Osmedeus
MIT⚡ Vulnerability Scanning · Go
Osmedeus is a workflow engine for offensive security that automates the entire reconnaissance and vulnerability assessment pipeline. It chains together subdomain enumeration, port scanning, web crawling, screenshot capture, vulnerability scanning, and notification into configurable YAML workflows. Osmedeus manages distributed scanning across multiple machines, deduplicates findings, and stores results in a searchable database with a web UI. It integrates dozens of tools (subfinder, httpx, nuclei, nmap, etc.) into coherent automated pipelines that run continuously or on-demand. Designed for bug bounty hunters and penetration testers managing multiple targets simultaneously.
Installation
$ go install github.com/j3ssie/osmedeus@latestUse Cases
- Automated multi-tool reconnaissance pipelines
- Continuous vulnerability scanning across targets
- Distributed scanning with result aggregation
- Bug bounty target management and monitoring
Tags
Details
- Category
- ⚡ Vulnerability Scanning
- Language
- Go
- Repository
- j3ssie/osmedeus
- License
- MIT
- Platforms
- 🐧linux🍎macos
Links
Community Reviews
Alternatives & Comparisons
Nuclei
GoFast vulnerability scanner driven by YAML templates. Thousands of community-contributed detection templates.
Compare Osmedeus vs NucleiBBOT
PythonRecursive internet scanner for automated recon, bug bounties, and attack surface management with 100+ modules.
Compare Osmedeus vs BBOTMore in Vulnerability Scanning
Nuclei
GoFast vulnerability scanner driven by YAML templates. Thousands of community-contributed detection templates.
sqlmap
PythonAutomatic SQL injection and database takeover tool. Detects and exploits SQL injection flaws.
WPScan
RubyWordPress security scanner. Enumerates plugins, themes, users, and checks for known vulnerabilities.
OpenVAS
CFull-featured vulnerability scanner. 50,000+ NVTs, credentialed scanning, compliance checks.
XSStrike
PythonAdvanced XSS detection suite. Fuzzing engine, context analysis, and WAF detection/bypass capabilities.
Commix
PythonAutomated OS command injection exploitation tool. Tests web apps for command injection vulnerabilities.