, and on-demand testing that helps organizations evaluate their real-time cybersecurity risk more effectively. Powered by a proprietary framework that evolves through continuous research and real-world insights, vPenTest stays aligned with the latest attack techniques and industry best practices. The platform is backed by over 13 years of offensive security expertise, with the team holding certifications such as CISSP, OSCP, OSCE, CEH, and more. Their knowledge is built directly into the platform, ensuring each test is conducted with depth, consistency, and accuracy—without the delays or variability of manual testing.  vPenTest enables organizations to run internal and external network penetration tests as often as needed monthly, quarterly, or prior to audits or insurance reviews. The automated reports provide actionable insights that make it easy to prioritize remediation and demonstrate progress toward compliance. Today, over 22,000 organizations rely on vPenTest to strengthen their security posture and reduce risk. This includes managed service providers, managed security service providers, financial institutions, compliance-driven organizations, and internal IT teams. Whether you're working to meet regulatory requirements, secure cyber insurance coverage, or proactively defend against evolving threats, vPenTest makes network penetration testing easy, affordable, and scalable.

**Average Rating:** 4.6/5.0

**Total Reviews:** 241

#### How Do G2 Users Rate vPenTest?

- **Has the product been a good partner in doing business?:** 9.4/10 (Category avg: 9.4/10)
- **Performance and Reliability:** 9.1/10 (Category avg: 9.2/10)
- **Vulnerability Scan:** 9.0/10 (Category avg: 9.1/10)
- **Extensibility:** 8.5/10 (Category avg: 8.7/10)

#### Who Is the Company Behind vPenTest?

- **Seller:** [Kaseya](https://www.g2.com/sellers/kaseya)
- **Company Website:** www.kaseya.com
- **Year Founded:** 2000
- **HQ Location:** Miami, FL
- **Twitter:** @KaseyaCorp  
17,411 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=6c9a31f82a811b1e3cc7be6babe8882bb8f6b2927e142d98dd6f5662a0d0e4d2&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fkaseya%2F&secure%5Burl_type%5D=linkedin_company_website)  
5,471 employees on LinkedIn®

#### Who Uses This Product?

- **Who Uses This:** CEO
- **Top Industries:** Information Technology and Services, Computer & Network Security
- **Company Size:** 69% Small, 24% Medium

#### What Do G2 Reviewers Say About vPenTest?

_AI-generated summary from verified user reviews_

##### Pros

- Users find vPenTest **exceptionally easy to use** , enhancing efficiency and making penetration testing accessible for beginners.
- Users appreciate the **awesome technical reports** from vPenTest, which provide detailed remediation steps and are reviewed by CREST.
- Users value the **user-friendly interface** of vPenTest, enhancing navigation and improving pentesting efficiency significantly.
- Users highlight the **setup ease** of vPenTest, appreciating its straightforward implementation and user-friendly interface.
- Users value the **ease of implementation** of vPenTest, enjoying a seamless setup and effortless integration into workflow.

##### Cons

- Users find the **setup process complex** , requiring multiple attempts and lacking integration with existing systems.
- Users are frustrated by the **limited scope** of vPenTest, as it fails to address all pentesting needs effectively.
- Users find vPenTest **expensive** , especially due to pricing models that burden smaller organizations and larger customer contracts.
- Users note the **inadequate reporting** in vPenTest, highlighting issues with standardization and limited availability of reports.
- Users note the **lack of detail** in vPenTest, which can lead to confusion and require additional explanations.

#### What Are Recent G2 Reviews of vPenTest?

**["Great Product, Easy to Use, does exactly as described."](https://www.g2.com/survey_responses/vpentest-review-9009510)**

**Rating:** 5.0/5.0 stars

_— Kamran H._

[Read full review](https://www.g2.com/survey_responses/vpentest-review-9009510)

**["Fast, Actionable Pen Testing Baselines with Clear, Customer-Ready Reports"](https://www.g2.com/survey_responses/vpentest-review-12881608)**

**Rating:** 4.5/5.0 stars

_— Darren ._

[Read full review](https://www.g2.com/survey_responses/vpentest-review-12881608)

### [Astra Pentest](https://www.g2.com/products/astra-pentest/reviews)

Astra Security is a leading continuous penetration testing platform that combines AI-powered autonomous pentesting with certified expert-led assessments. Powered by Attack AI, trained on 6.8M+ security findings and insights from 5,000+ real-world pentests. Astra deploys intelligent agents that continuously discover, validate, prioritize, and help remediate vulnerabilities at scale. While AI handles speed and scale, Astra’s certified security experts focus on what automation alone cannot: complex business logic flaws, multi-step attack chains, advanced exploit paths, and emerging AI/LLM-specific threats. Built for modern engineering teams, Astra integrates directly into CI/CD workflows, enabling continuous security validation between releases instead of relying on outdated annual pentests. The platform delivers comprehensive Autonomous Pentest powered by AI agents, DAST vulnerability scanner and human-driven pentests across web apps, AI/LLMs, mobile apps, APIs, cloud infrastructure. Astra is CREST-accredited, CERT-IN empaneled, and a PCI ASV-certified vendor. Our team also led the development of the OWASP APTS framework, helping shape the industry standard for continuous security testing. Today, 1,500+ organizations across 70+ countries trust Astra Security, including Ford, Loom, CompTIA, Hitachi, HackerRank, and OLX.

**Average Rating:** 4.6/5.0

**Total Reviews:** 220

#### How Do G2 Users Rate Astra Pentest?

- **Has the product been a good partner in doing business?:** 9.3/10 (Category avg: 9.4/10)
- **Performance and Reliability:** 9.0/10 (Category avg: 9.2/10)
- **Vulnerability Scan:** 9.0/10 (Category avg: 9.1/10)
- **Extensibility:** 8.1/10 (Category avg: 8.7/10)

#### Who Is the Company Behind Astra Pentest?

- **Seller:** [ASTRA IT, Inc.](https://www.g2.com/sellers/astra-it-inc)
- **Company Website:** www.getastra.com
- **Year Founded:** 2018
- **HQ Location:** New Delhi, IN
- **Twitter:** @getastra  
694 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=fbe109060085ad9c09016ddbb00bd4f363004bed188f1fd0e5a11ea004d08c89&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fgetastra%2F&secure%5Burl_type%5D=linkedin_company_website)  
130 employees on LinkedIn®

#### Who Uses This Product?

- **Who Uses This:** CTO, CEO
- **Top Industries:** Computer Software, Information Technology and Services
- **Company Size:** 67% Small, 28% Medium

#### What Do G2 Reviewers Say About Astra Pentest?

_AI-generated summary from verified user reviews_

##### Pros

- Users appreciate the **responsive customer support** of Astra Pentest, enhancing their experience and ensuring smooth collaboration.
- Users value the **comprehensive vulnerability management features** of Astra Pentest, enhancing their ability to address security issues effectively.
- Users love the **ease of use** of Astra Pentest, appreciating its intuitive design and accessible features.
- Users commend Astra Pentest for its **efficient penetration testing** , enabling swift execution and effective communication throughout the process.
- Users value the **thorough vulnerability identification** of Astra Pentest, enhancing confidence and security in their development processes.

##### Cons

- Users experience **poor customer support** , citing slow responses and difficulties with account setup and vulnerability inquiries.
- Users find the **poor interface design** of Astra Pentest to be clunky and not user-friendly, affecting usability.
- Users experience **slow performance** with Astra Pentest, affecting testing speed and response times for results.
- Users feel that the **UX could be improved** for a smoother experience, as navigation can sometimes be confusing.
- Users face a **lack of information** with Astra Pentest, as documentation and updates are often insufficient or slow to arrive.

