Analyze Your Site

  1. Vulnerability Scanner
  2. Identify servers and software
  3. Detect XSS vulnerabilities
Visibility:
Scan method:
[scan_method]
Some firewalls blocks Nikto. For get true positive results add nikto.online IP addresses (172.96.166.66-172.96.166.70 or CIDR 172.96.166.64/29) to the whitelist

Recent scan history

Site address Scan method Site IP Duration Size Reported
www.royalairmaroc.com Nikto scan (max 60 sec) 150.171.109.152 61s 1.48 KB 5 item(s)
www.smythstoys.com Nikto scan (max 60 sec) 45.60.149.51 84s 1.7 KB 7 item(s)
telagemnowaygroup.onrender.com Nikto scan (max 60 sec) 216.24.57.16 61s 2 KB 8 item(s)
telagemnowaygroup.onrender.com Nikto scan (max 60 sec) 216.24.57.18 61s 2 KB 8 item(s)
misteri88-mbuncit.pages.dev Nikto scan (max 60 sec) 172.66.47.122 61s 2.05 KB 8 item(s)
pgmett.com Nikto scan (max 60 sec) 87.246.38.4 61s 1.35 KB 5 item(s)
support.blancco.com Nikto scan (max 60 sec) 104.16.107.101 90s 2.14 KB 8 item(s)
kulchaking.com Nikto scan (max 60 sec) 103.152.248.42 61s 1.4 KB 5 item(s)
cellebrite.com Nikto scan (max 60 sec) 13.249.182.88 61s 1.44 KB 5 item(s)
calccecalcados.cloudfortyus.com.br Nikto scan (max 60 sec) 177.136.248.238 61s 1.56 KB 6 item(s)

All the Features

Discover a comprehensive platform designed for ultimate flexibility and security. Packed with premium features, this solution empowers your team to tackle vulnerabilities efficiently while enhancing customer communication.

Accessible on Any Device

Dedicated Customer Support

Domain subversion detect

Protocol check

Sensitive file check

Sensitive info check

Misconfig detect

Test page scan

CSRF token check

SSL cert validation

Server obfuscation

HTTP methods test

Banner grab

No Installation Required

Effortless Scalability

Intuitive Dashboard

Seamless API Integrations

Redirect handling

XSS detect

Response handle

Error detect

Error log check

Robots.txt parse

HTTP options scan

Insecure HTTP headers

Config check

Vulnerability scan

Outdated server check

Risky file detection

Information Disclosure

Server software scan

SSL check

Web server ID

Server version ID

Framework check

Language path scan

CVE monitor

Temp file detect

Backup file check

Default file check

Directory traversal check

Full scan coverage

SSL/TLS check

Cookies check

Nikto Online

Why nikto.online?

With Nikto Online Scanner, you can swiftly assess the security of your web servers. 

Web-Based Operation

Perform all tasks directly from the web interface. No need for complex setups or installations. Simply access our platform online and conduct security checks conveniently from any device with internet access.

Intuitive Interface

Run Nikto security scanner tool without needing to know any commands. Our user-friendly interface allows you to initiate scans effortlessly, even without extensive technical knowledge.

Latest Updates

Stay ahead of emerging threats by checking security with the latest updates. Our platform ensures that you are equipped with the most up-to-date vulnerability signatures and detection techniques, enhancing the effectiveness of your security assessments.

Useful Links

  • Online SQL injection tool (sqlmap.online)
  • Online Port scanner (portscanner.online)
  • Simulate DDoS Attack Online (ddosattack.online)
  • Online Wordpress Security Scanner (wpscan.online)

Latest Cybersecurity News & Insights

Explore recent news, in-depth articles, and expert analysis on vulnerability scanning, penetration testing, and emerging attacks.

Attackers Bypass WAFs to Exploit Oracle PeopleSoft Flaw and Deploy Web Shells

Google is warning of renewed mass exploitation of a known security vulnerability in Oracle ...

Zero Trust for AI Agents Starts With Fixing Zero Visibility

The way we talk about AI agents is shifting, and the way we implement them requires an even ...

Elementor CSRF Flaw Lets Attackers Take Over Sites After Admin Clicks Crafted Link

Details have emerged about a high-severity security flaw in the Elementor Website Builder ...

SharePoint RCE and MikroTik RouterOS Flaws Actively Exploited in the Wild

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added two security ...

Roundcube Pre-Auth SQL Injection Flaw Actively Exploited in the Wild

The Canadian Centre for Cyber Security has warned that a now-patched Roundcube Webmail ...

‘SalesBleed’ Flaws in Salesforce Agentforce Enabled Zero-Click Data Exfiltration

Three vulnerabilities in Salesforce Agentforce allowed hackers to hijack trusted agents, steal ...

Roundcube Webmail Vulnerability in Attackers’ Crosshairs

Tracked as CVE-2026-48842, the exploited bug is an SQL injection that can be exploited without ...

WSO2 and Adobe Commerce Flaws Exploited in Attacks, Added to CISA KEV

The U.S. Cybersecurity and Infrastructure Security Agency (CISA), on Thursday, added two ...