Know the Network
See your Attack Surface
Thirty hosted scanners and security tools to discover, assess and monitor your perimeter so you know your network as it changes.
Practical use cases for internet-facing systems
Discover the complete external attack surface. Identify open services, connected infrastructure, web technologies and known vulnerabilities. Run targeted checks, or schedule regular scans to monitor changes.
Nmap Port Scanner
Scan a hostname, IP address, or network.
Find open ports and use service and version detection to identify what is answering. Run a one-off scan or repeat it on a schedule to monitor changes.
OpenVAS Vulnerability Scanner
Check listening services for known vulnerabilities and weak configurations.
Knowing a port is open is half the answer. OpenVAS tests internet-facing services and web applications, then returns the severity, affected hosts and technical references for each finding.
ZMap Fast Port Scanner
One port. Test a Full /16 in Seconds.
Find the addresses answering on RDP, SSH or another TCP port across your public IP space. ZMap identifies open ports fast, Nmap can then identify what is listening.
WordPress & CMS Security Reporting
You patched the server. The plugin nobody owns is the way in.
Check the WordPress version, exposed plugins and themes, hosting IP and related threat intelligence. Use active scanning to look further for components, users and sensitive files.
Domain Profiler
Map the attack surface with zero impact passive recon.
Start with a domain and trace the infrastructure around it: subdomains, DNS records, mail servers, related networks and internet-facing services.
ASN & IP Address Mapping
Put an owner and network range behind each public IP address.
Paste the addresses from a firewall log, a threat feed or a scan and get back the owning ASN, the CIDR block it sits in, the country of registration and any intel tags sorted, counted and exportable.
WhatWeb & Wappalyzer Scan
See what a website reveals in a single request.
Paste a list of URLs and identify the server, CMS, JavaScript frameworks, analytics and hosting behind each one. The data is gathered from HTTP headers and page source without sending intrusive requests to the target.
How it works
From sign-up to results, in minutes
Sign up
Choose a plan
Launch a scan
Paste a target, pick a tool, go
Get results
Clear, fast, actionable output
Frequently Asked Questions
Common questions about running scans, results and access.
https://api.hackertarget.com/{tool}/?q={target}. See the API documentation for authentication, rate limits and response formats.
These seven scratch the surface. There are thirty.
- Hunt
- Hunt vulnerabilities across your internet-facing assets.
- Protect
- Improve visibility of the endpoints you already own.
- Discover
- Find internet-facing assets for any target organisation.
- Research
- Network research for DFIR, threat hunting and operations.
- Test in bulk
- Paste lists of targets into supported tools for bulk analysis.
- Always on
- Scanning infrastructure ready whenever you are.
- Simple launch
- One form launches the test. Scan results are available by email or from the Dashboard, depending on the tool.
- Raw output
- Reports carry tactical output you can paste into your own reporting.