#### What Are Recent G2 Reviews of Astra Pentest?

**["Smooth Onboarding, Responsive Support, and Strong Pentest Lifecycle Controls"](https://www.g2.com/survey_responses/astra-pentest-review-13001206)**

**Rating:** 5.0/5.0 stars

_— Sivakumar S._

[Read full review](https://www.g2.com/survey_responses/astra-pentest-review-13001206)

**["Exceptional VAPT Solution with Prompt Support"](https://www.g2.com/survey_responses/astra-pentest-review-9603864)**

**Rating:** 5.0/5.0 stars

_— Nikhil Ajit S._

[Read full review](https://www.g2.com/survey_responses/astra-pentest-review-9603864)

#### What Are G2 Users Discussing About Astra Pentest?

- [What is Astra Pentest used for?](https://www.g2.com/discussions/what-is-astra-pentest-used-for) - 2 comments

### [NodeZero from Horizon3.ai](https://www.g2.com/products/nodezero-from-horizon3-ai/reviews)

Horizon3.ai's NodeZero® platform empowers your organization to continuously find, fix, and verify your exploitable attack surface. Reduce your security risk by autonomously finding weaknesses in your network, knowing how to prioritize and fix them, and immediately verifying that your fixes work. NodeZero delivers production-safe autonomous pentests and other key assessment operations that scale across your largest internal, external, cloud, and hybrid cloud environments. No required agents, no code to write, and no consultants to hire.

**Average Rating:** 4.7/5.0

**Total Reviews:** 33

#### How Do G2 Users Rate NodeZero from Horizon3.ai?

- **Has the product been a good partner in doing business?:** 9.5/10 (Category avg: 9.4/10)
- **Performance and Reliability:** 9.5/10 (Category avg: 9.2/10)
- **Vulnerability Scan:** 9.6/10 (Category avg: 9.1/10)
- **Extensibility:** 9.8/10 (Category avg: 8.7/10)

#### Who Is the Company Behind NodeZero from Horizon3.ai?

- **Seller:** [Horizon3.ai](https://www.g2.com/sellers/horizon3-ai)
- **Company Website:** www.horizon3.ai
- **Year Founded:** 2019
- **HQ Location:** San Francisco, US
- **Twitter:** @Horizon3ai  
2,802 Twitter followers
- **LinkedIn® Page:** [linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=b96ec867662918611a5419cf5256bf5c03ca287b91e15731019e597bd28f51b6&secure%5Burl%5D=https%3A%2F%2Flinkedin.com%2Fcompany%2Fhorizon3ai%2F&secure%5Burl_type%5D=linkedin_company_website)  
444 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 55% Medium, 21% Small

#### What Do G2 Reviewers Say About NodeZero from Horizon3.ai?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **intuitive communication** of NodeZero, making it accessible for both technical and non-technical staff.
- Users rave about the **intuitive and thorough integration** of NodeZero, making it essential for cybersecurity needs.
- Users value the **ease of implementation** of NodeZero, finding it intuitive and accessible for all team members.
- Users value the **easy integrations** of NodeZero, making it accessible for both technical and non-technical staff.
- Users value the **efficiency** of NodeZero in quickly identifying longstanding misconfigurations and vulnerabilities in their environments.

##### Cons

- Users find the **inadequate reporting** of Tripwires' machine success and failure states frustrating and unclear.
- Users note a **lack of detail** in Tripwires reporting, making it hard to identify specific machine outcomes.

#### What Are Recent G2 Reviews of NodeZero from Horizon3.ai?

**["Showing you what's actually exploitable!"](https://www.g2.com/survey_responses/nodezero-from-horizon3-ai-review-13121791)**

**Rating:** 5.0/5.0 stars

_— james.kavanagh@cybervigilance.uk K._

[Read full review](https://www.g2.com/survey_responses/nodezero-from-horizon3-ai-review-13121791)

**["NodeZero Takes the Guesswork Out of Pen Testing With Continuous Attack-Path Validation"](https://www.g2.com/survey_responses/nodezero-from-horizon3-ai-review-13121520)**

**Rating:** 5.0/5.0 stars

_— Verified User in Information Technology and Services_

[Read full review](https://www.g2.com/survey_responses/nodezero-from-horizon3-ai-review-13121520)

### [Synack](https://www.g2.com/products/synack/reviews)

Synack is a continuous penetration testing platform that combines agentic AI with a global network of vetted security researchers to uncover real, exploitable vulnerabilities across the entire attack surface. Most organizations test only a fraction of what matters. Synack closes that coverage gap—using AI to scale discovery and human expertise to validate real risk. The platform enables enterprises to move from periodic testing to continuous security validation across web applications, APIs, cloud, and infrastructure—prioritizing findings based on what is actually exploitable, not just detected. Synack supports penetration testing, continuous security testing, vulnerability management, and attack surface management in dynamic, cloud-based, and hybrid environments. Founded by former NSA professionals, Synack supports enterprise and public sector organizations where security, compliance, and risk management are mission-critical.

**Average Rating:** 4.8/5.0

**Total Reviews:** 19

#### How Do G2 Users Rate Synack?

- **Has the product been a good partner in doing business?:** 10.0/10 (Category avg: 9.4/10)
- **Performance and Reliability:** 9.2/10 (Category avg: 9.2/10)
- **Vulnerability Scan:** 10.0/10 (Category avg: 9.1/10)
- **Extensibility:** 10.0/10 (Category avg: 8.7/10)

#### Who Is the Company Behind Synack?

- **Seller:** [Synack](https://www.g2.com/sellers/synack)
- **Company Website:** www.synack.com
- **Year Founded:** 2013
- **HQ Location:** Redwood City, California, United States
- **Twitter:** @synack  
26,716 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=b167285e8883c4c57362ad8a4e3a053e7023f542ae2b1723068f50dc5c478159&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fsynack-inc-%2F&secure%5Burl_type%5D=linkedin_company_website)  
244 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 74% Large, 16% Medium

#### What Are Recent G2 Reviews of Synack?

**["Trusted Testing with Powerful Analytics and Assurance"](https://www.g2.com/survey_responses/synack-review-13049363)**

**Rating:** 5.0/5.0 stars

_— Jan F._

[Read full review](https://www.g2.com/survey_responses/synack-review-13049363)

**["High-Quality Security Testing Through Trusted Researchers"](https://www.g2.com/survey_responses/synack-review-13043980)**

**Rating:** 5.0/5.0 stars

_— Verified User in Chemicals_

[Read full review](https://www.g2.com/survey_responses/synack-review-13043980)

#### What Are G2 Users Discussing About Synack?

- [What is Synack used for?](https://www.g2.com/discussions/what-is-synack-used-for)

### [Intruder](https://www.g2.com/products/intruder/reviews)

Intruder's continuous exposure management platform helps security, IT, and engineering teams stop breaches before they start. By unifying AI penetration testing, attack surface monitoring, cloud security, and vulnerability management in one intuitive platform, Intruder gives stretched teams an always-on security source of truth. Our approach focuses on continuous automated scanning using expertise and agentic solutions to ensure that the findings we deliver are accurate, prioritized by real-world risk, and ready to act on. Founded in 2015 by Chris Wallis, a former ethical hacker turned corporate blue teamer, Intruder is now protecting over 3,000 companies worldwide. Intruder has been awarded multiple accolades, was selected for GCHQ’s Cyber Accelerator, included on Deloitte’s Tech Fast 50 2023 list as the fastest-growing cybersecurity company in the UK and was named in G2’s 2026 Best Software Awards.

