Skip to content

[addtool] Tool Vigolium #2048

Description

@j3ssie

[tags]dast,fuzzing,scanner,ai-powered,cves,web-security,oast,agentic-ai,api-security[/tags]
[short_descr]A high-fidelity web vulnerability scanner fusing agentic AI with fast, modular native scanning.[/short_descr]
[link] https://github.com/vigolium/vigolium [/link]
[long_descr]
Features:

Two modes: deterministic Native Scan and AI-driven Agentic Scan, sharing one engine and finding schema

250+ scanner modules (active fuzzing + passive) covering OWASP Top 10 and beyond
Out-of-band testing (OAST) for blind XSS/SSRF/command injection with automatic payload correlation
Value-aware mutation that classifies parameters by semantic type and mutates per intent
Content discovery, Chromium/SPA browser spidering, and active/passive audit phases
Flexible inputs: URLs, OpenAPI/Swagger, Postman, Burp, cURL, HAR
Multi-session authenticated scanning for IDOR/BOLA and privilege-escalation testing
Agentic AI that autonomously plans attacks, runs source-code audits, scans, and triages

[/long_descr]
[image] https://raw.githubusercontent.com/vigolium/docs/refs/heads/main/images/vigolium-main-workbench.png [/image]

Metadata

Metadata

Assignees

No one assigned

    Labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions