awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
shadow1ng avatar

shadow1ng/fscan

0
View on GitHub↗
13,421 stars·1,860 forks·Go·mit·59 views

Fscan

Fscan is an automated penetration testing tool designed for internal network reconnaissance and vulnerability assessment. It functions as a comprehensive security framework that maps network infrastructure, identifies active hosts and services, and detects security weaknesses across internal environments.

The tool distinguishes itself through a modular plugin architecture that allows for extensible security checks and a stateful asset tracking system that maintains an in-memory registry of discovered infrastructure. It incorporates a dedicated credential brute-force engine for testing password strength and supports proxy-aware traffic routing to facilitate operations within segmented or restricted network segments.

Beyond core discovery, the platform provides capabilities for post-exploitation security operations, including system information collection and remote access management. Users can control scan performance through configurable concurrency and rate limits, with options to manage tasks via both command-line execution and a graphical web interface.

Features

  • Penetration Testing Tools - Functions as an automated penetration testing tool for network reconnaissance, credential brute-forcing, and vulnerability assessment.
  • Vulnerability Scanners - Automates the identification of open ports, active services, and security weaknesses across internal network infrastructures.
  • Network Reconnaissance Tools - Automates the identification of network assets, services, and security weaknesses.
  • Vulnerability Assessment Frameworks - Provides a framework for automated vulnerability assessment and security testing.
  • Security Assessment Frameworks - Acts as a comprehensive security assessment framework for discovering assets and testing security across internal network environments.
  • Network Scanning Tools - Scans network surfaces to identify open ports and active services.
  • Vulnerability Scanning - Executes integrated security checks to detect high-risk vulnerabilities and misconfigurations.
  • Credential Testing Utilities - Tests credential strength by attempting authentication against target services.
  • Post-Exploitation Tools - Includes post-exploitation capabilities for system information collection, credential extraction, and remote access management on compromised hosts.
  • Brute Force Tools - Provides an automated engine for testing authentication strength through credential guessing.
  • Credential Brute-Forcing - Evaluates system access security by performing automated credential brute-force attempts.
  • Security Vulnerabilities - Identifies security flaws and misconfigurations across network services.
  • Reconnaissance Tools - Fast network scanner for internal and external reconnaissance.
  • Brute Force Tools - Fast and efficient network scanning and brute-forcing tool.
  • Network and Web Reconnaissance - Integrated intranet scanning tool.
  • Network Scanning - Automated, comprehensive internal network vulnerability scanner.
  • Scan Orchestration - Optimizes scan performance by configuring concurrency and rate limits.
  • Web Dashboards - Provides a graphical web interface for managing and monitoring security scans.
  • Traffic Routing Proxies - Routes scanning traffic through proxies to bypass network restrictions.
  • Traffic Proxying - Intercepts and tunnels network traffic through proxies for scanning in restricted environments.
  • Modular Plugin Architectures - Supports extensible security checks through a modular plugin architecture.
  • Asset Registries - Maintains an in-memory registry of discovered hosts and services to prevent redundant scanning.
  • Worker Pool Models - Distributes scanning tasks across parallel threads to maximize network throughput.
  • Event-Driven I/O - Uses non-blocking socket operations to manage high-concurrency network connections efficiently.

Star history

Star history chart for shadow1ng/fscanStar history chart for shadow1ng/fscan

How this analysis was created: This summary and feature list are AI-generated from collected project material and can contain mistakes. Stars, license and language are imported from GitHub. Inclusion does not mean that we have tested or audited this project. Check the source documentation for any feature you depend on. Learn more on our About page.

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Start searching with AI

Frequently asked questions

What does shadow1ng/fscan do?

Fscan is an automated penetration testing tool designed for internal network reconnaissance and vulnerability assessment. It functions as a comprehensive security framework that maps network infrastructure, identifies active hosts and services, and detects security weaknesses across internal environments.

What are the main features of shadow1ng/fscan?

The main features of shadow1ng/fscan are: Penetration Testing Tools, Vulnerability Scanners, Network Reconnaissance Tools, Vulnerability Assessment Frameworks, Security Assessment Frameworks, Network Scanning Tools, Vulnerability Scanning, Credential Testing Utilities.

Which projects share features with shadow1ng/fscan?

Projects with overlapping indexed features include: projectdiscovery/subfinder — Subfinder is a security reconnaissance framework designed for subdomain enumeration and attack surface management. It… projectdiscovery/nuclei — Nuclei is a modular security scanning framework designed for automated vulnerability detection and infrastructure… infinition/bjorn — Bjorn is a penetration testing framework that automates network scanning, credential brute-forcing, vulnerability… lcvvvv/kscan — kscan is a network security scanner and service fingerprinter used to discover active hosts and open ports. It… carpedm20/awesome-hacking — This project is a comprehensive, community-curated directory of cybersecurity resources, tools, and educational… owasp/nettacker — Nettacker is an automated penetration testing framework designed to orchestrate reconnaissance, port scanning, and…

Projects sharing features with Fscan

These projects share indexed features with Fscan. Shared tags can include platform or build tooling; verify the primary use case before treating a result as a replacement.
  • projectdiscovery/subfinderprojectdiscovery avatar

    projectdiscovery/subfinder

    13,105View on GitHub↗

    Subfinder is a security reconnaissance framework designed for subdomain enumeration and attack surface management. It functions as a discovery engine that identifies and maps internet-exposed infrastructure, cloud-hosted assets, and network ranges to maintain a comprehensive inventory of an organization's digital footprint. The project distinguishes itself through a modular, template-driven scanning engine that executes security checks against discovered assets. It leverages cloud-native asset discovery to query provider APIs and infrastructure metadata, while supporting distributed agent orc

    Gobugbountyhackinghacktoberfest
    View on GitHub↗13,105
  • projectdiscovery/nucleiprojectdiscovery avatar

    projectdiscovery/nuclei

    29,189View on GitHub↗

    Nuclei is a modular security scanning framework designed for automated vulnerability detection and infrastructure reconnaissance. It functions as a template-driven engine that executes security checks across diverse network protocols, allowing users to define custom detection logic to identify vulnerabilities, misconfigurations, and exposed assets. The platform distinguishes itself through its highly extensible architecture, which supports distributed scanning, headless browser automation for dynamic web content, and out-of-band interaction monitoring to detect blind vulnerabilities. It integ

    Goattack-surfacecve-scannerdast
    View on GitHub↗29,189
  • infinition/bjorninfinition avatar

    infinition/Bjorn

    5,656View on GitHub↗

    Bjorn is a penetration testing framework that automates network scanning, credential brute-forcing, vulnerability assessment, and data exfiltration, all coordinated through an event-driven task pipeline and controlled via a web-based dashboard. Its modular plugin architecture allows independent security modules to be loaded and chained together, with an asynchronous network scanner discovering live hosts and open ports without blocking the main execution flow. The framework distinguishes itself by integrating a credential brute-force engine that systematically attempts login combinations agai

    Python
    View on GitHub↗5,656
  • lcvvvv/kscanlcvvvv avatar

    lcvvvv/kscan

    4,286View on GitHub↗

    kscan is a network security scanner and service fingerprinter used to discover active hosts and open ports. It functions as a network protocol analyzer and internal network mapper to identify reachable gateways and analyze the network surface area of target environments. The tool integrates external asset discovery by retrieving target hosts through external intelligence services and verifying their availability. It also operates as a credential brute force tool, testing authentication strength across multiple protocols using automated username and password dictionaries. The project covers n

    Go
    View on GitHub↗4,286
  • Compare all 30 related projects→