**Average Rating:** 4.8/5.0

**Total Reviews:** 209

#### How Do G2 Users Rate Intruder?

- **Has the product been a good partner in doing business?:** 9.7/10 (Category avg: 9.4/10)
- **Performance and Reliability:** 9.4/10 (Category avg: 9.2/10)
- **Vulnerability Scan:** 9.6/10 (Category avg: 9.1/10)
- **Extensibility:** 8.5/10 (Category avg: 8.7/10)

#### Who Is the Company Behind Intruder?

- **Seller:** [Intruder](https://www.g2.com/sellers/intruder)
- **Company Website:** www.intruder.io
- **Year Founded:** 2015
- **HQ Location:** London
- **Twitter:** @intruder\_io  
979 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=f067752387faaf8e51f29bfa65216c4d098142c0465fc0e1e9614d24e55d97f8&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F6443623%2F&secure%5Burl_type%5D=linkedin_company_website)  
83 employees on LinkedIn®

#### Who Uses This Product?

- **Who Uses This:** CTO, Director
- **Top Industries:** Computer Software, Information Technology and Services
- **Company Size:** 57% Small, 36% Medium

#### What Do G2 Reviewers Say About Intruder?

_AI-generated summary from verified user reviews_

##### Pros

- Users find the **ease of use** of Intruder perfect for configuring and scanning cloud resources efficiently.
- Users appreciate the **easy configuration of vulnerability detection** , making it simple to secure cloud resources efficiently.
- Users value the **exceptional customer support** from Intruder, highlighting quick responses and friendliness during their experience.
- Users value Intruder's **easy-to-use interface** and seamless integration, enhancing their cybersecurity management experience significantly.
- Users value the **easy configuration** of Intruder, allowing timely identification of vulnerabilities across cloud resources.

##### Cons

- Users find the service to be **expensive** , suggesting improvements in pricing models for better value.
- Users report **slow scanning** as Intruder misses some vulnerabilities and lacks integration with comprehensive testing tools.
- Users struggle with the **licensing model** of Intruder, finding it complex and not immediately intuitive.
- Users experience **false positives** from Intruder, leading to confusion between critical and lower-risk vulnerabilities.
- Users find the **limited features** of Intruder frustrating, especially regarding reporting flexibility and license understanding.

#### What Are Recent G2 Reviews of Intruder?

**["Reliable Service with Flexible Plans and Strong Support"](https://www.g2.com/survey_responses/intruder-review-13110046)**

**Rating:** 4.0/5.0 stars

_— Ossama M._

[Read full review](https://www.g2.com/survey_responses/intruder-review-13110046)

**["Revolutionized Our Vulnerability Management with Real-Time Insights"](https://www.g2.com/survey_responses/intruder-review-13100568)**

**Rating:** 4.5/5.0 stars

_— Verified User_

[Read full review](https://www.g2.com/survey_responses/intruder-review-13100568)

#### What Are G2 Users Discussing About Intruder?

- [Who developed intruder?](https://www.g2.com/discussions/who-developed-intruder)
- [What is an intruder in cyber security?](https://www.g2.com/discussions/what-is-an-intruder-in-cyber-security)
- [Is intruder IO safe?](https://www.g2.com/discussions/is-intruder-io-safe) - 1 comment
- [What is intruder software?](https://www.g2.com/discussions/what-is-intruder-software) - 1 comment

### [Aikido Security](https://www.g2.com/products/aikido-security/reviews)

Aikido Security is the developer-first security platform that unifies code, cloud, protection, and attack testing in one suite of best-in-class products. Built by developers for developers, Aikido helps teams of any size ship secure software faster, automate protection, and simulate real-world attacks with AI-driven precision. The platform’s proprietary AI cuts noise by 95%, delivers one-click fixes, and saves developers 10+ hours per week. Aikido Intel proactively uncovers vulnerabilities in open source packages before disclosure, helping secure more than 50,000 organizations worldwide, including Revolut, Niantic, Visma, Montblanc, and GoCardless.

**Average Rating:** 4.6/5.0

**Total Reviews:** 251

#### How Do G2 Users Rate Aikido Security?

- **Has the product been a good partner in doing business?:** 9.3/10 (Category avg: 9.4/10)
- **Performance and Reliability:** 10.0/10 (Category avg: 9.2/10)
- **Vulnerability Scan:** 10.0/10 (Category avg: 9.1/10)

#### Who Is the Company Behind Aikido Security?

- **Seller:** [Aikido Security](https://www.g2.com/sellers/aikido-security)
- **Company Website:** aikido.dev
- **Year Founded:** 2022
- **HQ Location:** Ghent, Belgium
- **Twitter:** @AikidoSecurity  
11,770 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=79406802efc597500b142b19f023ee80eb82879906d7e1e458900293346529a9&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Faikido-security%2F&secure%5Burl_type%5D=linkedin_company_website)  
241 employees on LinkedIn®

#### Who Uses This Product?

- **Who Uses This:** Founder, CTO
- **Top Industries:** Computer Software, Information Technology and Services
- **Company Size:** 80% Small, 13% Medium

#### What Do G2 Reviewers Say About Aikido Security?

_AI-generated summary from verified user reviews_

##### Pros

- Users appreciate the **ease of use** of Aikido Security, benefiting from its clear, actionable insights and seamless integration.
- Users praise Aikido Security for its **fast and user-friendly identification of security issues** in codebases, enhancing development practices.
- Users appreciate the **robust features of Aikido Security** , valuing its usability and effectiveness in enhancing security workflows.
- Users value the **easy integrations** with GitLab, allowing for quick start and effective tracking of security issues.
- Users commend the **easy setup** of Aikido Security, simplifying integration and enhancing their security workflow significantly.

##### Cons

- Users note the **missing features** in Aikido Security, wishing for more integration and advanced configuration options.
- Users find the **pricing excessive** , particularly for startups, despite acknowledging the product's value.
- Users find Aikido Security has **limited features** , particularly in advanced customization and reporting for complex environments.
- Users find the **entry-level pricing** of Aikido Security too high for startups, limiting adoption and experimentation.
- Users are frustrated by the **lack of features** , especially with local scanning and branch handling limitations.

#### What Are Recent G2 Reviews of Aikido Security?

**["Seamless GitHub Integration with Solid Security Findings and Smart False-Positive Analysis"](https://www.g2.com/survey_responses/aikido-security-review-13109689)**

**Rating:** 4.5/5.0 stars

_— Jordan B._

[Read full review](https://www.g2.com/survey_responses/aikido-security-review-13109689)

**["Enterprise Security Without an Enterprise Security Team"](https://www.g2.com/survey_responses/aikido-security-review-13108704)**

**Rating:** 4.0/5.0 stars

_— Ian M._

[Read full review](https://www.g2.com/survey_responses/aikido-security-review-13108704)

### [Metasploit](https://www.g2.com/products/metasploit/reviews)

Metasploit is a comprehensive penetration testing platform developed by Rapid7, designed to help security professionals identify, exploit, and validate vulnerabilities within their networks. By simulating real-world attacks, Metasploit enables organizations to assess their security posture and enhance their defenses against potential threats. Key Features and Functionality: - Extensive Exploit Library: Access to a vast, regularly updated database of over 1,500 exploits and 3,300 modules, allowing users to simulate a wide range of attack scenarios. - Automated Exploitation: Features like Smart Exploitation and automated credential brute-forcing streamline the penetration testing process, increasing efficiency and accuracy. - Post-Exploitation Modules: Over 330 post-exploitation modules enable testers to assess the impact of a successful breach and gather critical information from compromised systems. - Credential Testing: Ability to run brute-force attacks against more than 20 account types, including databases, web servers, and remote administration tools, to uncover weak or reused passwords. - Integration Capabilities: Seamless integration with other Rapid7 products, such as InsightVM and Nexpose, facilitates closed-loop vulnerability validation and remediation prioritization. Primary Value and Problem Solving: Metasploit empowers organizations to proactively identify and address security weaknesses before malicious actors can exploit them. By simulating real-world attacks, it provides valuable insights into potential vulnerabilities, enabling security teams to prioritize remediation efforts effectively. This proactive approach enhances overall security awareness, reduces the risk of breaches, and ensures compliance with industry standards and regulations.

