Back to the registry
Agent passport

Sn1per Community Edition

Sn1perSecurity · Cybersecurity & IT

Partial captureNo attestation published

Certification per AWS Marketplace.

Provenance reach4 of 12 layers traced

Evidence tier Source Confirmed · 4 captures on record

User ratingNot rated0 reviews · G2 4
Runs onUnknownVirtual machine
ProvenanceUnknown44% of the provenance layers this product can disclose
Evidence riskHighSign in to see the basis for this band.

What the publisher says

As described on AWS Marketplace.

Sn1per Community Edition is a free, open-source attack surface management (ASM) and automated penetration testing platform built by working pentesters since 2014. Trusted by 500+ security teams worldwide, with 10,000+ stars and 2,000+ forks on GitHub.

Sn1per Community Edition discovers your organization's external attack surface, automates reconnaissance and OSINT collection, scans for vulnerabilities and CVEs, and verifies exploitability - all from a single command-line tool. Deploy on Kali Linux, Ubuntu, Debian, or Docker in minutes.

Show the rest of the publisher’s description (32 more lines)

For the full web UI, multi-user workspaces, active exploitation modules, PDF reporting, and distributed scanning at enterprise scale, see Sn1per Professional 2026 and Sn1per Enterprise at https://sn1persecurity.com.

Use cases

  • External Attack Surface Management (EASM) - Continuous discovery, monitoring, and risk prioritization of every internet-facing asset, including assets that don't appear in a CMDB.

Combines DNS enumeration, certificate transparency, port scanning, web fingerprinting, and OSINT.

  • Automated Penetration Testing - Orchestrate 600+ exploits and 10,000+ detections in a single workflow. Active verification eliminates the false positives that version-only vulnerability

scanners ship as "critical."

  • Bug Bounty Automation - Manage large attack surfaces and stay ahead of the competition with continuous scanning, change detection, and integrated reporting.
  • Red Team Automation - Simulate real-world attackers and stress-test blue team detection and response.
  • Vulnerability Scanning - Aggregate findings from open-source and commercial scanners into one centralized risk view. Integrates natively with Nessus, OpenVAS / GVM, Nuclei, OWASP ZAP, Burp Suite Pro, WPScan, and Metasploit.
  • Dynamic Application Security Testing (DAST) - Scan web applications for OWASP Top 10 vulnerabilities, injection flaws, authentication weaknesses, and misconfigurations.
  • Threat Intelligence and OSINT - Stay current with emerging CVEs, data breaches, and exploit releases. Native integrations with Shodan, Censys, Hunter.io, and VirusTotal.
  • Continuous Attack Surface Monitoring - Schedule daily, weekly, or monthly rescans to detect new domains, subdomains, open ports, HTTP header changes, and exposed services.

Core features

  • One-line installation script - running in under five minutes on Kali Linux, Ubuntu, Debian, or Docker
  • 90+ native integrations with leading security tools, APIs, and threat intelligence services
  • 600+ exploit modules and 10,000+ detection signatures
  • Full attack surface coverage across on-prem, cloud, and hybrid environments
  • Scope and configuration controls for safe execution in production environments
  • Centralized IT asset inventory - searchable, sortable, and filterable
  • Notifications for new domains, new URLs, open-port changes, and surface drift
  • Export attack-surface inventory and vulnerability reports to CSV, XLS, or PDF
  • Daily, weekly, or monthly scheduled scans with diff alerting
  • On-premises deployment - scan data never leaves your environment

Installation

git clone https://github.com/1N3/Sn1per && cd Sn1per && bash install.sh

sniper -t target.com -m normal

Resources

  • GitHub repository: https://github.com/1N3/Sn1per (10,000+ stars)
  • Documentation: https://sn1persecurity.com/wordpress/documentation/
  • Sn1per Professional and Enterprise editions: https://sn1persecurity.com
  • About Sn1perSecurity LLC: https://sn1persecurity.com/wordpress/about/

Keywords: attack surface management, ASM, EASM, external attack surface management, automated penetration testing, automated pentest, vulnerability scanner, OSINT framework, reconnaissance scanner, bug bounty automation, red team automation, DAST, dynamic application security testing, continuous penetration testing, open source pentest tool, free penetration testing tool, Kali Linux pentest, security automation, Sn1per, Sn1perSecurity.

Highlights

Highlighted by the publisher on AWS Marketplace.

External Attack Surface Management (EASM) without blind spots. Sn1per continuously discovers and monitors every internet-facing asset your organization owns, including shadow IT, forgotten subdomains, and cloud sprawl that never make it into the CMDB. Combines DNS enumeration, certificate transparency, port scanning, web fingerprinting, and OSINT collection into one unified attack surface management workflow. Trusted by 500+ security teams worldwide with 10,000+ GitHub stars.

Automated penetration testing with active verification - no more false positives. Sn1per orchestrates 600+ exploits and 10,000+ detection signatures in a single workflow, then verifies exploitability so your team triages real risk instead of version-only critical findings. Native integrations with Nessus, Nuclei, OpenVAS, OWASP ZAP, Burp Suite Pro, Metasploit, and Shodan. Run from the CLI on Kali Linux, Ubuntu, Debian, or Docker.

Free, open-source, and 100% on-premises - scan data never leaves your perimeter. Sn1per Community Edition is the attack surface management and automated pentest tool of choice for pentesters, bug bounty hunters, red teams, and SOC analysts who need full control over their tooling. One-line install on Kali Linux, Ubuntu, Debian, or Docker.

Agent build and provenance

See the full provenance

The layer-by-layer build, the evidence behind each claim, the risk basis and the cross-marketplace links are open to any account. Some rows are disclosed, some the source leaves Unknown; a free account shows you which.

Compliance

Government
  • FedRAMPConfirmedNot listed90%, registry-checkedNo FedRAMP Marketplace entry matched this vendor's domain, checked 2026-08-27registry recordas observed 2026-08-27

Confirmed means matched to a public authoritative registry. Claimed means the vendor or its listing states it, not yet cross-checked. A framework not shown was not found in any source we hold, which is not evidence against it. Not listed means a scoped registry check found no match for this vendor's domain: a No is a scoped registry check, not a compliance judgment. Confidence bands: 95% domain-verified, 90% registry-checked, 80% self-attested, 70% weak signal. Self-attested items marked “vendor's site” are gathered from the vendor's own website and are not verified by us.

Vendor

External enrichment

CompanySn1perSecurityAutomated

Refund terms

As stated by the publisher on AWS Marketplace.

This is a free software product, so no refunds will be accepted.

Sources

Marketplace listingaws.amazon.comSource
App certificationaws.amazon.comSource
CustomEulaCustomEulaSource

Publisher resources

4 links
Product Videowww.youtube.comSource
Sn1perSecurity Websitesn1persecurity.comSource
Sn1per Githubgithub.comSource
Sn1perSecurity YouTubewww.youtube.comSource

Linked repositories

1 repo

Unknown means this listing does not publish a repository. It is not a statement that the code is closed, and a linked repository is not a claim that the publisher wrote it: the registry computes that relationship privately and does not publish it.

Pricing
Paid
Rate card pricing
Delivery
Virtual machine
https://github.com/1N3/Sn1per
Open the source listing ↗

Evidence risk is the share of the build you cannot see before you deploy, not a security rating. Sign in to see the layer-by-layer basis for this band.