kscan icon indicating copy to clipboard operation
kscan copied to clipboard

Kscan是一款纯go开发的全方位扫描器,具备端口扫描、协议检测、指纹识别,暴力破解等功能。支持协议1200+,协议指纹10000+,应用指纹20000+,暴力破解协议10余种。

Results 56 kscan issues
Sort by recently updated
recently updated
newest added

3W+资产,扫描爆破完一直不终止,已经持续一个半小时 ![image](https://user-images.githubusercontent.com/24235319/179184897-3f7ee080-3f38-499e-8e5a-efb326c36db2.png) ![image](https://user-images.githubusercontent.com/24235319/179185073-175e933f-7034-4e90-9aac-7be25a38059f.png)

Server: wts/1.6 Server: IIS X-Powered-By: WAF/2.0 Server: APISIX/2.6 Server: Topsec Server: TopWebServer Server: Kestrel

建议支持对不同hydra模块配置不同的字典 如: - ftp - user:ftp-user.txt - pass:ftp-pass.txt - rdp - user:rdp-user.txt - pass: rdp-pass.txt

enhancement

在内网中探测的时候,扫描9100会导致到打印机一直疯狂打印纸张。

X-Powered-By: Servlet/2.5 JSP/2.1 X-Powered-By: PPP Server: Firewall Server: gunicorn/20.0.4 Server: forked-daapd/Oz Server: Encore Server: eHTTP vc Server: SPiN ChatSystem Server: Router Server: Schneider-WEB/Vkc Server: XES WindWeb/PBUZuun Server: Majestic-12 WebServer

Server: App-webs/ Server: kangle/3.5 Server: Streamer 20.12 Server: Nimble/3.7.9-7 Server: sw-cp-server X-Powered-By: Express

X-Powered-By: Undertow/1 Server: waitress Server: Chinese BABA Server: localhost X-Powered-By: Servlet 2.4; JBoss-4.2.3.GA (build: SVNTag=JBoss_4_2_3_GA date=200807181417)/JBossWeb-2.0 Server: gunicorn/19.7.1 Server: workerman/3.5.6

在进行端口的服务识别之后先进行高危目录fuzz+备份fuzz,然后再去指纹识别 效果会不会更好点呢?

enhancement

30KB ip段内存占用达到6个GB