**Average Rating:** 4.6/5.0

**Total Reviews:** 53

#### How Do G2 Users Rate Metasploit?

- **Has the product been a good partner in doing business?:** 8.7/10 (Category avg: 9.4/10)
- **Performance and Reliability:** 8.4/10 (Category avg: 9.2/10)
- **Vulnerability Scan:** 8.7/10 (Category avg: 9.1/10)
- **Extensibility:** 8.1/10 (Category avg: 8.7/10)

#### Who Is the Company Behind Metasploit?

- **Seller:** [Rapid7](https://www.g2.com/sellers/rapid7)
- **Year Founded:** 2000
- **HQ Location:** Boston, MA
- **Twitter:** @rapid7  
124,405 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=04bdb542ee8372d372b62e305f57e5c7aefbd59efac3d6831f78fcc71f4f819c&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F39624%2F&secure%5Burl_type%5D=linkedin_company_website)  
3,274 employees on LinkedIn®
- **Ownership:** NASDAQ:RPD

#### Who Uses This Product?

- **Top Industries:** Computer & Network Security, Information Technology and Services
- **Company Size:** 47% Small, 40% Medium

#### What Do G2 Reviewers Say About Metasploit?

_AI-generated summary from verified user reviews_

##### Pros

- Users laud the **pentesting efficiency** of Metasploit, appreciating its extensive toolkit for creating diverse payloads.
- Users value the **expertise** provided by Metasploit for creating diverse payloads and exploiting systems effectively.

##### Cons

- Users find the **complex setup** of Metasploit frustrating, wishing for more automation to simplify installation.

#### What Are Recent G2 Reviews of Metasploit?

**["The Best Exploitation framework"](https://www.g2.com/survey_responses/metasploit-review-10690494)**

**Rating:** 5.0/5.0 stars

_— Abhinav N._

[Read full review](https://www.g2.com/survey_responses/metasploit-review-10690494)

**["Metasploit: the master blaster"](https://www.g2.com/survey_responses/metasploit-review-10815364)**

**Rating:** 5.0/5.0 stars

_— Anamta Z._

[Read full review](https://www.g2.com/survey_responses/metasploit-review-10815364)

#### What Are G2 Users Discussing About Metasploit?

- [What is Metasploit used for?](https://www.g2.com/discussions/what-is-metasploit-used-for)

### [Indusface WAS](https://www.g2.com/products/indusface-was/reviews)

Indusface WAS (Web Application Scanner) provides comprehensive managed dynamic application security testing (DAST) solution. It is a zero-touch, non-intrusive cloud-based solution that provides daily monitoring for web applications, checking for systems and application vulnerabilities, and malware. Indusface WAS with its automated scans & manual pentesting done by certified security experts ensures none of the OWASP Top10, business logic vulnerabilities, and malware go unnoticed. With zero false-positive guarantee and comprehensive reporting with remediation guidance, Indusface web app scanning ensures developers to quickly fix vulnerabilities seamlessly.

**Average Rating:** 4.6/5.0

**Total Reviews:** 64

#### How Do G2 Users Rate Indusface WAS?

- **Has the product been a good partner in doing business?:** 9.4/10 (Category avg: 9.4/10)
- **Performance and Reliability:** 9.2/10 (Category avg: 9.2/10)
- **Vulnerability Scan:** 9.3/10 (Category avg: 9.1/10)
- **Extensibility:** 8.7/10 (Category avg: 8.7/10)

#### Who Is the Company Behind Indusface WAS?

- **Seller:** [Indusface](https://www.g2.com/sellers/indusface)
- **Year Founded:** 2012
- **HQ Location:** Vadodara
- **Twitter:** @Indusface  
3,472 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=9613ad8a5510ef7df5fb28a0b29c05b6ca59b70efc760d78e0637371a3103092&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Findusface%2F&secure%5Burl_type%5D=linkedin_company_website)  
180 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Computer Software, Information Technology and Services
- **Company Size:** 53% Small, 37% Medium

#### What Do G2 Reviewers Say About Indusface WAS?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **effective vulnerability detection** of Indusface WAS, ensuring rapid prioritization and reliable remediation support.
- Users value the **consistent and reliable vulnerability detection** of Indusface WAS, ensuring secure deployments with ease.
- Users commend the **excellent customer support** of Indusface WAS, ensuring timely responses and effective issue resolution.
- Users value the **scanning efficiency** of Indusface WAS for detailed vulnerability reports and timely updates after deployments.
- Users value the **thorough security scans** from Indusface WAS, enhancing their vulnerability identification and accreditation processes.

##### Cons

- Users feel that the pricing for Indusface WAS is **expensive** , especially regarding staging and development environment scans.
- Users find the **confusing interface** of Indusface WAS somewhat dated and in need of improvements for better usability.
- Users find the **lack of features** for staging and development environments limits their testing in Indusface WAS.
- Users find the **limited scope of pricing for staging environments** restricts functionality and increases testing challenges.
- Users find the **interface design outdated and unintuitive** , often wishing for a more user-friendly experience.

#### What Are Recent G2 Reviews of Indusface WAS?

**["Streamlined, Intuitive Portal with Great Support"](https://www.g2.com/survey_responses/indusface-was-review-13148466)**

**Rating:** 4.5/5.0 stars

_— Harshit G._

[Read full review](https://www.g2.com/survey_responses/indusface-was-review-13148466)

**["Great support Given by shivani"](https://www.g2.com/survey_responses/indusface-was-review-11074325)**

**Rating:** 5.0/5.0 stars

_— Sai N._

[Read full review](https://www.g2.com/survey_responses/indusface-was-review-11074325)

#### What Are G2 Users Discussing About Indusface WAS?

- [What is Indusface WAS used for?](https://www.g2.com/discussions/what-is-indusface-was-used-for)

