A simple yet powerful tool for scanning web applications for common vulnerabilities.
- Port scanning using nmap
- Security header analysis
- Basic XSS vulnerability testing
- YAML report generation
- Color-coded console output
- Clone this repository
- Install dependencies:
pip install -r requirements.txt
python web_scanner.py <target_url>Example:
python web_scanner.py https://example.comThis tool is for educational and security testing purposes only. Always obtain proper authorization before scanning any web application.
The scanner generates a comprehensive YAML report containing:
- Open ports
- Security headers status
- XSS vulnerability status
- Scan timestamp