awesome-repositories.comCategoriesBlog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
cloudflare avatar

cloudflare/flan

0
View on GitHub↗
4,162 stars·296 forks·Python·BSD-3-Clause·13 views

Flan

Flan is a containerized network vulnerability scanner and security auditor. It identifies open ports and service versions across a network to detect known security weaknesses and misconfigurations.

The system is designed to run within isolated container environments, utilizing configuration maps to manage target lists and secrets. It includes a dedicated mechanism for archiving scan output files and security analysis data to remote S3 buckets for long-term storage.

The tool generates formatted vulnerability summaries and security reports in multiple document formats for technical analysis. It supports exporting raw scan data to remote cloud storage for centralized security auditing.

Features

  • Containerized Scanners - A vulnerability detection process designed to run within containers using configuration maps for target management.
  • Port Scanning - Identifies open ports and service versions across a network to detect security weaknesses.
  • Cloud Security Auditing - Enables centralized security analysis by archiving network scan data to cloud storage.
  • Network Security Scanners - Combines discovery and fingerprinting to generate summaries of open ports and security flaws.
  • Network Vulnerability Scanning - Identifies open ports and service versions to find known security weaknesses across a target network.
  • Containerized Scanning - Runs vulnerability assessments within containers to manage target lists and secrets through orchestration.
  • Cloud Storage Exporters - Provides connectors for pushing processed scan data to remote object storage buckets.
  • Local and Cloud Result Exporters - Uploads scan results and archival files to remote cloud storage services for centralized analysis.
  • Container Deployment - Runs the scanning process inside isolated container environments for portable execution.
  • Containerized Deployment Orchestration - Executes scanning workloads within isolated container environments using orchestrator-managed configurations.
  • Scan Result Exporters - Creates reports in various file formats to share scan findings for downstream analysis.
  • Multi-Format Vulnerability Reports - Transforms raw scanning data into various document formats for structured vulnerability summaries.
  • Security Report Generation - Creates formatted summaries of security flaws and open ports for technical analysis.
  • Vulnerability Report Generation - Produces formatted summaries of open ports and security flaws in multiple document formats.
  • Vulnerability Scanners - Lightweight vulnerability scanner.

Star history

Star history chart for cloudflare/flanStar history chart for cloudflare/flan

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Start searching with AI

Open-source alternatives to Flan

Similar open-source projects, ranked by how many features they share with Flan.
  • owasp/nettackerOWASP avatar

    OWASP/Nettacker

    5,258View on GitHub↗

    Nettacker is an automated penetration testing framework designed to orchestrate reconnaissance, port scanning, and vulnerability detection. It functions as a network reconnaissance tool and vulnerability scanner that identifies open ports, fingerprints services, and checks systems against databases of known security flaws. The framework distinguishes itself by combining a web application crawler for discovering hidden paths via fuzzing with a vulnerability management system that persists scan results in a database to track historical assessments. It also includes specialized capabilities for

    Pythonautomationbruteforcecve
    View on GitHub↗5,258
  • samsar4/ethical-hacking-labsSamsar4 avatar

    Samsar4/Ethical-Hacking-Labs

    3,397View on GitHub↗

    Ethical-Hacking-Labs is a comprehensive cybersecurity training curriculum and lab suite designed for learning penetration testing, network analysis, and offensive security techniques. It provides a structured environment for practicing the full attack lifecycle, from initial reconnaissance and scanning to exploitation and post-compromise analysis. The project provides instructional materials and guided exercises that cover specific technical domains, including open source intelligence research and network security courseware. It includes a practical workbook for identifying system vulnerabili

    ethical-hacking-labshackinglinux
    View on GitHub↗3,397
  • projectdiscovery/naabuprojectdiscovery avatar

    projectdiscovery/naabu

    5,766View on GitHub↗

    Naabu is a port scanner library and tool that probes hosts for open ports using SYN, CONNECT, and UDP methods to identify active services. It functions as a Go library for embedding port scanning into programs, and as a standalone tool that accepts targets as hostnames, IP addresses, CIDR ranges, or ASN numbers. The tool discovers live hosts before scanning, filters ports by range or top lists, and can integrate with Nmap for service version detection. The project distinguishes itself through its SYN-based port probing approach that sends TCP SYN packets and analyzes responses without complet

    Gocdn-exclusionhacktoberfestnmap
    View on GitHub↗5,766
  • snyk/clisnyk avatar

    snyk/cli

    5,428View on GitHub↗

    The Snyk CLI is a command-line security scanner that detects known vulnerabilities across open-source dependencies, proprietary application code, container images, and infrastructure-as-code configuration files. It also serves as a platform management tool, allowing users to configure organizations, users, SSO, and reporting from the terminal rather than the web dashboard. The CLI integrates directly into development workflows, enabling scanning within IDEs, build pipelines, and version control systems. It implements static analysis with interfile data flow analysis to find complex security f

    TypeScriptmonitorsecuritysnyk
    View on GitHub↗5,428
See all 30 alternatives to Flan→

Frequently asked questions

What does cloudflare/flan do?

Flan is a containerized network vulnerability scanner and security auditor. It identifies open ports and service versions across a network to detect known security weaknesses and misconfigurations.

What are the main features of cloudflare/flan?

The main features of cloudflare/flan are: Containerized Scanners, Port Scanning, Cloud Security Auditing, Network Security Scanners, Network Vulnerability Scanning, Containerized Scanning, Cloud Storage Exporters, Local and Cloud Result Exporters.

What are some open-source alternatives to cloudflare/flan?

Open-source alternatives to cloudflare/flan include: owasp/nettacker — Nettacker is an automated penetration testing framework designed to orchestrate reconnaissance, port scanning, and… samsar4/ethical-hacking-labs — Ethical-Hacking-Labs is a comprehensive cybersecurity training curriculum and lab suite designed for learning… projectdiscovery/naabu — Naabu is a port scanner library and tool that probes hosts for open ports using SYN, CONNECT, and UDP methods to… snyk/cli — The Snyk CLI is a command-line security scanner that detects known vulnerabilities across open-source dependencies,… arachni/arachni — Arachni is a dynamic application security testing vulnerability scanner and web application security tool. It… zan8in/afrog — afrog is an HTTP vulnerability scanner and web vulnerability management system that identifies security flaws and…