Skip to main content

VASA Security Scanner - Web Application Security Testing Tool

Project description

🔍 VASA Scanner

A powerful Web Application Security Assessment (WASA) tool for penetration testers and security researchers.

PyPI version License Python Downloads


✨ Features

  • 🍪 Cookie Security Scanning — Detects insecure cookie configurations
  • 🌐 HTTP Method Testing — Tests for dangerous HTTP methods enabled
  • 🔢 OTP Brute-force Detection — Checks for OTP rate limiting weaknesses
  • 🔄 Response Manipulation Detection — Identifies response tampering issues

📦 Installation

pip install vasa-scanner

🚀 Usage

vasa-scan https://example.com

📸 Demo


📋 Requirements

  • Python 3.8+
  • requests
  • openpyxl

🛠️ How It Works

VASA Scanner automatically tests your target web application for:

  1. Cookie Issues — Missing Secure, HttpOnly, SameSite flags
  2. HTTP Methods — Checks if dangerous methods like PUT, DELETE are enabled
  3. OTP Security — Tests for brute-force protection on OTP endpoints
  4. Response Manipulation — Detects if responses can be tampered with

🤝 Contributing

Contributions are welcome!

  1. Fork the repo
  2. Create your feature branch (git checkout -b feature/AmazingFeature)
  3. Commit your changes (git commit -m 'Add AmazingFeature')
  4. Push to the branch (git push origin feature/AmazingFeature)
  5. Open a Pull Request

🐛 Bug Reports

Found a bug? Please open an issue on GitHub Issues


📄 License

MIT License — see LICENSE for details.


👤 Author

Jishin C


⭐ Support

If you find this tool useful, please star the repo ⭐ — it helps others discover it!

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

vasa_scanner-0.1.3.tar.gz (7.4 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

vasa_scanner-0.1.3-py3-none-any.whl (7.8 kB view details)

Uploaded Python 3

File details

Details for the file vasa_scanner-0.1.3.tar.gz.

File metadata

  • Download URL: vasa_scanner-0.1.3.tar.gz
  • Upload date:
  • Size: 7.4 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.12.0

File hashes

Hashes for vasa_scanner-0.1.3.tar.gz
Algorithm Hash digest
SHA256 c08419e3d402b0fb3d8c8a12effa6797d5eacae69709bb93d70ff89a1784c192
MD5 217ea88b91936b4f3eb4e49514681112
BLAKE2b-256 d5610a1a18600ce284f85c654f6eb1a8c1f83857f122102d0efec76fee1061b2

See more details on using hashes here.

File details

Details for the file vasa_scanner-0.1.3-py3-none-any.whl.

File metadata

  • Download URL: vasa_scanner-0.1.3-py3-none-any.whl
  • Upload date:
  • Size: 7.8 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.12.0

File hashes

Hashes for vasa_scanner-0.1.3-py3-none-any.whl
Algorithm Hash digest
SHA256 99b0efc72dd34f354308148425b6b34ba2cb93b2bfe4d4d52407881d4ce068ef
MD5 dcd0cb4858fe12cff6df52482c003c7d
BLAKE2b-256 259c49682a96b8ff35ca9afc4cacdfd41202b0838ffa4fe8c0bb3b88db0d1597

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page