README.md in Chinese 中文
Scanners Box is a collection of open source scanners which are from the github platform, including subdomain enumeration, database vulnerability scanners, weak passwords or information leak scanners, port scanners, fingerprint scanners, and other large scale scanners, modular scanner etc. For other Well-known scanning tools, such as: awvs,nmap,w3af will not be included in the scope of collection.
Subdomain Scanners or Enumeration Tools
Database Vulnerability Scanners or Enumeration Tools
Weak Passwords/Users Scanners or Enumeration Tools
IoT Detecting Tools or Scanners
Reflect or DOM-Based XSS Scanners
Enterprise Assets Management or Leaks Gather Tools
Webshell Detection or Malware Analysis Tools
Intranet Penetration Tools or Scanners
Middleware Scanners or Fingerprint Tools
- https://github.com/ring04h/wyportmap (Target port scanning + system service fingerprint recognition)
- https://github.com/ring04h/weakfilescan (Dynamic multi - thread sensitive information leak detection tool)
- https://github.com/EnableSecurity/wafw00f (Identify and fingerprint Web Application Firewall)
- https://github.com/rbsec/sslscan (Tests SSL/TLS enabled services to discover supported cipher suites)
- https://github.com/urbanadventurer/whatweb (Website Fingerprinter)
- https://github.com/tanjiti/FingerPrint (Another Website Fingerprinter)
- https://github.com/nanshihui/Scan-T (A new spider based on python with more function including Network fingerprint search)
- https://github.com/OffensivePython/Nscan (Fast internet-wide scanner)
- https://github.com/ywolf/F-NAScan (Scanning a network asset information script)
- https://github.com/ywolf/F-MiddlewareScan (A vulnerability detection scripts for middleware services)
- https://github.com/maurosoria/dirsearch (Web path scanner)
- https://github.com/x0day/bannerscan (C-segment Banner with path scanner)
- https://github.com/RASSec/RASscan (Internal network port speed scanners)
- https://github.com/3xp10it/bypass_waf (Automatic WAF Bypass Fuzzing Tool)
- https://github.com/3xp10it/xcdn (Try to find out the actual ip behind cdn)
- https://github.com/Xyntax/BingC (Based on the Bing search engine C / side-stop query, multi-threaded, supported API)
- https://github.com/Xyntax/DirBrute (Multi-thread WEB directory enumerating tool)
- https://github.com/zer0h/httpscan (A HTTP Service detector with a crawler from IP/CIDR)
- https://github.com/lietdai/doom (Distributed task distribution of the ip port vulnerability scanner based on thorn)
- https://github.com/chichou/grab.js (Fast TCP banner grabbing like zgrab, but supports much more protocol)
- https://github.com/Nitr4x/whichCDN (Detect if a given website is protected by a Content Delivery Network)
- https://github.com/secfree/bcrpscan (Base on crawler result web path scanner)
- https://github.com/mozilla/ssh_scan (A prototype SSH configuration and policy scanner)
- https://github.com/18F/domain-scan (Scans domains for data on their HTTPS configuration and assorted other things)
- https://github.com/ggusoft/inforfinder (A tool made to collect information of any domain pointing at a server and fingerprinter)
- https://github.com/boy-hack/gwhatweb (Fingerprinter for CMS)
- https://github.com/Mosuan/FileScan (Sensitive files scanner)
- https://github.com/Xyntax/FileSensor (Dynamic file detection tool based on crawler)
- https://github.com/deibit/cansina (Web Content Discovery Tool)
- https://github.com/0xbug/Howl (Network equipment, web services, fingerprint scanner and database)
- https://github.com/mozilla/cipherscan (A very simple way to find out which SSL ciphersuites are supported by a target)
- https://github.com/xmendez/wfuzz (Web application fuzzer/framework and web content scanner)
- https://github.com/s0md3v/Breacher (An advanced multithreaded admin panel finder written in python)
- https://github.com/ztgrace/changeme (A default credential scanner)
- https://github.com/medbenali/CyberScan (An open source penetration testing tool that can analyse packets,decoding,scanning ports, pinging and geolocation of an IP)
- https://github.com/m0nad/HellRaiser (HellRaiser scan with nmap then correlates cpe's found with cve-search to enumerate vulnerabilities)
- https://github.com/scipag/vulscan (Advanced vulnerability scanning with Nmap NSE)
- https://github.com/jekyc/wig (WebApp Information Gatherer)
- https://github.com/eldraco/domain_analyzer (Analyze the security of any domain by finding all the information possible)
- https://github.com/cloudtracer/paskto (Passive directory scanner and web crawler based on Nikto DB)
- https://github.com/zerokeeper/WebEye (A web service and WAF fingerprinter)
- https://github.com/m3liot/shcheck (Just check security headers on a target website)
- https://github.com/aipengjie/sensitivefilescan (A speed and awesome sensitive files scanner)
- https://github.com/fnk0c/cangibrina (A fast and powerfull dashboard (admin) finder)
- https://github.com/n4xh4ck5/CMSsc4n (Tool to identify if a domain is a CMS such as Wordpress, Moodle, Joomla)
- https://github.com/Ekultek/WhatWaf (Detect and bypass web application firewalls and protection systems)
- https://github.com/dzonerzy/goWAPT (Go Web Application Penetration Test and web application fuzz tool)
- https://github.com/blackye/webdirdig (Sensitive files scanner)
- https://github.com/GitHackTools/BillCipher (Information Gathering tool for a Website or IP address)
- https://github.com/boy-hack/w8fuckcdn (Get the website real IP address by scanning the entire net)
- https://github.com/boy-hack/w11scan (Distributed WEB fingerprint identification platform)
Special Scanners(Just for some special Components)
Wireless Network Scanners
