awesome-repositories.com
Blog
awesome-repositories.com

Découvrez les meilleurs dépôts open-source grâce à notre recherche par IA.

ExplorerRecherches sélectionnéesAlternatives open sourceLogiciels auto-hébergésBlogPlan du site
ProjetÀ proposNotre méthodologiePresseServeur MCP
Mentions légalesConfidentialitéConditions d'utilisation
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
testssl avatar

testssl/testssl.sh

0
View on GitHub↗
8,912 stars·1,114 forks·Shell·gpl-2.0·4 vuestestssl.sh↗

Testssl.sh

testssl.sh is a network security tool and SSL/TLS security scanner used to audit server configurations. It functions as a diagnostic utility that validates supported ciphers and protocols to identify cryptographic vulnerabilities and flaws in encrypted communication.

The tool is available as both a command-line utility and a dockerized security scanner, allowing for execution in isolated environments without the need for local dependency installation.

Its capabilities cover SSL configuration auditing and TLS server security analysis. The system exports scan results into structured reports available in HTML, JSON, and CSV formats for security audits and compliance documentation.

Features

  • SSL and TLS Security - Audits SSL/TLS configurations and certificates to ensure secure communication and correct server setup.
  • SSL/TLS Analyzers - Performs deep security analysis on server SSL and TLS configurations to identify cryptographic flaws.
  • Network Encryption Auditors - Audits the strength of network encryption and validates supported ciphers to ensure secure communication.
  • Network Security Auditing - Produces detailed reports on server encryption standards to document security compliance for audits.
  • TLS Handshake Probing - Utilizes OpenSSL to initiate handshakes and analyze the supported cryptographic primitives of a server.
  • Containerized Security Environments - Enables the execution of security checks within an isolated Docker container to streamline deployment.
  • Data File Generators - Generates structured scan results in HTML, JSON, and CSV formats for archival and analysis.
  • Automated Testing Containers - Provides a Docker-based execution environment to ensure consistent dependencies and isolation during security scans.
  • Scan Result Exporters - Exports scan findings into structured HTML and JSON reports for external analysis and archival.
  • Security Report Generation - Generates security-focused test reports in CSV, JSON, and HTML formats for manual or automated processing.
  • Security Scanners - Functions as a security scanner that identifies vulnerabilities in SSL/TLS configurations via a containerized or CLI interface.
  • Command Line Tools - Listed in the “Command Line Tools” section of the The Book Of Secret Knowledge awesome list.

Historique des stars

Graphique de l'historique des stars pour testssl/testssl.shGraphique de l'historique des stars pour testssl/testssl.sh

Recherche par IA

Explorez plus de dépôts awesome

Décrivez vos besoins en langage naturel — l'IA classe des milliers de projets open source sélectionnés par pertinence.

Start searching with AI

Questions fréquentes

Que fait testssl/testssl.sh ?

testssl.sh is a network security tool and SSL/TLS security scanner used to audit server configurations. It functions as a diagnostic utility that validates supported ciphers and protocols to identify cryptographic vulnerabilities and flaws in encrypted communication.

Quelles sont les fonctionnalités principales de testssl/testssl.sh ?

Les fonctionnalités principales de testssl/testssl.sh sont : SSL and TLS Security, SSL/TLS Analyzers, Network Encryption Auditors, Network Security Auditing, TLS Handshake Probing, Containerized Security Environments, Data File Generators, Automated Testing Containers.

Quelles sont les alternatives open-source à testssl/testssl.sh ?

Les alternatives open-source à testssl/testssl.sh incluent : drwetter/testssl.sh — testssl.sh is a suite of diagnostic tools and a network security auditor used to scan network ports for supported… nabla-c0d3/sslyze — SSLyze is an SSL/TLS security scanner and network encryption analyzer designed to identify vulnerabilities and… bearer/bearer — Bearer is a static analysis security testing tool and privacy compliance auditor. It identifies security… six2dez/reconftw — reconftw is an attack surface management framework and reconnaissance workflow orchestrator designed to automate the… owasp/nettacker — Nettacker is an automated penetration testing framework designed to orchestrate reconnaissance, port scanning, and… projectdiscovery/subfinder — Subfinder is a security reconnaissance framework designed for subdomain enumeration and attack surface management. It…

Alternatives open source à Testssl.sh

Projets open source similaires, classés selon le nombre de fonctionnalités partagées avec Testssl.sh.
  • drwetter/testssl.shAvatar de drwetter

    drwetter/testssl.sh

    9,091Voir sur GitHub↗

    testssl.sh is a suite of diagnostic tools and a network security auditor used to scan network ports for supported encryption protocols, ciphers, and vulnerabilities in TLS and SSL configurations. It functions as a security scanner that evaluates the cryptographic strength of a server by testing all available cipher suites. The tool analyzes server encryption strength and identifies security vulnerabilities or weak settings through TLS and SSL security auditing. It verifies that encryption is properly implemented on specific network ports and evaluates whether only strong and modern encryption

    Shell
    Voir sur GitHub↗9,091
  • nabla-c0d3/sslyzeAvatar de nabla-c0d3

    nabla-c0d3/sslyze

    3,760Voir sur GitHub↗

    SSLyze is an SSL/TLS security scanner and network encryption analyzer designed to identify vulnerabilities and misconfigurations in encryption settings. It functions as both a standalone tool for analyzing server certificates and cipher suites and a programmable Python security library for embedding automated scanning logic into larger applications. The tool distinguishes itself by supporting encryption analysis for both HTTP and non-HTTP network services, including mail, directory, and database protocols. It includes a security compliance validator that compares server configurations against

    Pythonheartbleedlibrarypython
    Voir sur GitHub↗3,760
  • bearer/bearerAvatar de Bearer

    Bearer/bearer

    2,566Voir sur GitHub↗

    Bearer is a static analysis security testing tool and privacy compliance auditor. It identifies security vulnerabilities, hard-coded secrets, and privacy risks in source code through static analysis and data flow tracing. The tool distinguishes itself by tracking the movement of sensitive data through code to identify leaks and by mapping personal and health-related information flows to generate evidence for privacy impact assessments. It also provides differential scanning for pull requests and uses fingerprint-based suppression to exclude known false positives from reports. The platform co

    Goappseccode-qualitycompliance
    Voir sur GitHub↗2,566
  • six2dez/reconftwAvatar de six2dez

    six2dez/reconftw

    7,226Voir sur GitHub↗

    reconftw is an attack surface management framework and reconnaissance workflow orchestrator designed to automate the discovery, mapping, and monitoring of external digital assets. It operates as a modular tool-chain pipeline that coordinates a sequence of security tools to perform intelligence gathering and vulnerability scanning. The project distinguishes itself through a cloud-native deployment model that parallelizes scanning workloads across a fleet of remote VPS instances to bypass local resource constraints. It utilizes container-based environment isolation to ensure consistent executio

    Shellbug-bountybugbountybugbounty-tool
    Voir sur GitHub↗7,226
  • Voir les 30 alternatives à Testssl.sh→