Skip to content
KitploitKITPLOIT
ツールエクスプロイトブログ
Log in
提出
ツールエクスプロイトブログ
提出

ハッキング、侵入テスト、サイバーセキュリティツールをあなたのセキュリティアーセナルに!

Kitploitはハッキング、サイバーセキュリティ、ペネトレーションテストのツールディレクトリです。最新のプロジェクトアップデートを見つけて、脆弱性の発見、システム分析、テストの自動化、セキュリティの強化を行いましょう。

フィードお問い合わせプライバシー© 2026 Kitploit

ツールディレクトリ

カテゴリ

すべてのカテゴリを見る
Loading categories
ssh-audit — SSHサーバー&クライアントのセキュリティ監査 (バナー、鍵交換、暗号化、MAC、圧縮、互換性、セキュリティなど) | Kitploit
ツール/GitHubGitHub/jtesta/ssh-audit
脆弱性スキャナーネットワークマッピングポートスキャン脆弱性分析構成監査情報収集ネットワークセキュリティ暗号化ペネトレーションテストネットワークマッピング 第13位
4.3k231362ヶ月前Kitploit レビュー済み
ポートスキャン 第16位
GitHubjtesta/ssh-audit

ssh-audit

SSHサーバー&クライアントのセキュリティ監査 (バナー、鍵交換、暗号化、MAC、圧縮、互換性、セキュリティなど)

リポジトリを見る

人気

すべて見る →

コミュニティで最も使われているツールを見つけましょう。

すべてのツールを探索

ツールコレクションを閲覧

すべてのツールを見る →
共有

ssh-audit

License Build Status PRs Welcome

PyPI Downloads Homebrew Downloads Docker Pulls Snap Downloads

Github Sponsors

ssh-audit は、SSHサーバーおよびクライアントの設定監査を行うためのツールです。

jtesta/ssh-audit (v2.0+) は、arthepsy/ssh-audit (v1.x) からフォークした、ssh-audit の更新・保守版です。元のリポジトリが非アクティブになったためです。

  • 機能
  • 使い方
  • スクリーンショット
    • サーバー標準監査の例
    • サーバーポリシー監査の例
    • クライアント標準監査の例
  • 堅牢化ガイド
  • ビルド済みパッケージ
  • Webフロントエンド
  • 変更履歴

機能

  • SSHサーバーとクライアントの両方の設定を分析;
  • バナーを取得し、デバイスやソフトウェア、オペレーティングシステムを識別し、圧縮を検出;
  • 鍵交換、ホスト鍵、暗号化、メッセージ認証コードアルゴリズムを収集;
  • アルゴリズムのセキュリティ情報を出力 (利用可能時期、削除/無効化、危険/脆弱/レガシーなど);
  • アルゴリズムの推奨事項を出力 (認識されたソフトウェアバージョンに基づいて追加または削除);
  • アルゴリズム情報に基づいてSSHバージョンの互換性を分析;
  • OpenSSH、Dropbear SSH、libssh からの履歴情報;
  • 堅牢化/標準設定への準拠を保証するポリシースキャン;
  • Linux と Windows で動作;
  • Python 3.10 - 3.14 をサポート;
  • 依存関係なし

使い方```

usage: ssh-audit.py [-h] [-4] [-6] [-b] [-c] [-d] [-g min1:pref1:max1[,min2:pref2:max2,...] / <x-y[:step]>] [-j] [-l {info,warn,fail}] [-L] [-M custom_policy.txt] [-m] [-n] [-P "Built-In Policy Name" / custom_policy.txt] [-p N] [-T targets.txt] [-t N] [-v] [--conn-rate-test N[:max_rate]] [--dheat N[:kex[:e_len]]] [--get-hardening-guide platform] [--list-hardening-guides] [--lookup alg1[,alg2,...]] [--skip-rate-test] [--socks5 host:port] [--threads N] [host]

ssh-audit.py v3.4.1-dev, https://github.com/jtesta/ssh-audit

positional arguments: host target hostname or IPv4/IPv6 address

optional arguments: -h, --help show this help message and exit -4, --ipv4 enable IPv4 (order of precedence) -6, --ipv6 enable IPv6 (order of precedence) -b, --batch batch output -c, --client-audit starts a server on port 2222 to audit client software config (use -p to change port; use -t to change timeout) -d, --debug enable debugging output -g min1:pref1:max1[,min2:pref2:max2,...] / <x-y[:step]>, --gex-test min1:pref1:max1[,min2:pref2:max2,...] / <x-y[:step]> conducts a very customized Diffie-Hellman GEX modulus size test. Tests an array of minimum, preferred, and maximum values, or a range of values with an optional incremental step amount -j, --json enable JSON output (use -jj to enable indentation for better readability) -l {info,warn,fail}, --level {info,warn,fail} minimum output level (default: info) -L, --list-policies list all the official, built-in policies. Combine with -v to view policy change logs -M custom_policy.txt, --make-policy custom_policy.txt creates a policy based on the target server (i.e.: the target server has the ideal configuration that other servers should adhere to), and stores it in the file path specified -m, --manual print the man page (Docker, PyPI, Snap, and Windows builds only) -n, --no-colors disable colors (automatic when the NO_COLOR environment variable is set) -P "Built-In Policy Name" / custom_policy.txt, --policy "Built-In Policy Name" / custom_policy.txt run a policy test using the specified policy (use -L to see built-in policies, or specify filesystem path to custom policy created by -M) -p N, --port N the TCP port to connect to (or to listen on when -c is used) -T targets.txt, --targets targets.txt a file containing a list of target hosts (one per line, format 'HOST[:PORT]'; for UNIX socket servers, use 'unix:///path/socket'). Use -p/--port to set the default port for all hosts. Use --threads to control concurrent scans -t N, --timeout N timeout (in seconds) for connection and reading (default: 5) -v, --verbose enable verbose output --conn-rate-test N[:max_rate] perform a connection rate test (useful for collecting metrics related to susceptibility of the DHEat vuln). Testing is conducted with N concurrent sockets with an optional maximum rate of connections per second --dheat N[:kex[:e_len]] continuously perform the DHEat DoS attack (CVE-2002-20001) against the target using N concurrent sockets. Optionally, a specific key exchange algorithm can be specified instead of allowing it to be automatically chosen. Additionally, a small length of the fake e value sent to the server can be chosen for a more efficient attack (such as 4). --get-hardening-guide platform retrieves the hardening guide for the specified platform name (use --list-hardening-guides to see list of available guides). --list-hardening-guides list all official, built-in hardening guides for common systems. Their full names can then be passed to --get-hardening-guide. Add -v to this option to view hardening guide change logs and prior versions. --lookup alg1[,alg2,...] looks up an algorithm(s) without connecting to a server. --skip-rate-test skip the connection rate test during standard audits (used to safely infer whether the DHEat attack is viable) --socks5 host:port connect via a SOCKS5 proxy (implies --skip-rate-test) --threads N number of threads to use when scanning multiple targets (-T/--targets) (default: 32)

* IPv4とIPv6の両方が使用されている場合、優先順位は`-46`または`-64`のいずれかを使用して設定できます。
* バッチフラグ`-b`は、ヘッダーなし、空行なしでセクションを出力します(verboseフラグを暗黙的に有効にします)。
* verboseフラグ`-v`は、各行の先頭にセクションタイプとアルゴリズム名を付けます。
* 終了コード0は、すべてのアルゴリズムが安全と見なされる場合(標準監査)、またはポリシーチェックが合格した場合(ポリシー監査)に返されます。
ツールをダウンロード