Local Network(Local Area Network) Scanners
Code Review Tools or Scanners
Modular Design Scanners or Vulnerability Detecting Framework
- https://github.com/infobyte/faraday (Collaborative Penetration Test and Vulnerability Management Platform)
- https://github.com/az0ne/AZScanner (Automatic all-around scanner)
- https://github.com/blackye/lalascan (Distributed web vulnerability scanning framework)
- https://github.com/blackye/BkScanner (Distributed, plug-in web vulnerability scanner)
- https://github.com/ysrc/GourdScanV2 (Passive Vulnerability Scanning System)
- https://github.com/netxfly/passive_scan (Realization of Web Vulnerability Scanner Based on http Proxy)
- https://github.com/1N3/Sn1per (Automated Pentest Recon Scanner)
- https://github.com/RASSec/pentestEr_Fully-automatic-scanner (Directional Fully Automated Penetration Testing)
- https://github.com/3xp10it/3xp10it (A automated Penetration Testing Framework)
- https://github.com/Lcys/lcyscan (A vuls scanner,plugins supported)
- https://github.com/Xyntax/POC-T (Penetration Test Plug-in Concurrency Framework)
- https://github.com/v3n0m-Scanner/V3n0M-Scanner (Scanner in Python3.5 for SQLi/XSS/LFI/RFI and other Vulns)
- https://github.com/Skycrab/leakScan (Multiple vuls scan supports Web interface)
- https://github.com/zhangzhenfeng/AnyScan (A automated Penetration Testing Framework)
- https://github.com/Tuhinshubhra/RED_HAWK (An All In One Tool For Information Gathering, SQL Vulnerability Scanning and Crawling. Coded In PHP)
- https://github.com/Arachni/arachni (Web Application Security Scanner Framework)
- https://github.com/juansacco/exploitpack (Exploit Pack - Penetration testing framework GPLv3)
- https://github.com/swisskyrepo/DamnWebScanner (Another web vulnerabilities scanner, this extension works on Chrome and Opera)
- https://github.com/anilbaranyelken/tulpar (Web Vulnerability Scanner written in python,supported multiple web vulnerabilities scan)
- https://github.com/m4ll0k/Spaghetti (A web application security scanner tool,designed to find various default and insecure files, configurations and misconfigurations)
- https://github.com/Yukinoshita47/Yuki-Chan-The-Auto-Pentest (An automated Penetration Testing tool this tool will auditing all standard security test method for you)
- https://github.com/0xsauby/yasuo ( ruby script that scans for vulnerable & exploitable 3rd-party web applications on a network)
- https://github.com/hatRiot/clusterd (application server attack toolkit)
- https://github.com/erevus-cn/pocscan (Open source and distributed web vulnerability scanning framework)
- https://github.com/TophantTechnology/osprey (Distributed web vulnerability scanning framework)
- https://github.com/yangbh/Hammer (A web vulnerability scanner framework)
- https://github.com/Lucifer1993/AngelSword (Web vulnerability scanner framework based on python3)
- https://github.com/secrary/EllaScanner (Passive web scanner,and you can get CVEs related to server’s version)
- https://github.com/zaproxy/zaproxy (One of the world’s most popular free security tools and is actively maintained by hundreds of international volunteers)
- https://github.com/sullo/nikto (Nikto is a web server assessment tool. It is designed to find various default and insecure files, configurations and programs on any type of web server)
- https://github.com/s0md3v/Striker (Striker is an offensive information and vulnerability scanner)
- https://github.com/dermotblair/webvulscan (Written in PHP and can be used to test remote, or local, web applications for security vulnerabilities)
- https://github.com/alienwithin/OWASP-mth3l3m3nt-framework (Penetration testing aiding tool and exploitation framework)
- https://github.com/toyakula/luna (An open-source web security scanner which is based on reduced-code passive scanning framework)
- https://github.com/Manisso/fsociety (A Penetration Testing Framework including Information Gathering,Wireless Testing,Web Hacking and so on)
- https://github.com/boy-hack/w9scan (A web vulnerability scanner framework,running with 1200+ plugins)
- https://github.com/YalcinYolalan/WSSAT (Web Service Security Assessment Tool,provide simple .exe application to use based on windows OS)
- https://github.com/AmyangXYZ/AssassinGo (An extenisble and concurrency pentest framework in Go)
- https://github.com/jeffzh3ng/InsectsAwake (Network Vulnerability Scanner based on Flask)
- https://github.com/m4ll0k/Galileo (Web Application Audit Framework,like metasploit)
- https://github.com/joker25000/Optiva-Framework (Web Application Scanner)
- https://github.com/theInfectedDrake/TIDoS-Framework (The offensive web application penetration testing framework)
Some Tools relate with APT
Some Security Tools relate with ICS & Large network
The purpose of this collection is to provide various types of opensource security scanning tool that can help Internet companies to be more safer.
Wester(Twitter @Zhiyang Zeng) & Martin(Twitter @Martin Chow)
[↑] means update scanner description
[+] means add scanner
[-] means remove scanner
[move] means change scanner category
[ac] means add someone to Acknowledgments
[other] means other actions
Do not use for illegal purposes.
We welcome everyone to contribute,you can open an issue for this if you have some new idea about this project or you have found some valuable scanner,and then I will add your name to Acknowledgments.
Please specify reproduced from https://github.com/We5ter/Scanners-Box , and please do not republish this article for profit.
- @0c0c0f
- @藏形匿影(wacai.com)
- @Mottoin team
- @BlackHole
- @CodeColorist
- @3xp10it
- @re4lity
- @s0md3v
- @boy-hack
- @marsII
- @tom0li
- @hksanduo
©Sixtant Security Lab 2016-2017