### [Edgescan](https://www.g2.com/products/edgescan/reviews)

What Is Edgescan? Edgescan is a cybersecurity company that helps organizations proactively identify, validate, and prioritize vulnerabilities across their applications, API’s and digital landscape. The company specializes in continuous vulnerability assessment, automated penetration testing, Attack Surface Management and Penetration Testing as a Service (PTaaS). Edgescan also delivers Autonomous Penetration Testing via "Edgescan Atomic". Atomic is an AI powered autonomous penetration testing capability available exclusively to Edgescan customers. Each Atomic Attack Credit provides an autonomous penetration test, allowing organizations to perform an additional autonomous penetration test when required Atomic complements PTaaS by providing another way to assess security as environments evolve. (Supercharge your security with AI) Edgescan combines advanced automation with certified security experts, including professionals holding credentials such as CREST and OSCP, to deliver highly accurate and actionable security testing. This hybrid approach allows organizations to move beyond traditional point-in-time penetration tests and operate a continuous proactive cybersecurity program. The Edgescan platform is designed primarily for web application and API security, enabling organizations to continuously assess their attack surface and identify vulnerabilities throughout the development lifecycle but also delivers “full stack” coverage to detect host layer CVE’s. With a client retention rate of over 90%, Edgescan has built long-term partnerships by delivering measurable improvements in security efficiency, risk visibility, and vulnerability management. Key Features and Capabilities of Edgescan Automated Penetration Testing Edgescan uses intelligent automation to continuously assess applications, APIs, hosts, and cloud environments for vulnerabilities. This enables frequent, scalable security testing across modern and distributed architectures. Human‑Validated Testing Findings are reviewed and manually validated by certified security experts to eliminate false positives and provide deeper insight into real‑world exploitability. Each result is accurate, contextual, and actionable. Penetration Testing as a Service (PTaaS) Edgescan’s PTaaS model extends beyond automated testing by allowing expert testers to focus on vulnerabilities that require human analysis, including: • Business logic flaws • Authentication and authorization weaknesses • Context-dependent exposures • Complex attack chains and privilege escalation paths Cyber Analytics and AI‑Assisted Validation AI-driven analysis enhances detection, verifies exploitability, and increases accuracy. This reduces noise and gives security teams a clearer picture of genuine threats. Integrated Threat Intelligence Edgescan correlates vulnerabilities with real-world threat intelligence, including known exploits and ransomware activity to help organizations prioritize the most dangerous exposures first. Risk‑Based Prioritization Findings are prioritized based on exploitability, severity, threat context, and business impact, ensuring teams focus on the issues that matter most. Primary Value: What Edgescan Solves for Clients Edgescan enables organizations to shift from reactive vulnerability management to a continuous, proactive security model. Traditional scanners and periodic penetration tests frequently produce large volumes of unvalidated findings. This creates noise and forces security teams to spend hours determining which issues are real and critical. Edgescan solves this by combining: Automation for continuous testing Human expertise for validation and complex analysis Cyber analytics and AI for accuracy and prioritization Key Benefits Significant efficiency gains: reducing thousands of hours spent on manual validation. Higher accuracy, thanks to expert‑validated findings and reduced false positives. Clear prioritization, using threat intelligence and ransomware insights to highlight the highest‑risk exposures. Continuous security improvement, enabling rapid detection, faster remediation, and scalable vulnerability management. By unifying automation, human expertise, AI, and threat intelligence, Edgescan empowers organizations to maintain a continuous cybersecurity program that strengthens overall security posture while dramatically reducing operational burden.

**Average Rating:** 4.6/5.0

**Total Reviews:** 57

#### How Do G2 Users Rate Edgescan?

- **Has the product been a good partner in doing business?:** 9.2/10 (Category avg: 9.4/10)
- **Performance and Reliability:** 8.5/10 (Category avg: 9.2/10)
- **Vulnerability Scan:** 9.5/10 (Category avg: 9.1/10)
- **Extensibility:** 9.0/10 (Category avg: 8.7/10)

#### Who Is the Company Behind Edgescan?

- **Seller:** [Edgescan](https://www.g2.com/sellers/edgescan)
- **Company Website:** www.edgescan.com
- **Year Founded:** 2017
- **HQ Location:** Dublin, Dublin
- **Twitter:** @edgescan  
2,256 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=51edeb949934c6f870f2d6720fefabf6632464f3895af4d8276b3c60c0fe37db&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F2928425%2F&secure%5Burl_type%5D=linkedin_company_website)  
89 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Information Technology and Services, Computer Software
- **Company Size:** 37% Large, 29% Medium

#### What Do G2 Reviewers Say About Edgescan?

_AI-generated summary from verified user reviews_

##### Pros

- Users appreciate Edgescan's **ease of use** , enjoying its intuitive interface and streamlined navigation for effective vulnerability management.
- Users value the **automated vulnerability detection** with intuitive reports, timely alerts, and effective risk management features.
- Users value the **excellent customer support** from Edgescan, praising the team's responsiveness and proactive assistance.
- Users value the **thorough vulnerability identification** features of Edgescan, enhancing risk management and resolution efficiency.
- Users value the **robust features** of Edgescan, which streamline security assessments and enhance ease of use.

##### Cons

- Users find the **complex UI** challenging initially, with navigation issues and a need for improved dashboard functionality.
- Users highlight **limited customization** options in Edgescan, particularly regarding filtering and admin functionalities.
- Users find the **poor interface design** of Edgescan challenging, affecting usability and data accessibility.
- Users report experiencing **slow performance** as scans can take longer due to manual review processes.
- Users find the **UI not user friendly** , lacking intuitiveness and advanced features for better navigation and data accessibility.

#### What Are Recent G2 Reviews of Edgescan?

**["Edgescan: Easy Setup, Clear Insights, and Expert Security Support"](https://www.g2.com/survey_responses/edgescan-review-12224347)**

**Rating:** 5.0/5.0 stars

_— Matt W._

[Read full review](https://www.g2.com/survey_responses/edgescan-review-12224347)

**["Efficient Vulnerability Scanning with Easy Navigation"](https://www.g2.com/survey_responses/edgescan-review-12218850)**

**Rating:** 5.0/5.0 stars

_— Simon L._

[Read full review](https://www.g2.com/survey_responses/edgescan-review-12218850)

#### What Are G2 Users Discussing About Edgescan?

- [What is edgescan used for?](https://www.g2.com/discussions/what-is-edgescan-used-for) - 1 comment

### [Strobes Security](https://www.g2.com/products/strobes-security/reviews)

Strobes is an AI-driven exposure management platform designed to help organizations streamline their security operations by unifying various security methodologies, including Attack Surface Management (ASM), Application Security Posture Management (ASPM), Risk-Based Vulnerability Management (RBVM), and Penetration Testing as a Service (PTaaS). This comprehensive solution provides users with a holistic view of their security posture, enabling them to identify, assess, and respond to potential risks and vulnerabilities effectively. Targeted primarily at security teams and IT professionals, Strobes caters to organizations of all sizes that require a robust approach to managing their security exposure. The platform is particularly beneficial for those who need to navigate the complexities of modern security environments, where multiple tools and processes can lead to fragmented insights. By consolidating various security functions into a single workflow, Strobes empowers users to make informed decisions based on a complete understanding of their risk landscape. One of the key features of Strobes is its extensive integration capabilities, boasting over 120 integrations with existing security tools and systems. This allows organizations to pull findings from disparate sources into a single view, enriching data with contextual information that enhances the relevance of insights. The platform's advanced correlation capabilities help identify relationships between different vulnerabilities and risks, enabling security teams to prioritize their remediation efforts effectively. The user-friendly dashboards in Strobes serve as a central hub for monitoring security activities, encompassing everything from asset discovery and vulnerability insights to Service Level Agreement (SLA) tracking and ticketing. This comprehensive visibility supports continuous prioritization and fix validation, allowing teams to address the most critical issues first. By automating triage processes, Strobes ensures that real risks and exposures are highlighted, facilitating a more efficient response to potential threats. Overall, Strobes stands out in the exposure management landscape by providing a cohesive and intelligent approach to security management. Its ability to unify various methodologies, coupled with powerful automation and integration features, positions it as a valuable tool for organizations seeking to enhance their security posture and effectively manage their exposure to risks.

