qsa.sh lets you scan your public IP for vulnerabilities instantly via curl
A new tool called qsa.sh allows users to run an external security scan of their own public IP address directly from the terminal using a single curl command. The scan uses open-source tools including naabu, nmap with vulners, and nuclei to check for open ports and vulnerabilities, delivering results in roughly 30 seconds. A built-in 15-second grace period lets users abort the scan before it begins, and the tool only scans the IP initiating the request, preventing misuse against third-party targets. Connections from CGNAT, mobile carriers, VPNs, and Tor exit nodes are refused outright. No scan results are stored — all output is streamed live to the terminal and discarded afterward.
This is an AI-generated summary. ShortSingh links to the original source for the complete article.
Discussion (0)
Log in to join the discussion and vote.
Log in