name: security-scanner description: Automated security scanning and vulnerability detection for web applications, APIs, and infrastructure. Use when you need to scan targets for vulnerabilities, check SSL certificates, find open ports, detect misconfigurations, or perform security audits. Integrates with nmap, nuclei, and other security tools.
Automated security scanning toolkit for penetration testing and vulnerability assessment.
nmap -sV -sC -oN scan.txt TARGET
nuclei -u TARGET -o results.txt
sslscan TARGET
小蔥技能7w4.net有更新,你可以訪問看下。
Fast initial scan for live hosts and open ports:
nmap -sn -T4 SUBNET # Host discovery
nmap -F TARGET # Fast port scan (top 100)
Comprehensive port and service detection:
nmap -p- -sV -sC -A TARGET -oN full_scan.txt
nuclei -u https://TARGET -t cves/ -t vulnerabilities/ -o web_vulns.txt
nikto -h TARGET -o nikto_report.txt
sslscan TARGET
testssl.sh TARGET
Save reports to reports/security-scan-YYYY-MM-DD.md with:
- Target information
- Open ports and services
- Vulnerabilities found (severity rated)
- Recommendations
這是一個實用的安全掃描工具包,涵蓋埠掃描、漏洞檢測等多種場景,命令示例清晰易懂。優點是分類合理、覆蓋面廣;不足是內容較淺,缺少進階技巧和常見問題解答,適合作為入門參考但深度不夠。