Security Engineer Builds Go-Based Purple Team Scanner to Automate Recon and CVE Hunting
Mohamed Medjahdi, a Security Engineer and DevSecOps Specialist, has developed OmniScan, an offensive security tool written entirely in Go to address inefficiencies in Purple Team operations. The tool replaces fragile bash-based workflows by offering a DAG-driven pipeline orchestrator that lets users define multi-step attack chains in YAML, running independent steps concurrently via Go goroutines. OmniScan includes a headless Chrome-powered module called techFinder, which inspects live DOM structures and intercepts network requests to identify web technologies that standard fingerprinting methods often miss. It also ships with a built-in TLS-intercepting MITM proxy designed to automate privilege escalation and IDOR vulnerability testing across complex cloud environments. Medjahdi stated that the OmniScan repository is being prepared for open-source release on GitHub in the near future.
This is an AI-generated summary. ShortSingh links to the original source for the complete article.
Discussion (0)
Log in to join the discussion and vote.
Log in