{"id":13845922,"url":"https://github.com/test502git/awvs14-scan","last_synced_at":"2025-05-16T04:05:33.843Z","repository":{"id":37296777,"uuid":"281570769","full_name":"test502git/awvs14-scan","owner":"test502git","description":"针对 Acunetix AWVS扫描器开发的批量扫描脚本，支持log4j漏洞、SpringShell、SQL注入、XSS、弱口令等专项，支持联动xray、burp、w13scan等被动批量","archived":false,"fork":false,"pushed_at":"2024-08-16T09:16:28.000Z","size":501,"stargazers_count":1094,"open_issues_count":5,"forks_count":202,"subscribers_count":19,"default_branch":"master","last_synced_at":"2024-10-29T16:58:23.159Z","etag":null,"topics":[],"latest_commit_sha":null,"homepage":"","language":"Python","has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":null,"status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/test502git.png","metadata":{"files":{"readme":"README.md","changelog":null,"contributing":null,"funding":null,"license":null,"code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":null,"support":null,"governance":null,"roadmap":null,"authors":null,"dei":null,"publiccode":null,"codemeta":null}},"created_at":"2020-07-22T04:05:04.000Z","updated_at":"2024-10-29T05:04:05.000Z","dependencies_parsed_at":"2024-11-12T18:00:30.133Z","dependency_job_id":"3e79c95d-0f6c-45ef-9256-1ae60ce3017c","html_url":"https://github.com/test502git/awvs14-scan","commit_stats":{"total_commits":159,"total_committers":3,"mean_commits":53.0,"dds":0.03144654088050314,"last_synced_commit":"c18018c9fac260f43e4915ab2f04237646b8ad24"},"previous_names":["test502git/awvs13_batch_py3"],"tags_count":0,"template":false,"template_full_name":null,"repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/test502git%2Fawvs14-scan","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/test502git%2Fawvs14-scan/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/test502git%2Fawvs14-scan/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/test502git%2Fawvs14-scan/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/test502git","download_url":"https://codeload.github.com/test502git/awvs14-scan/tar.gz/refs/heads/master","host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":254464895,"owners_count":22075570,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2022-07-04T15:15:14.044Z","host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":[],"created_at":"2024-08-04T17:03:47.166Z","updated_at":"2025-05-16T04:05:30.994Z","avatar_url":"https://github.com/test502git.png","language":"Python","funding_links":[],"categories":["扫描器、资产收集、子域名","Python"],"sub_categories":["网络服务_其他"],"readme":"# 免责声明\n本项目仅用于安全自查，请勿利用文章内的相关工具与技术从事非法测试，如因此产生的一切不良后果与本项目无关\n\n\n\n本工具来自知识星球-BugBounty漏洞赏金自动化：\n\n![image](https://user-images.githubusercontent.com/50769953/167792916-20a9ee30-6f66-4f83-aa87-2c53e088565a.png)\n\n\n\n## awvs14-scan\n支持awvs14,15 修复多个Bug，config增加配置参数\n\nconfig.ini 请使用编辑器更改，记事本会改会原有格式\n\n针对 AWVS 14版本开发的批量扫描脚本，支持SpringShell\\log4j\\常见CVE\\Bug Bounty\\常见高危\\SQL注入\\XSS等 专项漏洞的扫描，支持联动xray、burp、w13scan等被动批量扫描，灵活自定义扫描模板\n\n```\n********************************************************************\n1 【批量添加url到AWVS扫描器扫描】\n2 【删除扫描器内所有目标与扫描任务】\n3 【删除所有扫描任务(不删除目标)】\n4 【对扫描器中已有目标，进行扫描】\n\n请输入数字:1\n选择要扫描的类型：\n1 【开始 完全扫描】\n2 【开始 扫描高风险漏洞】\n3 【开始 扫描XSS漏洞】\n4 【开始 扫描SQL注入漏洞】\n5 【开始 弱口令检测】\n6 【开始 Crawl Only,，建议config.ini配置好上级代理地址，联动被动扫描器】\n7 【开始 扫描意软件扫描】\n8 【仅添加 目标到扫描器，不做任何扫描】\n9 【仅扫描apache-log4j】(请需先确保当前版本已支持log4j扫描,awvs 14.6.211220100及以上)\n10 【开始扫描Bug Bounty高频漏洞】\n11 【扫描已知漏洞】（常见CVE，POC等）\n12 【自定义模板】\n13 【仅扫描Spring4ShellCVE-2022-22965】需确保当前版本已支持\n\n请输入数字:?\n```\n\n## 14版本脚本功能  \n仅支持AWVS14版本的API接口\n* 支持URL批量添加扫描\n* 支持批量仅扫描apache-log4j漏洞\n* 支持对批量url添加`cooKie`凭证进行爬虫扫描\n* 支持对批量url添加1个或多个不同请求头\n* 支持配置上级代理地址，能结合被动扫描器进行配置扫描,如：`xray`,`w13scan`,`burp`等扫描器\n* 支持一键清空所有任务\n* 通过配置`config.ini`文件，支持自定义各种扫描参数，如:爬虫速度，排除路径(不扫描的目录),全局`cookie`,限制为仅包含地址和子目录\n* 支持对扫描器内已有目标进行批量扫描，支持自定义扫描类型\n\n\n\n## Linux AWVS14 docker安装\n推荐使用docker \n```\n4月1号更新 支持Support Scanning !Spring4Shell (CVE-2022-22965) !!!\n\n安装： docker pull  xiaomimi8/docker-awvs-14.7.220401065\n\n启动用法： docker run -it -d -p 13443:3443 xiaomimi8/docker-awvs-14.7.220401065\n\n登录： Username:admin@admin.com password:Admin123\n```\n\n## 赞赏码\n如果对你有帮助的话要不请作者喝杯奶茶?(嘿嘿)👍 (打赏时请留言你的ID\n\n![](https://s3.bmp.ovh/imgs/2022/02/185eb77e0285777a.png)\n\n\n","project_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Ftest502git%2Fawvs14-scan","html_url":"https://awesome.ecosyste.ms/projects/github.com%2Ftest502git%2Fawvs14-scan","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Ftest502git%2Fawvs14-scan/lists"}