afrog is a high-performance vulnerability scanner with support for built-in and custom PoCs. It is designed for fast verification, low false positives, and practical workflows across web targets, network services, PoC authoring, and SDK-based integration.
For source builds or go install, use Go 1.27 or later.
Download the latest release from:
git clone https://github.com/zan8in/afrog.git
cd afrog
go mod tidy
go build -o afrog cmd/afrog/main.go
./afrog -hgo install -v github.com/zan8in/afrog/v3/cmd/afrog@latestScan a single target:
afrog -t https://example.comScan multiple targets from a file:
afrog -T targets.txtRun only high and critical checks:
afrog -T targets.txt -S high,criticalThe documentation is being reorganized into a structured bilingual tree. Chinese content is currently the most complete; English paths are already reserved and will be filled incrementally.
- Chinese docs index: docs/zh/index.md
- English docs index: docs/en/index.md
- PoC quickstart: docs/zh/poc/quickstart.md
- SDK quickstart: docs/zh/sdk/quickstart.md
- Contributors: docs/zh/community/contributors.md
PoC contributors are a core part of the afrog community. This section stays in the repository README on purpose so contributor recognition remains visible in the first place people land.
For contribution guidance, see the Chinese contributor guide. For a stable docs entry, see docs/zh/community/contributors.md.
不动明王 |
雪山 |
White-hua |
123456 |
ifofor |
Air |
执着 |
purple-WL |
throat |
Secx |
冰河 |
Sheen |
a16 |
A1 |
rainbow2972 |
wuha0926 |
茄子 |
lei_sec |
G-H-Z |
wh1te |
清月 |
york |
7eleven.eth |
Double... |
ICEY_ |
lazy |
free2e |
m4sk |
沉默树人 |
陈麻子 |
leonardo-o1 |
江湖人称魏... |
若兮风 |
-sudo |
Cuerz |
laohuan12138 |
exp0l0zzz |
1derian |
CMDB-M |
li1u |
oxsonder |
Zhiliao |
段 |
HuiTaiL |
Miracles666 |
Observer |
黑熊 |
TryA9ain |
fgz00 |
Y3y1ng |
二大爷 |
Wans |
海边的小米粥 |
Wen |
SULAB |
ZacharyZcR |
Superhero |
k5rC85Lma |
- Basic scanner
- Async scanner
- OOB scanner
- Progress scanner
- Full output
- SDK portscan
- Vulnerability scan
- Port scan
- Releases: https://github.com/zan8in/afrog/releases
- Wiki archive: https://github.com/zan8in/afrog/wiki
To join the afrog WeChat discussion group, add the afrog account and mark it as afrog.
afrog is part of 404Starlink.
This tool is intended only for legally authorized security work. Do not scan unauthorized targets. The user is solely responsible for any misuse or illegal activity.


























































