{"repo":"vmfunc/sif","free":true,"listed":false,"github":"https://github.com/vmfunc/sif","clone":"git clone https://github.com/vmfunc/sif.git","description":"the blazing-fast pentesting suite.","language":"Go","stars":615,"topics":["attack-surface","cve-scanner","cve-scanning","cybersecurity","directory-enumeration","dirlist","dns-enumeration","hacktoberfest","infosec","pentest"],"license":"BSD-3-Clause","category":"security-tools","readme_excerpt":"install · usage · modules · docs · contribute fast, concurrent recon to exploitation in one binary. every scanner shares one connection-pooled http client. --- what is sif? sif is a recon and exploitation scanner that runs the whole chain in one binary: subdomain enum, port scan, crawler, nuclei, framework/cve detection, js secret extraction, web-vuln probes (cors/xss/redirect), cloud and takeover checks. 25+ scan types, one command. nuclei and colly are compiled in as libraries rather than shelled out to (there's no exec.Command in the tree), so it's a single static binary with no runtime dependencies and nothing to wire together. every scanner runs through one shared http client and a work-stealing worker pool. -proxy , -H , -cookie and -rate-limit apply to the whole run at once, connections get pooled and reused across the scan (a single-host run reuses one connection for 50 requests instead of dialing 50 times), and a slow host doesn't hold the rest up. that shared client is the practical reason to use it over piping a stack of separate tools together. port scanning is connect() -based, so rustscan and nmap are still faster at raw port scans. it reads targets from stdin and prints findings one per line under -silent , so it composes: -diff turns a re-scan into a monitor that only reports what changed, -notify posts to slack/discord/telegram/webhook, and runs export to sarif and markdown. install homebrew (macos) arch linux (aur) install using your preferred aur helper: ni","default_branch":null,"files":null,"tree":[],"storefront":"/r/vmfunc","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/vmfunc/sif/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}