Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Einreichen
ToolsExploitsBlog
Einreichen

Hacking-, PenTest- und Cybersicherheits-Tools für Ihr Sicherheitsarsenal!

Kitploit ist ein Verzeichnis von Hacking-, Cybersicherheits- und Pentesting-Tools. Entdecken Sie die neuesten Projekt-Updates, um Schwachstellen zu finden, Systeme zu analysieren, Tests zu automatisieren und Ihre Sicherheit zu stärken.

FeedsKontaktDatenschutz© 2026 Kitploit

Tool-Verzeichnis

Kategorien

Alle Kategorien anzeigen
Loading categories
celerystalk — Ein asynchroner Enumeration- und Schwachstellenscanner. Führe alle Tools auf allen Hosts aus. | Kitploit
Tools/GitHubGitHub/sethsec/celerystalk
AufklärungSchwachstellenscannerNetzwerkkartierungPort-ScanningDNS- und Subdomain-EnumerationScripting & AutomatisierungInformationsbeschaffungWebsicherheitPenetrationstestsSubdomain-EnumerationCrawlerArchived
4006827vor 5 JahrenVon Kitploit geprüft

Beliebteste

Alle anzeigen →

Entdecken Sie die meistgenutzten Tools unserer Community.

Alle Tools erkunden

Durchsuchen Sie unsere Tool-Sammlung

Alle Tools anzeigen →
GitHubsethsec/celerystalk

celerystalk

Ein asynchroner Enumeration- und Schwachstellenscanner. Führe alle Tools auf allen Hosts aus.

Repository anzeigenWebseite
Teilen

celerystalk

celerystalk hilft Ihnen, Ihren Netzwerk-Scan/-Enumeration-Prozess mit asynchronen Jobs (auch Aufgaben genannt) zu automatisieren, während Sie die volle Kontrolle darüber behalten, welche Tools Sie ausführen möchten.

Interaktive Demo: Bug Bounty Modus (HackerOne)

Interaktive Demo: Schwachstellenanalyse / PenTest Modus (Ausgemusterte HackTheBox.eu Maschinen)

Was celerystalk für Sie automatisieren kann

PhaseBefehlBeispiele verwendeter Tools
DNS-Recon/Enumeration./celerystalk subdomains -d domain1,domain2Amass, sublist3r
Scope definieren, Nmap/Nessus importieren./celerystalk import [scan_data,scope_files,etc.]celerystalk
Port-Scanning./celerystalk nmapnmap
Verzeichnis- und Datei-Enumeration, Schwachstellenidentifikation./celerystalk scanGobuster, Nikto, Photon, sqlmap, wpscan, hydra, medusa, wappalyzer, whatweb usw.
Screenshots./celerystalk screenshotsAquatone
Analyse./celerystalk reportcelerystalk

celerystalk ist:

  • Konfigurierbar – Einige gängige Tools sind in der Standardkonfiguration enthalten, aber Sie können jedes gewünschte Tool hinzufügen.
  • Dienstbewusst – Verwendet Nmap/Nessus-Dienstnamen anstelle von Portnummern, um zu entscheiden, welche Tools ausgeführt werden.
  • Skalierbar – Entwickelt für das Scannen mehrerer Hosts, funktioniert aber auch gut für das Scannen eines einzelnen Hosts.
  • Virtuelle Hosts – Unterstützt Subdomain-Recon und Virtual-Host-Scanning.
  • Job-Steuerung – Unterstützt Abbrechen, Anhalten und Fortsetzen von Aufgaben, inspiriert vom Burp-Scanner.
  • Screenshots – Macht Screenshots (Aquatone) von jeder im Scope befindlichen URL, die von einem Tool identifiziert wurde (Sie können die Anzahl der Screenshots begrenzen, wenn Sie möchten).

Installation/Einrichtung

  • Unterstützte Betriebssysteme: Kali
  • Unterstützte Python-Version: 2.x

Sie müssen celerystalk als root installieren und ausführen.``` git clone https://github.com/sethsec/celerystalk.git cd celerystalk/setup ./install.sh cd .. ./celerystalk -h

## Docker-Container von Dockerhub verwenden```
docker pull sethsec/celerystalk:latest
docker run -p 27007:27007 -ti celerystalk

Docker-Erstellung```

docker build -t celerystalk https://github.com/sethsec/celerystalk.git docker run -p 27007:27007 -ti celerystalk

