AppSec Dockit is a lightweight, Dockerized, plug-and-play AppSec toolkit designed for web application security testing. It bundles a curated collection of essential tools used by penetration testers, bug bounty hunters, and security researchers—all in one containerized environment.
git clone https://github.com/dudisamarel/appsec-dockit
cd appsec-dockit
docker build . -t pentest-toolkit
docker run -it pentest-toolkit- tmux
- git
- nmap
- whois
- nikto
- dnsutils
- dnsrecon
- hydra
- sqlmap
- dirb
- awscli
- dnsenum
- Sublist3r
- theHarvester
- XSStrike
- MassDNS
- WhatWeb
- gobuster
- subfinder
- katana
- nuclei
- assetfinder
- httpx
- waybackurls
- amass
- puredns
- anew
- arjun
- fierce
- wfuzz
- feroxbuster
- SecLists
- zsh
- oh-my-zsh