**Average Rating:** 4.6/5.0

**Total Reviews:** 34

#### How Do G2 Users Rate Strobes Security?

- **Has the product been a good partner in doing business?:** 9.4/10 (Category avg: 9.4/10)
- **Performance and Reliability:** 8.3/10 (Category avg: 9.2/10)
- **Vulnerability Scan:** 9.8/10 (Category avg: 9.1/10)

#### Who Is the Company Behind Strobes Security?

- **Seller:** [Strobes Security Inc](https://www.g2.com/sellers/strobes-security-inc)
- **Company Website:** www.strobes.co
- **Year Founded:** 2019
- **HQ Location:** Plano, US
- **Twitter:** @StrobesHQ  
218 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=f9bd3984d9a343de887a22a2403ea2381378c1c59707d61385d0ce4e66687075&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fstrobeshq&secure%5Burl_type%5D=linkedin_company_website)  
97 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Computer Software
- **Company Size:** 37% Large, 37% Medium

#### What Do G2 Reviewers Say About Strobes Security?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **thorough vulnerability identification** by Strobes, appreciating detailed insights and actionable remediation suggestions.
- Users commend Strobes Security for its **robust vulnerability detection** , providing precise fixes that enhance security efficiency.
- Users value the **comprehensive security insights** provided by Strobes, enhancing vulnerability management and productivity significantly.
- Users value the **proactive customer support** of Strobes Security, noting quick responses and detailed follow-ups for issues.
- Users find Strobes Security's **ease of use** refreshing, with a clean interface streamlining vulnerability management effectively.

##### Cons

- Users criticize the **inadequate reporting** of Strobes Security, highlighting the need for improved transparency and customization options.
- Users find the **limited customization options** of Strobes Security challenging, affecting initial setup and usability.
- Users find Strobes Security's **poor usability** frustrating, noting a steep learning curve and difficulty in navigating features.
- Users find the **reporting issues** in Strobes Security frustrating, lacking transparency and flexibility for effective data management.
- Users find the **UI complex** , noting a learning curve for customization and slow loading for advanced features.

#### What Are Recent G2 Reviews of Strobes Security?

**["Valuable Security Assessments with Practical Findings"](https://www.g2.com/survey_responses/strobes-security-review-12795666)**

**Rating:** 4.5/5.0 stars

_— Apoorva J._

[Read full review](https://www.g2.com/survey_responses/strobes-security-review-12795666)

**["Comprehensive and Reliable Attack Surface Management Solution"](https://www.g2.com/survey_responses/strobes-security-review-12638010)**

**Rating:** 5.0/5.0 stars

_— Divya D._

[Read full review](https://www.g2.com/survey_responses/strobes-security-review-12638010)

### [Cyver Core](https://www.g2.com/products/cyver-core/reviews)

Cyver Core is a pentest collaboration and management platform to digitize, automate, and optimize manual work for pentest firms, while enabling Pentest-as-a-Service delivery. Cyver Core offers pentest report automation, branded client portals, pentest management, team management, and more.

**Average Rating:** 4.7/5.0

**Total Reviews:** 19

#### How Do G2 Users Rate Cyver Core?

- **Has the product been a good partner in doing business?:** 9.7/10 (Category avg: 9.4/10)
- **Performance and Reliability:** 7.9/10 (Category avg: 9.2/10)
- **Vulnerability Scan:** 8.3/10 (Category avg: 9.1/10)
- **Extensibility:** 8.6/10 (Category avg: 8.7/10)

#### Who Is the Company Behind Cyver Core?

- **Seller:** [Cyver](https://www.g2.com/sellers/cyver)
- **Year Founded:** 2020
- **HQ Location:** Amsterdam, NL
- **Twitter:** @cyver\_io  
42 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=c02064fb3f1e1bd73897c0a846252cf2f33eee5052f1fd0eb8508ff4c0d9d495&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F37212589&secure%5Burl_type%5D=linkedin_company_website)  
10 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Computer & Network Security
- **Company Size:** 74% Small, 21% Medium

#### What Do G2 Reviewers Say About Cyver Core?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **enhanced pentesting efficiency** of Cyver Core, enabling streamlined workflows and reduced manual effort significantly.
- Users commend the **reporting quality** of Cyver Core, highlighting its efficiency in communication and streamlined workflows.
- Users appreciate the **seamless communication** in Cyver Core, enhancing workflow and client interactions significantly.
- Users praise the **fast and helpful customer support** of Cyver Core, enhancing their overall experience and collaboration.
- Users value the **exceptional cybersecurity features** of Cyver Core, enhancing pentesting efficiency and customer experience.

##### Cons

- Users experience **limited customization** options in Cyver Core, restricting their ability to tailor features to specific needs.
- Users occasionally face **technical issues** and stability concerns, impacting the overall performance of Cyver Core.
- Users find the **poor documentation** leads to confusion, despite the team's efforts to address bugs promptly.
- Users report a **poor interface design** in Cyver Core, with non-intuitive elements affecting user experience.
- Users report experiencing **slow performance** at times on Cyver Core, impacting overall usability and efficiency.

#### What Are Recent G2 Reviews of Cyver Core?

**["Cyver Core Streamlines Pen Test Reporting with Professional, Consistent Deliverables"](https://www.g2.com/survey_responses/cyver-core-review-13182904)**

**Rating:** 5.0/5.0 stars

_— Martin C._

[Read full review](https://www.g2.com/survey_responses/cyver-core-review-13182904)

**["Cyver Core Streamlines Pentesting with an Intuitive, All-in-One Platform"](https://www.g2.com/survey_responses/cyver-core-review-13144075)**

**Rating:** 5.0/5.0 stars

_— David M._

[Read full review](https://www.g2.com/survey_responses/cyver-core-review-13144075)

#### What Are G2 Users Discussing About Cyver Core?

- [What is Cyver Core used for?](https://www.g2.com/discussions/what-is-cyver-core-used-for)

### [Acunetix by Invicti](https://www.g2.com/products/acunetix-by-invicti/reviews)

Acunetix (by Invicti) is an automated application security testing tool that enables small security teams to tackle huge application security challenges. With fast scanning, comprehensive results, and intelligent automation, Acunetix helps organizations to reduce risk across all types of web applications, websites, and APIs. With Acunetix, security teams can: - Save time and resources by automating manual security processes - Work more seamlessly with developers, or embrace DevSecOps by integrating directly into development tools - Feel confident that every web application has been crawled entirely thanks to DAST + IAST scanning and intelligent crawling technology - Finally, make web application and API security a priority and not just an add-on with a solution that is dedicated to application and API security 100% of the time You can depend on Acunetix to meet your organization’s needs today and face the challenges of modern web technology together tomorrow.

**Average Rating:** 4.1/5.0

**Total Reviews:** 100

#### How Do G2 Users Rate Acunetix by Invicti?

- **Has the product been a good partner in doing business?:** 8.2/10 (Category avg: 9.4/10)
- **Performance and Reliability:** 8.1/10 (Category avg: 9.2/10)
- **Vulnerability Scan:** 8.6/10 (Category avg: 9.1/10)
- **Extensibility:** 7.4/10 (Category avg: 8.7/10)

#### Who Is the Company Behind Acunetix by Invicti?

- **Seller:** [Invicti Security](https://www.g2.com/sellers/invicti-security-04cb0d3d-fd96-45b2-83dc-2038fc9dac92)
- **Company Website:** www.invicti.com
- **Year Founded:** 2018
- **HQ Location:** Austin, Texas
- **Twitter:** @InvictiSecurity  
2,557 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=3c6c2278d6d9ef248056074aabb5416f9e0b5bf217ea8a7bfb87419d2894bc76&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Finvicti-security%2Fpeople%2F&secure%5Burl_type%5D=linkedin_company_website)  
335 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Information Technology and Services, Computer Software
- **Company Size:** 40% Large, 34% Medium

#### What Do G2 Reviewers Say About Acunetix by Invicti?

_AI-generated summary from verified user reviews_

##### Pros

- Users appreciate the **accurate and fast vulnerability detection** of Acunetix, enhancing security with minimal false positives.
- Users value the **ease of use** of Acunetix, making vulnerability scanning and integration into workflows seamless.
- Users value Acunetix for its **robust security capabilities** , effectively enhancing web application safety with automatic vulnerability detection.
- Users commend the **accurate vulnerability identification** of Acunetix, enhancing web application security and ease of use.
- Users commend the **accuracy of results** from Acunetix, enhancing web application security with reliable vulnerability detection.