## Verwendung von celerystalk - Die Grundlagen


### [URL-Modus] - Wie man eine URL (oder mehrere URLs in einer Datei) scannt

#### Starte alle aktivierten Tools gegen eine URL oder viele URLs in einer Datei, ohne Scope, nmap, etc. importieren zu müssen.```
# ./celerystalk scan -u url or filename                 # Run all enabled commands against specified url(s)
# ./celerystalk query watch (then Ctrl+c)               # Wait for scans to finish
# ./celerystalk screenshots                             # Take screenshots
# ./celerystalk report                                  # Generate report

[CTF/HackTheBox/Easy mode] - Wie scanne ich einen oder mehrere Hosts

Importiere nmap xml```

nmap 10.10.10.10 -Pn -p- -sV -oX tenten.xml # Run nmap

./celerystalk import -f tenten.xml # Import nmap scan

#### Oder importieren Sie eine Liste der Hosts, die im Scope sind, und lassen Sie celerystalk nmap für Sie ausführen```
# ./celerystalk import -S scope.txt                     # Import IP/CIDR/Ranges and mark as in scope
# ./celerystalk nmap                                    # Nmap all in-scope hosts (reads options from config.ini)

Importierte Dienste prüfen, Scans starten, Screenshots erstellen, Bericht generieren```

./celerystalk db services # If you want to see what services were loaded

./celerystalk scan # Run all enabled commands

./celerystalk query watch (then Ctrl+c) # Watch scans as move from pending > running > complete

./celerystalk screenshots # Take screenshots

./celerystalk report # Generate report

## Advanced Usage: Bug Bounty Mode vs Vulnerability Assessment Mode

You define the mode at workspace instantiation. The default workspace is VAPT mode, but you have two options for manually 
created workspaces.

* If you are starting with in scope IP addresses/ranges/CIDRs, use Vulnerability Assessment and PenTest (VAPT) mode.
* If you are starting with in scope domains, use Bug Bounty (BB) mode. 

### [Bug Bounty Mode] 

*  In BB mode, all subdomains found with celerystalk or manually imported are marked in scope.

#### Find subdomains, define out of scope hosts, scan everything else```
# ./celerystalk workspace create -o /dir -m bb          # Create default workspace and set output dir
# ./celerystalk subdomains -d company.com,dom.net       # Find subdomains and determine if in scope
# ./celerystalk import -S scope.txt     (optional)      # Import IP/CIDR/Ranges and mark as in scope
# ./celerystalk import -O out_scope.txt (optional)      # Define HOSTS/IPs that are out of scope
# ./celerystalk nmap                    (optional)      # Nmap all in-scope hosts (reads options from config.ini)
# ./celerystalk import -f client.xml    (optional)      # If you would rather import an nmap file you already ran
# ./celerystalk scan [--noIP]                           # Run all enabled commands against all in scope hosts
# ./celerystalk query watch (then Ctrl+c)               # Wait for scans to finish
# ./celerystalk screenshots                             # Take screenshots
# ./celerystalk report                                  # Generate report

Hinweis: Sie können zuerst den Subdomain-Befehl ausführen und dann den Scope definieren, oder Sie können den Scope definieren und Subdomains importieren.

[Schwachstellenbewertungsmodus]

  • Im VAPT-Modus definieren IP-Adressen/-Bereiche/CIDRs den Scope.
  • Subdomains, die mit einer im Scope befindlichen IP übereinstimmen, werden ebenfalls zum Scope hinzugefügt.

Nmap-Scan importieren, optional IPs oder Hostnamen außerhalb des Scopes festlegen```

nmap -iL inscope-list.txt -Pn -p- -sV -oX client.xml # Run nmap

./celerystalk workspace create -o /dir -m vapt # Create default workspace and set output dir

./celerystalk import -f client.xml # Import services and mark all hosts as in scope

./celerystalk import -S scope.txt (optional) # Import IP/CIDR/Ranges and mark as in scope

./celerystalk import -O out_scope.txt (optional) # Define HOSTS/IPs that are out of scope

./celerystalk import -d subdomains.txt (optional) # Define subdomains that are in scope

./celerystalk subdomains -d dom1.com,dom2.net (optional) # Find subdomains and determine if in scope

./celerystalk scan # Run all enabled commands

./celerystalk query watch (then Ctrl+c) # Wait for scans to finish

./celerystalk screenshots # Take screenshots

./celerystalk report # Generate report

**Hinweis:** Sie können zuerst den subdomains-Befehl ausführen und dann den Scope definieren, oder Sie können den Scope definieren und Subdomains importieren.
Tool herunterladen