{"id":15028495,"url":"https://github.com/s0md3v/striker","last_synced_at":"2025-05-15T08:09:10.281Z","repository":{"id":40523514,"uuid":"108814404","full_name":"s0md3v/Striker","owner":"s0md3v","description":"Striker is an offensive information and vulnerability scanner.","archived":false,"fork":false,"pushed_at":"2023-06-04T20:15:11.000Z","size":217,"stargazers_count":2266,"open_issues_count":19,"forks_count":451,"subscribers_count":116,"default_branch":"master","last_synced_at":"2025-04-14T12:18:26.083Z","etag":null,"topics":["cloudflare","cms-detector","dnsdumpster","email","harvester","information-gathering","parameter","recon","theharvester"],"latest_commit_sha":null,"homepage":"","language":"Python","has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":"gpl-3.0","status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/s0md3v.png","metadata":{"files":{"readme":"README.md","changelog":null,"contributing":null,"funding":null,"license":"LICENSE","code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":null,"support":null,"governance":null}},"created_at":"2017-10-30T07:08:02.000Z","updated_at":"2025-04-11T22:41:24.000Z","dependencies_parsed_at":"2022-06-29T14:00:42.399Z","dependency_job_id":"8d0cdb43-6587-402b-8dbb-d87a5f604624","html_url":"https://github.com/s0md3v/Striker","commit_stats":null,"previous_names":[],"tags_count":1,"template":false,"template_full_name":null,"repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/s0md3v%2FStriker","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/s0md3v%2FStriker/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/s0md3v%2FStriker/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/s0md3v%2FStriker/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/s0md3v","download_url":"https://codeload.github.com/s0md3v/Striker/tar.gz/refs/heads/master","host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":248877968,"owners_count":21176244,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2022-07-04T15:15:14.044Z","host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":["cloudflare","cms-detector","dnsdumpster","email","harvester","information-gathering","parameter","recon","theharvester"],"created_at":"2024-09-24T20:08:28.196Z","updated_at":"2025-04-14T12:18:30.825Z","avatar_url":"https://github.com/s0md3v.png","language":"Python","funding_links":[],"categories":[],"sub_categories":[],"readme":"\u003ch1 align=\"center\"\u003e\n  \u003cbr\u003e\n  \u003ca href=\"https://github.com/s0md3v/Striker\"\u003e\u003cimg src=\"https://i.ibb.co/txcs4JL/striker.png\" alt=\"Striker\"\u003e\u003c/a\u003e\n  \u003cbr\u003e\n  Striker\n  \u003cbr\u003e\n\u003c/h1\u003e\n\n\u003ch4 align=\"center\"\u003eRecon \u0026 Vulnerability Scanning Suite\u003c/h4\u003e\n\n\u003cp align=\"center\"\u003e\n  \u003ca href=\"https://github.com/s0md3v/Striker/releases\"\u003e\n    \u003cimg src=\"https://img.shields.io/github/release/s0md3v/Striker.svg\"\u003e\n  \u003c/a\u003e\n  \u003ca href=\"https://travis-ci.com/s0md3v/Striker\"\u003e\n    \u003cimg src=\"https://img.shields.io/travis/com/s0md3v/Striker.svg\"\u003e\n  \u003c/a\u003e\n  \u003ca href=\"https://github.com/s0md3v/Striker/issues?q=is%3Aissue+is%3Aclosed\"\u003e\n      \u003cimg src=\"https://img.shields.io/github/issues-closed-raw/s0md3v/Striker.svg\"\u003e\n  \u003c/a\u003e\n\u003c/p\u003e\n\n### Important Notice\nStriker 2.0 is still in prototype phase, which means it's not intended to be used by regular users. It has been made public for contrbutions to make the development faster.\\\n**Usage:** `python3 striker.py example.com`\n\n### Workflow\n##### Phase 1: Attack Surface Discovery\nThis phase includes finding subdomains of the user specified domain, filtering alive hosts as well scanning of 1000 most common TCP ports.\n##### Phase 2: Sweeping\nMass scanning of misconfigured HTTP response headers, croassdomain.xml as well as checks for some sensitive files is done in this phase.\n##### Phase 3: Agressive Information Gathering\nThis phase is dedicated to data gathering by crawling the subdomains. The gathered data is used to find outdated JS libraries, detect CMS and technologies in use.\\\nHTML forms that are tested in later phases for vulnerability detection are also collected during this crawling.\n##### Phase 4: Vulnerability Scanning\n[This phase is under development]\n\n### Credits\n`/db/outdated_js.json` is taken from [retire.js](https://github.com/RetireJS/retire.js).\\\n`/db/tech_signatures.json` is taken from [Wappalyzer](https://github.com/AliasIO/Wappalyzer).\\\n`/db/waf_signatures.json` is extracted (and converted to JSON) from [sqlmap](https://github.com/sqlmapproject/sqlmap)'s WAF detection modules.\\\n`/modules/retirejs.py` is a modified version of [retirejslib](https://github.com/FallibleInc/retirejslib).\\\n`\n","project_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fs0md3v%2Fstriker","html_url":"https://awesome.ecosyste.ms/projects/github.com%2Fs0md3v%2Fstriker","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fs0md3v%2Fstriker/lists"}