##### Cons

- Users find Acunetix to be **expensive** , especially challenging for smaller teams or projects with limited budgets.
- Users find the **complexity in setup and resource consumption** of Acunetix challenging, especially for large applications.
- Users find the **complex setup** of Acunetix challenging, especially for initial configurations and tool integrations.
- Users find the **slow scanning** process frustrating, especially during extensive audits of large web applications.
- Users find **difficult customization** to be a challenge, requiring technical expertise and patience for effective integration and setup.

#### What Are Recent G2 Reviews of Acunetix by Invicti?

**["Powerful Security Scanning Made Easy with Acunetix"](https://www.g2.com/survey_responses/acunetix-by-invicti-review-11964967)**

**Rating:** 5.0/5.0 stars

_— Deepesh V._

[Read full review](https://www.g2.com/survey_responses/acunetix-by-invicti-review-11964967)

**["Effortless Vulnerability Detection That Fits Seamlessly into DevSecOps"](https://www.g2.com/survey_responses/acunetix-by-invicti-review-11909125)**

**Rating:** 5.0/5.0 stars

_— Ranit D._

[Read full review](https://www.g2.com/survey_responses/acunetix-by-invicti-review-11909125)

#### What Are G2 Users Discussing About Acunetix by Invicti?

- [How has Acunetix supported your web security efforts, and what features do you rely on most?](https://www.g2.com/discussions/how-has-acunetix-supported-your-web-security-efforts-and-what-features-do-you-rely-on-most)
- [What is Acunetix by Invicti used for?](https://www.g2.com/discussions/what-is-acunetix-by-invicti-used-for)

### [Titania Nipper InfraSight](https://www.g2.com/products/titania-nipper-infrasight/reviews)

Award-winning Risk-Based Vulnerability Management. Nipper InfraSight analyzes network device configurations in the way Advances Persistent Threat (APT) groups do, to identify misconfigurations that could create attack paths. This analysis offers unparalleled, pen-tester accuracy, finding critical vulnerabilities in firewalls, routers, switches that other tools simply cannot see. Our solutions then prioritize the biggest risks to your business and provide device-specific remediation guidance, right down to specific command line prompts.  By analyzing device configurations against key compliance standards and security frameworks (including STIGs/CIS Benchmarks/PCI DSS/CMMC/CORA/NIST SP 800-53), Nipper solutions tell you precisely which devices are at risk of failing, how significant that risk is, and how you can solve it, with auditor-ready reports. Whether your focus is taking pragmatic, risk-based security measures to minimize known vulnerabilities or ensuring compliance with industry security standards, Nipper solutions provide the targeted insights you need. No other security provider looks at the network in the same way. That’s why Nipper can uniquely provide the network configuration coverage that organizations urgently require. 30+ U.S. federal agencies and 800+ organizations globally trust Nipper solutions to deliver vulnerability analysis and compliance automation while supporting air-gapped environments, sovereign cloud requirements, and complex regulated infrastructures.

**Average Rating:** 4.3/5.0

**Total Reviews:** 28

#### How Do G2 Users Rate Titania Nipper InfraSight?

- **Has the product been a good partner in doing business?:** 9.2/10 (Category avg: 9.4/10)
- **Performance and Reliability:** 10.0/10 (Category avg: 9.2/10)
- **Vulnerability Scan:** 10.0/10 (Category avg: 9.1/10)
- **Extensibility:** 10.0/10 (Category avg: 8.7/10)

#### Who Is the Company Behind Titania Nipper InfraSight?

- **Seller:** [Titania](https://www.g2.com/sellers/titania)
- **Company Website:** www.titania.com
- **Year Founded:** 2009
- **HQ Location:** London, GB
- **Twitter:** @TitaniaLtd  
2,821 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=092ac01f8e1b12cc1191c9739568f5ffa647760a0f4d324aec6eacb0f0e658fd&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Ftitania-ltd%2F&secure%5Burl_type%5D=linkedin_company_website)  
104 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 43% Large, 25% Medium

#### What Do G2 Reviewers Say About Titania Nipper InfraSight?

_AI-generated summary from verified user reviews_

##### Pros

- Users find the **ease of use** of Titania Nipper InfraSight remarkable, appreciating its straightforward and user-friendly design.
- Users appreciate the **reporting quality** of Titania Nipper InfraSight, as it provides clear assessments and actionable recommendations.
- Users value the **scanning efficiency** of Titania Nipper InfraSight, enabling quick detection of network misconfigurations.
- Users value the **effective vulnerability detection** in Titania Nipper, providing actionable insights and continuous improvement for network security.
- Users value the **clear and user-friendly interface** of Titania Nipper InfraSight, enhancing their assessment experience significantly.

##### Cons

- Users express concerns about the **licensing model** , noting it requires a minimum of 100 devices, complicating usage.
- Users encounter issues with **false positives** , leading to confusion and frustration when checking actual device findings.
- Users find the **lack of cloud support** frustrating, particularly with device-specific recommendations that are often inaccurate.
- Users face **limited compatibility** issues, resulting in the need for maintaining outdated versions and difficulties with integrations.
- Users note the **limited device support** of Titania Nipper InfraSight, which complicates maintenance and functionality.

#### What Are Recent G2 Reviews of Titania Nipper InfraSight?

**["Clean, Easy Reporting Time saving for audits"](https://www.g2.com/survey_responses/titania-nipper-infrasight-review-13136919)**

**Rating:** 5.0/5.0 stars

_— Verified User in Information Technology and Services_

[Read full review](https://www.g2.com/survey_responses/titania-nipper-infrasight-review-13136919)

**["Titania Nipper InfraSight Delivers Fast, Audit-Ready Insights and Clear Remediation"](https://www.g2.com/survey_responses/titania-nipper-infrasight-review-13135720)**

**Rating:** 5.0/5.0 stars

_— Shauna S._

[Read full review](https://www.g2.com/survey_responses/titania-nipper-infrasight-review-13135720)

#### What Are G2 Users Discussing About Titania Nipper InfraSight?

- [What is Nipper Titania?](https://www.g2.com/discussions/what-is-nipper-titania) - 1 comment

### [APPCHECK](https://www.g2.com/products/appcheck/reviews)

AppCheck is a Dynamic Application Security Testing (DAST) and network vulnerability testing solution, developed and supported by experienced penetration testers. We approach security testing as a hacker would, leveraging multiple proprietary crawling engines to analyse target behaviour across both modern and traditional technologies, including Single Page Applications (SPAs), APIs, and complex authentication flows such as SSO, 2FA, and TOTP. Organisations can conduct unlimited security assessments across Web Applications, SPAs, APIs, cloud services, networks, across internal or external assets. Supporting production and UAT testing, AppCheck also helps organisations ‘shift left’ by integrating with CI/CD pipelines and build servers, including ADO, GitHub, Jenkins, TeamCity, CircleCI, TravisCI, Bamboo, and GitLab CI/CD. Allowing automated security testing throughout development, identifying risks as soon as changes are introduced. AppCheck are proud to be part of the CVE Numbering Authority (CNA), contributing to global security research

**Average Rating:** 4.6/5.0

**Total Reviews:** 67

#### How Do G2 Users Rate APPCHECK?

- **Has the product been a good partner in doing business?:** 9.5/10 (Category avg: 9.4/10)
- **Performance and Reliability:** 9.3/10 (Category avg: 9.2/10)
- **Vulnerability Scan:** 9.5/10 (Category avg: 9.1/10)
- **Extensibility:** 8.3/10 (Category avg: 8.7/10)

