
Recon that becomes a project
Six live hosts, technologies, URLs, ports and screenshots stay connected to the scope that produced them.
NexHunt turns scattered Linux tools into one continuous web pentesting workflow. Map the surface, validate findings, run focused attacks and keep the evidence together instead of rebuilding context in every terminal.
Local-first · Kali, Debian and Ubuntu · Free edition + lifetime Pro

The interface follows the work: discovery feeds validation, validation feeds exploitation, and confirmed evidence stays attached to the project.
Subdomains, live hosts, ports, URLs, screenshots, CVEs and endpoints in one project.
Nuclei, CORS, API, repository and WordPress checks collect findings by severity.
Focused CORS, GraphQL, injection, brute-force and business-logic workflows.
The AI copilot prioritizes next steps and helps turn validated work into a report.

Six live hosts, technologies, URLs, ports and screenshots stay connected to the scope that produced them.

Bring Nuclei, CORS, JavaScript and GraphQL signals into one severity-aware queue.

Run crafted CORS tests across live hosts and preserve the result beside the target.

Map queries and mutations, compare authenticated and anonymous responses, and surface broken access control.

Run XSS, SQLi, LFI and JavaScript secret workflows without rebuilding the chain by hand.

Prioritize the attack surface, identify quick wins and generate executable next steps from loaded findings.
Start with the free edition, then unlock the full workflow with NexHunt Pro when the project needs automation, bulk testing and AI-assisted analysis.
Use NexHunt only on systems you are authorized to test.