awesome-repositories.com
Blog
awesome-repositories.com

Descoperă cele mai bune repository-uri open source cu căutare AI.

ExploreazăCăutări recomandateAlternative open-sourceSoftware self-hostedBlogHartă site
ProiectDespreCum realizăm clasamentulPresăServer MCP
LegalConfidențialitateTermeni
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
TideSec avatar

TideSec/TscanPlus

0
View on GitHub↗
3,753 stele·228 fork-uri·5 vizualizări

TscanPlus

TscanPlus is an external attack surface management tool and security reconnaissance framework designed for discovering network assets, enumerating subdomains, and mapping internet-facing services. It functions as a vulnerability scanning framework and network asset discovery suite to identify security exposure and map active hosts.

The platform distinguishes itself by integrating an intelligence layer that uses large language models to analyze raw scan results and identify security weaknesses within JavaScript code. It also includes a dedicated proxy management system that validates and rotates HTTP and SOCKS5 proxies to bypass rate limits and avoid IP blocking.

The toolkit covers broad capability areas including web application reconnaissance through recursive crawling and directory enumeration, as well as red team utilities for brute-forcing credentials and generating reverse shell payloads. It further provides tools for validating tokens, performing cryptographic processing, and managing sequential security workflows.

Features

  • Attack Surface Management - Provides a platform for discovering, inventorying, and monitoring internet-facing assets to map total network exposure.
  • Network Asset Discovery - Implements a comprehensive suite for mapping network surfaces and identifying live hosts through port scanning and subdomain enumeration.
  • JavaScript Security Analysis - Integrates large language models to analyze raw scan results and identify security weaknesses in JavaScript code.
  • Vulnerability Scanning - Tests target systems against a library of proofs-of-concept and integrates with external vulnerability scanners.
  • Vulnerability Scanning and Analysis - Uses large language models to provide intelligent automated interpretation of security vulnerabilities in scan results.
  • Web Reconnaissance - Enumerates subdomains and hidden directories via recursive crawling to uncover API endpoints and sensitive files.
  • Internet-Facing Asset Discovery - Identifies live hosts and open ports across IP ranges to build a comprehensive inventory of active services.
  • Network Asset Scanning - Identifies live hosts and services through IP port scanning and subdomain enumeration.
  • HTTP Proxy Pool Managers - Manages and rotates a validated pool of HTTP and SOCKS5 proxies to bypass network restrictions.
  • Proxy Connectivity Testing - Tests proxy connectivity against custom websites and automatically removes failing servers from the pool.
  • Proxy Management - Manages a collection of HTTP and SOCKS5 proxies with rotation and validation to maintain anonymity.
  • Proxy Management Systems - Ships a routing engine that validates and rotates HTTP and SOCKS5 proxies to bypass rate limits and IP blocking.
  • Proxy Pool Automation - Automates the import and scraping of proxy servers from security search engines to populate a usable pool.
  • Proxy Rotation Services - Implements automated rotation of proxy servers based on usage and latency to bypass IP blocking.
  • Proxy and Fingerprint Rotation - Automates the rotation of proxy servers and fingerprints to avoid IP blocking and rate limits.
  • Traffic Proxying - Manages the routing of outbound traffic through a validated pool of proxies to avoid rate limits.
  • Asset Inventory Aggregators - Consolidates discovered security assets from multiple intelligence sources into a centralized inventory.
  • Security Reconnaissance Tools - Provides a framework for gathering asset intelligence and analyzing attack surfaces via fingerprinting and recursive web crawling.
  • Security Vulnerability Scanning - Detects security weaknesses using a library of proofs-of-concept and integrated vulnerability scanning tools.
  • Vulnerability Scanning Frameworks - Provides a framework that tests targets against proof-of-concept libraries and integrates external scanners to identify security flaws.
  • Service Fingerprinting - Identifies specific software versions and applications by matching network responses against known fingerprints.
  • LLM-Based Analysis - Provides an intelligence layer that leverages large language models to analyze JavaScript code and interpret scan results for security weaknesses.
  • Vulnerability Scanning Workflows - Organizes discovery and scanning tasks into sequential, project-based workflows to identify and validate vulnerabilities.
  • LLM Analyzers - Integrates LLM-driven analysis to interpret discovered vulnerabilities and evaluate security weaknesses in JavaScript code.
  • Recursive Crawl Discoverers - Recursively crawls websites to discover hidden API endpoints and URLs within script files.
  • URL Extraction - Extracts hidden API endpoints and sensitive URLs by analyzing web pages and JavaScript files.
  • Directory Fuzzing - Implements automated discovery of hidden files and directories using wordlist-based fuzzing.
  • Sequential Workflows - Organizes security reconnaissance and scanning tasks into sequential, project-based stages.
  • Red Teaming Frameworks - Integrates red team utilities for generating payloads and managing security tasks in a unified workspace.
  • Payload Generators - Generates ready-to-use reverse shell and lateral movement payloads tailored to the detected operating system.
  • Security Fuzzing Engines - Provides a security-focused fuzzing engine to locate hidden web resources and directories.
  • Scan Result Analyzers - Provides intelligent analysis of raw scan results and JavaScript code using large language models to identify security weaknesses.
  • Security Workflow Integrations - Automates the transition of data between different reconnaissance and scanning tools in a sequential workflow.
  • Reverse Shell Payloads - Generates ready-to-use reverse shell and lateral movement commands based on the target environment.
  • Web Directory Enumeration Tools - Discovers hidden files and folders on web servers using dictionary-based brute-force scanning.