#### Who Is the Company Behind APPCHECK?

- **Seller:** [APPCHECK](https://www.g2.com/sellers/appcheck)
- **Company Website:** www.appcheck-ng.com
- **Year Founded:** 2014
- **HQ Location:** Leeds, GB
- **Twitter:** @AppcheckNG  
649 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=549c2b4af47894c058c47c213d419ff9cf92c7465ec55dd23e8a822f291b824c&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fappcheck-ng-ltd%2F&secure%5Burl_type%5D=linkedin_company_website)  
106 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Computer Software, Information Technology and Services
- **Company Size:** 49% Medium, 30% Small

#### What Do G2 Reviewers Say About APPCHECK?

_AI-generated summary from verified user reviews_

##### Pros

- Users highlight the **effective vulnerability detection** of AppCheck, which outshines competitors in thoroughness and ease of use.
- Users find the **ease of use** of AppCheck invaluable, simplifying complex security processes effectively and efficiently.
- Users appreciate the **excellent pricing and functionality** of AppCheck, enhancing their vulnerability management and reporting capabilities.
- Users commend AppCheck for its **exceptional pentesting efficiency** , significantly enhancing vulnerability detection and streamlining security processes.
- Users appreciate the **automated scanning** of AppCheck, benefiting from detailed reports and seamless integration with CI/CD pipelines.

##### Cons

- Users find the **poor customer support** frustrating, as they must submit tickets for simple changes.
- Users feel that **UX improvement** is necessary, particularly in scoring systems, customization, and starting points for scans.
- Users find the **API endpoint changes cumbersome** , relying on service requests instead of having direct control.
- Users find **difficult customization** options in AppCheck, limiting the ability to tailor reports and vulnerability scoring.
- Users note a significant **difficult learning curve** with Appcheck, which can hinder initial usability and efficiency.

#### What Are Recent G2 Reviews of APPCHECK?

**["Great onboarding experience and trial"](https://www.g2.com/survey_responses/appcheck-review-11771398)**

**Rating:** 4.0/5.0 stars

_— Tyler S._

[Read full review](https://www.g2.com/survey_responses/appcheck-review-11771398)

**["Effortless Vulnerability Management with APPCHECK"](https://www.g2.com/survey_responses/appcheck-review-12463853)**

**Rating:** 5.0/5.0 stars

_— Aaron H._

[Read full review](https://www.g2.com/survey_responses/appcheck-review-12463853)

### [Qodex.ai](https://www.g2.com/products/qodex-ai/reviews)

Qodex is a continuous testing platform that runs your test scenarios against your real app on every pull request and deploy, then shows you exactly what broke with the failing request, response, and screenshot.

**Average Rating:** 4.9/5.0

**Total Reviews:** 60

#### How Do G2 Users Rate Qodex.ai?

- **Has the product been a good partner in doing business?:** 9.4/10 (Category avg: 9.4/10)

#### Who Is the Company Behind Qodex.ai?

- **Seller:** [QodexAI](https://www.g2.com/sellers/qodexai)
- **Company Website:** www.qodex.ai
- **Year Founded:** 2023
- **HQ Location:** San Francisco, California
- **LinkedIn® Page:** [linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=d038e99b692165644ae7d01154b91132e72eb2c204e81cb300af5f1c72c22ce8&secure%5Burl%5D=https%3A%2F%2Flinkedin.com%2Fcompany%2Fqodexai&secure%5Burl_type%5D=linkedin_company_website)  
13 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Computer Software, Information Technology and Services
- **Company Size:** 75% Small, 20% Medium

#### What Do G2 Reviewers Say About Qodex.ai?

_AI-generated summary from verified user reviews_

##### Pros

- Users highlight the **ease of use** of Qodex.ai, making it accessible for both technical and non-technical teams.
- Users value the **automation capabilities** of Qodex.ai, significantly enhancing efficiency in managing API testing processes.
- Users value the **ease of test case writing** with Qodex.ai, enhancing efficiency for developers and product managers.
- Users value the **high testing efficiency** of Qodex.ai, achieving 90% code coverage with minimal manual effort.
- Users find Qodex.ai **incredibly helpful** for quick integration and effective scenario analysis, boosting efficiency significantly.

##### Cons

- Users experience **slow loading** times with the chatbot and reports, affecting overall efficiency and responsiveness.
- Users find the **poor documentation** a barrier to fully leverage Qodex.ai’s capabilities in advanced testing scenarios.
- Users experience **slow performance** with delayed chatbot responses and longer load times for reports on larger projects.
- Users report **bug issues** including repeated test cases and suggest improvements for bug reporting and flagging accuracy.
- Users report **bug reporting issues** , suggesting improvements for tagging and accuracy of critical and non-critical bugs.

#### What Are Recent G2 Reviews of Qodex.ai?

**["Effortless AI Testing Automation That Accelerates Development"](https://www.g2.com/survey_responses/qodex-ai-review-12088697)**

**Rating:** 4.5/5.0 stars

_— Abhilash S._

[Read full review](https://www.g2.com/survey_responses/qodex-ai-review-12088697)

**["Effortless Automation and Insightful AI Testing with Qodex.ai"](https://www.g2.com/survey_responses/qodex-ai-review-12065938)**

**Rating:** 4.5/5.0 stars

_— Anshuk K._

[Read full review](https://www.g2.com/survey_responses/qodex-ai-review-12065938)

- &lsaquo; Prev‹ Prev
- 1
- [2](/categories/penetration-testing-tools/free?open_modal_url=%2Fproducts%2Findusface-was%2Fwishlists%3Fhost_path%3D%252Fcategories%252Fpenetration-testing-tools%252Ffree%26source%3Dcategory&order=g2_score&page=2#product-list)
- [3](/categories/penetration-testing-tools/free?open_modal_url=%2Fproducts%2Findusface-was%2Fwishlists%3Fhost_path%3D%252Fcategories%252Fpenetration-testing-tools%252Ffree%26source%3Dcategory&order=g2_score&page=3#product-list)
- [Next &rsaquo;Next ›](/categories/penetration-testing-tools/free?open_modal_url=%2Fproducts%2Findusface-was%2Fwishlists%3Fhost_path%3D%252Fcategories%252Fpenetration-testing-tools%252Ffree%26source%3Dcategory&order=g2_score&page=2#product-list)

Spotlight Categories

[User Research Tools](https://www.g2.com/categories/user-research)

[VoIP Providers](https://www.g2.com/categories/voip)

[HCM Software](https://www.g2.com/categories/hcm-software)

[Accounts Payable Automation Software](https://www.g2.com/categories/ap-automation)

[Employer of Record (EOR) Software](https://www.g2.com/categories/employer-of-record-eor)

Similar Categories

- [Static Code Analysis](/categories/static-code-analysis)
- [Container Security](/categories/container-security-tools)
- [Dynamic Application Security Testing (DAST)](/categories/dynamic-application-security-testing-dast)
- [Interactive Application Security Testing (IAST)](/categories/interactive-application-security-testing-iast)

- [Log Analysis](/categories/log-analysis)
- [Secure Code Review](/categories/secure-code-review)
- [Software Bill of Materials (SBOM)](/categories/software-bill-of-materials-sbom)
- [Software Composition Analysis](/categories/software-composition-analysis)

- [Static Application Security Testing (SAST)](/categories/static-application-security-testing-sast)
- [Vulnerability Scanner](/categories/vulnerability-scanner)
- [Web Application Firewall (WAF)](/categories/web-application-firewall-waf)

[Browse Penetration Testing Themes](/categories/penetration-testing-tools/themes)