Skip to content

V3n0mSh3ll/snakebite

Folders and files

NameName
Last commit message
Last commit date

Latest commit

Β 

History

2 Commits
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 

Repository files navigation

Snakebite Banner

🐍 Snakebite Advanced Vulnerability Scanner

Version Modules Platform Platform License

The Most Powerful All-in-One Web Vulnerability Scanner

⬇️ Download β€’ πŸš€ Quick Start β€’ πŸ“‹ Features β€’ πŸ“– Usage


πŸ”₯ What is Snakebite?

Snakebite is a professional-grade vulnerability scanner with 122+ security modules built for penetration testers, bug bounty hunters, and security researchers. It performs comprehensive security assessments including reconnaissance, injection testing, CMS scanning, and advanced exploit detection all from a single executable.

βœ… Why Snakebite?

  • πŸ”₯ 122+ Security Modules - More than any other scanner
  • 🎯 Zero Dependencies - Single standalone executable
  • ⚑ Async Architecture - Lightning-fast concurrent scanning
  • πŸ“Š Professional Reports - JSON, HTML & PDF output
  • πŸ›‘οΈ OWASP Top 10 - Full compliance assessment
  • πŸ€– AI-Powered - Smart vulnerability prediction

πŸ“Š Comparison

Feature Snakebite Others
Modules 122+ 10-30
CMS Detection 10 1-3
Auto Exploit βœ… ❌
OWASP Compliance βœ… ❌
CVE Intelligence βœ… ❌
Single .exe βœ… ❌

⬇️ Download

πŸš€ Latest Release: v2.0

Platform Download Size
πŸͺŸ Windows x64 Snakebite.exe ~17 MB
🐧 Linux x64 snakebite-linux ~28 MB

πŸ’‘ No Python installation required. Just download and run!


πŸš€ Quick Start

πŸͺŸ Windows

# Basic scan
.\Snakebite.exe -u https://target.com

# Verbose + custom timeout
.\Snakebite.exe -u https://target.com -v --timeout 20

# Stealth scan
.\Snakebite.exe -u https://target.com --profile stealth

# Through Burp Suite proxy
.\Snakebite.exe -u https://target.com --proxy http://127.0.0.1:8080

# Scan with auth cookie
.\Snakebite.exe -u https://target.com --cookie "session=abc123"

🐧 Linux / Termux

# Make executable
chmod +x snakebite-linux

# Basic scan
./snakebite-linux -u https://target.com

# Stealth mode
./snakebite-linux -u https://target.com --profile stealth

πŸ“‹ Features

πŸ” Reconnaissance & OSINT

  • DNS Records, GeoIP, Reverse IP
  • Subdomain Enumeration (CT + Brute)
  • Wayback Machine Archive
  • Email Harvesting & Social Media
  • Technology Fingerprinting
  • Google Dorking & Shodan

πŸ’‰ Injection Testing

  • SQL Injection (Error + Blind + Time)
  • Cross-Site Scripting (Reflected/Stored/DOM)
  • Remote Code Execution (RCE)
  • Server-Side Template Injection (SSTI)
  • Local File Inclusion (LFI)
  • XML External Entity (XXE)
  • NoSQL / LDAP / XPath Injection
  • OS Command Injection
  • Log4Shell & Spring4Shell

πŸ” Authentication & Session

  • JWT Security Analysis & Forge Engine
  • OAuth2 Full Chain Testing
  • Session Fixation Detection
  • Broken Access Control (BOLA/BFLA)
  • Password Spray & Brute Force

🌐 Web Application

  • CORS Misconfiguration
  • Clickjacking Detection
  • HTTP Request Smuggling
  • Cache Poisoning & Deception
  • WebSocket Hijacking
  • Race Condition Scanner
  • Prototype Pollution

☁️ Cloud & Infrastructure

  • AWS S3 Bucket Scanner
  • Cloud Metadata SSRF
  • Kubernetes (K8s) Scanner
  • Docker API Scanner
  • Firebase Misconfiguration
  • Cloud IAM Privilege Escalation

🏒 CMS & Enterprise

  • WordPress, Drupal, Joomla
  • Jenkins, Elastic, Tomcat, WebLogic
  • SAP, Exchange, VMware, F5, Citrix
  • Jira, Confluence, SonarQube

πŸ›‘οΈ Advanced Security

  • WAF Detection & ML Bypass
  • Zero-Day Pattern Detection
  • AI Vulnerability Prediction
  • Auto CVE Exploit Engine (2023-2025)
  • Supply Chain Auditor

πŸ“– Usage

Snakebite.exe [OPTIONS]

Options:
  -u, --url URL           Target URL
  -t, --threads N         Concurrent connections (default: 50)
  -o, --output FILE       Output file name
  -v, --verbose           Enable debug logging
  --proxy PROXY           HTTP/SOCKS proxy
  --timeout SEC           Request timeout (default: 15)
  --profile PROFILE       Scan profile: light, standard, full, stealth
  --cookie COOKIE         Authentication cookie
  --header HEADER         Custom header (e.g. 'Authorization: Bearer TOKEN')
  --wordlist FILE         Custom wordlist for fuzzing
  --webhook URL           Callback URL for blind XSS/SSRF
  --telegram-token TOKEN  Telegram alerts
  --discord-webhook URL   Discord alerts
  --shodan-key KEY        Shodan API key
  --vt-key KEY            VirusTotal API key
  --github-token TOKEN    GitHub leak scanning
  --diff OLD NEW          Compare two scan reports

βš™οΈ Scan Profiles

Profile Speed Coverage Best For
πŸ₯· stealth 🐒 Slow Passive only Avoid detection
⚑ light πŸš€ Fast Core modules Quick assessment
🎯 standard βš–οΈ Medium All modules Default scan
πŸ’€ aggressive πŸ”₯ Maximum Everything Full pentest

πŸ“Š Report Formats

Format Description
πŸ“„ JSON Machine-readable output for automation & CI/CD
🌐 HTML Interactive dashboard with risk scores
πŸ“‘ PDF Professional pentest report for clients

⚠️ Legal Disclaimer

Snakebite is designed for authorized security testing only.

Only use this tool on systems you own or have explicit written permission to test. Unauthorized access to computer systems is illegal. The developer assumes no liability for misuse of this software.


πŸ“ž Contact

Made with 🐍 by V3n0mSh3ll

🌐 muhammadabid.com

Stars Downloads


⬆️ Back to Top

About

Snakebite v2.0 Advanced Vulnerability Scanner with 110+ modules. Full-stack recon, injection testing, cloud security, and automated exploit intelligence.

Topics

Resources

License

Contributing

Security policy

Stars

Watchers

Forks

Packages

 
 
 

Contributors