Istoric stele

Graficul istoricului de stele pentru tidesec/tscanplusGraficul istoricului de stele pentru tidesec/tscanplus

Căutare AI

Explorează mai multe repository-uri excelente

Descrie ce ai nevoie în limbaj simplu — AI-ul sortează mii de proiecte open source selectate în funcție de relevanță.

Start searching with AI

Alternative open-source pentru TscanPlus

Proiecte open-source similare, clasificate după numărul de funcționalități comune cu TscanPlus.
  • six2dez/reconftwAvatar six2dez

    six2dez/reconftw

    7,226Vezi pe GitHub↗

    reconftw is an attack surface management framework and reconnaissance workflow orchestrator designed to automate the discovery, mapping, and monitoring of external digital assets. It operates as a modular tool-chain pipeline that coordinates a sequence of security tools to perform intelligence gathering and vulnerability scanning. The project distinguishes itself through a cloud-native deployment model that parallelizes scanning workloads across a fleet of remote VPS instances to bypass local resource constraints. It utilizes container-based environment isolation to ensure consistent executio

    Shellbug-bountybugbountybugbounty-tool
    Vezi pe GitHub↗7,226
  • 0x727/shuize_0x727Avatar 0x727

    0x727/ShuiZe_0x727

    4,014Vezi pe GitHub↗

    ShuiZe_0x727 is an open-source intelligence gathering framework and attack surface management tool. It functions as an asset discovery engine and cyber intelligence aggregator designed to identify internet-facing assets, map network infrastructure, and visualize total network exposure. The project integrates vulnerability scanning and sensitive data leak detection to identify security weaknesses and unauthorized access points. It employs a combination of network space API queries, certificate log analysis, and public repository scanning to extract leaked credentials, API keys, and internal ad

    Python
    Vezi pe GitHub↗4,014
  • owasp/nettackerAvatar OWASP

    OWASP/Nettacker

    5,258Vezi pe GitHub↗

    Nettacker is an automated penetration testing framework designed to orchestrate reconnaissance, port scanning, and vulnerability detection. It functions as a network reconnaissance tool and vulnerability scanner that identifies open ports, fingerprints services, and checks systems against databases of known security flaws. The framework distinguishes itself by combining a web application crawler for discovering hidden paths via fuzzing with a vulnerability management system that persists scan results in a database to track historical assessments. It also includes specialized capabilities for

    Pythonautomationbruteforcecve
    Vezi pe GitHub↗5,258
  • jaykali/maskphishAvatar jaykali

    jaykali/maskphish

    3,020Vezi pe GitHub↗

    Maskphish is a comprehensive security toolkit that integrates capabilities for digital forensics, network vulnerability scanning, open-source intelligence, penetration testing, and social engineering. It functions as a multi-purpose framework for automating reconnaissance and executing security audits across diverse network environments. The project features a specialized phishing and social engineering toolkit used for cloning websites, masking URLs, and deploying deceptive pages to capture user credentials. It also includes a remote access Trojan builder for generating platform-specific exe

    Shellhackhackinghacking-tool
    Vezi pe GitHub↗3,020
Vezi toate cele 30 alternative pentru TscanPlus→

Întrebări frecvente

Ce face tidesec/tscanplus?

TscanPlus is an external attack surface management tool and security reconnaissance framework designed for discovering network assets, enumerating subdomains, and mapping internet-facing services. It functions as a vulnerability scanning framework and network asset discovery suite to identify security exposure and map active hosts.

Care sunt principalele funcționalități ale tidesec/tscanplus?

Principalele funcționalități ale tidesec/tscanplus sunt: Attack Surface Management, Network Asset Discovery, JavaScript Security Analysis, Vulnerability Scanning, Vulnerability Scanning and Analysis, Web Reconnaissance, Internet-Facing Asset Discovery, Network Asset Scanning.

Care sunt câteva alternative open-source pentru tidesec/tscanplus?

Alternativele open-source pentru tidesec/tscanplus includ: six2dez/reconftw — reconftw is an attack surface management framework and reconnaissance workflow orchestrator designed to automate the… 0x727/shuize_0x727 — ShuiZe_0x727 is an open-source intelligence gathering framework and attack surface management tool. It functions as an… owasp/nettacker — Nettacker is an automated penetration testing framework designed to orchestrate reconnaissance, port scanning, and… jaykali/maskphish — Maskphish is a comprehensive security toolkit that integrates capabilities for digital forensics, network… constverum/proxybroker — ProxyBroker is a tool for scraping public HTTP and SOCKS proxy addresses, validating their connectivity, and managing… jhao104/proxy_pool — This project is a Python-based proxy pool manager that collects, validates, and serves free proxy IP addresses through…