Sn1per is an offensive-security platform that combines reconnaissance, vulnerability scanning, exploitation, and reporting in organized workspaces. It automates phased discovery from open-source intelligence and subdomain enumeration through host identification, fingerprinting, and active verification. Multiple scan modes support individual targets, networks, web services, port ranges, and larger target lists. Results, evidence, and reusable loot are stored by workspace for continued assessment and reporting. The current platform emphasizes Docker-based deployment and can also run on supported Linux distributions or a preconfigured cloud image. Commercial editions add a graphical dashboard, workspace navigation, report exports, integrations, and a JSON API, while the repository contains the Community Edition. It is intended only for authorized penetration tests, attack-surface management, and defensive security validation.
Features
- Automated reconnaissance and attack-surface discovery
- Vulnerability scanning with active verification
- Multiple target and service scanning modes
- Workspace-based evidence and loot organization
- Docker, Linux, and cloud deployment options
- Reporting, security integrations, and API access