Open source pen test tools

I was wondering if anyone has any recommendations for a good database pentesting tool?

I did some research and found and

Has anyone used these tools^?

The big catchalls are:

Backtrack: Open Source Linux Pentesting Distro -


Backtrack is no more. Kali Linux is the maintained version ( Here you got a great list of a lot of pentesting tools SQLmap is great but should be used with caution, and you really need to understand what you’re doing. I suggest reading up on sql injection. Use a intermediate proxy like burp suite ( or zap ( to see what’s happening when making different requests.

1 Like