Git Product home page Git Product logo

scant3r's Introduction



ScanT3r

Scant3r WikiMain UsageFor DevelopersMediaCollaboratorsTIPS


Description

scant3r is a module-based web security tool, our goal is to make customizable tool with providing many functions and features that what you need for write a security module for an example (cookie parser/http request class/opts parsing etc ..) to make write a security module easy and simple for saving your time also we made it customizable as possible for example you can change what you want for example options parser you can change/add more options by a config file and scanning map content_types help message logos etc ...

How can I benefit from this project?

  • for bug bounty hunters :
    you can use it with the main modules in the table below or write your own module
  • for developers :
    you can read the source code and try to understand how to make a project like this, or you can get all functions of scant3r in your projects (based on) and try to add more features with scant3r team support :D

Modules

this the modules we providing for our community for you need new module open an issue with Feature request template or write your own module ;D

module Short description
lorsrf Bruteforcing on Hidden parameters to find SSRF vulnerability
ssrf simple ssrf scanner
cve cve checks module wtih python scripts and YAML template
firebase checks for public firebase database (write/read) permission
paths checking for custom paths
xss inject xss payload in parameter value
sqli simple sqli scanner
rce simple RCE scanner
xss_param inject xss payload in parameter name
ssti simple server side template injection scanner
exec run multi tasks for automate your work/recon
injheaders inject blind xss and custom payloads in custom headers (headers.yaml&payload.yaml)
reflect find reflected parameters
secrets find interesting variables content (API Keys , Debug Mode , etc ..)

Requirements

  • python >= 3.6
  • pip
  • Git

install

  • Unix & MS-DOS
$ git clone https://github.com/knassar702/scant3r
$ cd scant3r
$ pip3 install -r requirements.txt
$ ./scant3r.py -h

TODO-Features

Collaborators

wanna to Help us ?

License

Stars Rate

stars


Media

Version: 0.6

Nokia https://www.nokia.com/responsible-disclosure/

IBM https://hackerone.com/ibm

scant3r's People

Contributors

knassar702 avatar mariusvinaschi avatar 0xflotus avatar pdelteil avatar oppsec avatar

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.