scanrub
Integrations

25 tools, one platform.

ScanRub orchestrates the best open-source security tools into one adaptive pipeline. No CLI setup, no dependency hell, no version pinning - we handle it all.

9 tools

Reconnaissance

subfinder

Fast passive subdomain enumeration using dozens of sources

assetfinder

Alternative subdomain discovery for cross-verification

amass

DNS enumeration + certificate transparency logs

naabu

Fast port scanning pre-pass before deeper probing

alterx

Subdomain permutation from already-discovered names

httpx

Fast HTTP prober - status, tech, tls, hashes

katana

Next-generation crawling & spider framework

waybackurls

Historical URLs from the Wayback Machine

gau

Get all URLs from AlienVault OTX, Wayback, Common Crawl

3 tools

Fingerprinting & Analysis

whatweb

Web fingerprinting with 1,800+ plugins

wafw00f

Identify WAFs to inform testing strategy

arjun

Discover hidden HTTP parameters

7 tools

Vulnerability Scanning

nuclei

Template-based scanner with thousands of community templates

dalfox

Advanced XSS scanner with context-aware payload generation

sqlmap

SQL injection detection and exploitation

nikto

Web server misconfiguration and known-vuln scanner

ffuf

Fast web fuzzer for directories, params, and files

gitleaks

Scan Git repos for exposed secrets

trufflehog

High-entropy secret detection in JS bundles

2 tools

TLS & Infrastructure

nmap

Port scanning and service detection

cmseek

CMS-specific vulnerability detection

3 tools

Cloud & Credentials

s3scanner

Find and check permissions on exposed cloud storage buckets

cloud_enum

Enumerate exposed resources across AWS, Azure, and GCP

hashcat

Password hash cracking for credential-strength checks

1 tools

Browser Automation

playwright

Headless browser for DOM scanning, screenshots, session testing

Notifications & Workflows

Alerts and integrations

Slack
Available

Real-time alerts to any channel via incoming webhook

Discord
Available

Post scan completion + critical findings to Discord

Email
Coming

Digest emails and instant alerts on critical findings

Webhooks
Coming

Generic outbound HTTP webhooks for custom integrations

Jira
Coming

Auto-create Jira tickets for high-severity findings

Linear
Coming

Sync findings to Linear as issues

GitHub Actions
Coming

Run scans in CI/CD, fail builds on critical findings

GitLab CI
Coming

Native integration for GitLab pipelines

Why orchestration matters

Every tool listed here is powerful on its own. Running them individually is a full-time job - you need to install each, keep them updated, chain the output correctly, deduplicate findings, and interpret the results.

ScanRub runs them in the right order, feeds each tool's output into the next, validates findings with AI, and produces one clean report. It's the difference between having a toolbox and having a workshop.

Skip the setup. Start scanning.

Every tool above, already installed and wired together - you just point it at a target.

Weekly security research

New vulnerability playbooks, tool updates, and bug bounty insights - delivered to your inbox. No spam.

Unsubscribe anytime. We respect your inbox.
Press ⌘K to search×