{"repo":"codingo/VHostScan","free":true,"listed":false,"github":"https://github.com/codingo/VHostScan","clone":"git clone https://github.com/codingo/VHostScan.git","description":"A virtual host scanner that performs reverse lookups, can be used with pivot tools, detect catch-all scenarios, work around wildcards, aliases and dynamic default pages.","language":"Python","stars":1309,"topics":["security-audit","penetration-testing","penetration-test","virtual-hosts","web-application-security","discovery-service","hacking","hacking-tool","virtual-host","vhost"],"license":"GPL-3.0","category":"security-tools","readme_excerpt":"VHostScan A virtual host scanner that can be used with pivot tools, detect catch-all scenarios, aliases and dynamic default pages. First presented at SecTalks BNE in September 2017 (slidedeck). This is an enhanced version of the original VHostScan by Codingo with additional improvements, modernized codebase, and expanded wordlists for better virtual host discovery. What's New in This Enhanced Version - Modernized Codebase : Updated to Python 3.8+ with type hints and modern practices - Enhanced Wordlists : New specialized wordlists for cloud, pentesting, and modern infrastructure - Improved Error Handling : Better error handling and more robust scanning - Performance Optimizations : Faster scanning with improved efficiency - Extended Documentation : Comprehensive wordlist documentation and usage examples Key Benefits Quickly highlight unique content in catch-all scenarios Locate the outliers in catch-all scenarios where results have dynamic content on the page (such as the time) Identify aliases by tweaking the unique depth of matches Wordlist supports standard words and a variable to input a base hostname (for e.g. dev.%s from the wordlist would be run as dev.BASE HOST) Works over HTTP and HTTPS Ability to set the real port of the webserver to use in headers when pivoting through ssh/nc Add simple response headers to bypass some WAF products Identify new targets by using reverse lookups and append to wordlist Product Comparisons Install on docker (recommended) 1. ´git clone h","default_branch":null,"files":null,"tree":[],"storefront":"/r/codingo","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/codingo/VHostScan/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}