pkg.soopen package index

brew / rang 10260

Installer terrapin-scanner avec Homebrew, Nix

Consultez les chemins d'installation, exécutables, métadonnées et notes de sécurité de terrapin-scanner pour les workflows d'agents IA.

installation

Commandes d'installation supplémentaires

macOS

Homebrewvérifié · 100%
brew install terrapin-scanner

local Homebrew formula metadata

Linux

Nixvérifié · 92%
nix profile install nixpkgs#terrapin-scanner

nixpkgs package indexes · pkgs/by-name/te/terrapin-scanner/package.nix · Source: api.github.com

aperçu

Résumé du paquet

Vulnerability scanner for the Terrapin attack

Commandes et alias

  • Terrapin-Scanner

historique

Historique du projet et usages

Terrapin Vulnerability Scanner is the companion command-line scanner for the Terrapin SSH prefix-truncation attack. The official attack site and repository describe it as a small Go console application that tests whether an SSH server or client offers vulnerable encryption modes and whether strict key exchange countermeasures are present.

Historique du projet

The scanner was published by the Ruhr University Bochum Network and Data Security group alongside the Terrapin research disclosure. Its narrow purpose is deliberate: it gathers SSH algorithm support in a single connection, avoids full authentication, and does not perform the attack.

Historique d'adoption

Adoption followed the disclosure pattern of a vulnerability-specific operations tool. The project provides release binaries for major desktop platforms, a container image, and Go installation instructions, making it easy for administrators and package maintainers to run quick checks during SSH patch rollouts.

Modes d'utilisation

The CLI is used either in connect mode against an SSH server or in listen mode for testing an SSH client. It can emit JSON, which makes it useful for scripted fleet checks and package-manager users who want a reproducible local scanner rather than a web-based test.

Pourquoi les passionnés de paquets s'y intéressent

For package nerds, terrapin-scanner is a compact example of a research artifact becoming a packaged remediation aid. Its Homebrew and Nix packaging matters less as a general-purpose utility and more as a convenient way to reproduce an official scanner during the short operational window after a protocol vulnerability disclosure.

Chronologie

  • 2024: Terrapin paper scheduled for Real World Crypto, Black Hat USA, and USENIX Security presentations.
  • 2024: Official scanner released with prebuilt binaries, Docker image, and Go install path.
  • 2024: v1.1.3 listed as latest GitHub release on January 18, 2024.

Related projects

  • The scanner is tied to the Terrapin attack research and to SSH implementations that adopted the strict key exchange countermeasure.

posture de sécurité

Niveau de risque : red

escape, surveillance, or offensive capability signal.

Classificateur de risque

risque red · confiance moyen · escape-surveillance-offensive

Pourquoi

  • escape, surveillance, or offensive capability signal

Signaux

  • text:vulnerability scanner

Comportement d'installation

  • Aucune métadonnée de bottle Homebrew n’a été enregistrée.

Revue recommandée

Avant une utilisation sans surveillance par un agent, vérifiez si l'outil lit des identifiants en clair, écrit un état distant, publie des artefacts ou lance des plugins.

exécutables

Exécutables installés

CommandeTypeExpositionNote
Terrapin-Scannerexécutableexécutable indexéDécouvert depuis l'index local des exécutables.

fraîcheur

Version et fraîcheur

Ces signaux séparent l'âge de génération de la page, l'activité du gestionnaire de paquets et la comparaison avec les versions amont. Un retard de version n'est signalé que lorsqu'une URL de preuve et des versions comparables sont présentes.

page générée2026-08-03
version du gestionnaire1.1.3
gestionnaire mis à jour2026-07-26
données localesinconnu
amontnon disponible
dernière version détectéenon détecté
  • OKAucun avertissement de fraîcheur n'a été généré.

métadonnées d'installation

Métadonnées du paquet

Clé du paquetbrew:terrapin-scanner
Version1.1.3
Gestionnaire de paquetsHomebrew
Page d'accueilhttps://terrapin-attack.com/
Dépôthttps://github.com/RUB-NDS/Terrapin-Scanner
Dernière mise à jour2026-07-26T00:50:37+02:00
Pulseupdated
Bouteillenon enregistré
Serviceaucun déclaré

correspondances dans les bases sources

Autres enregistrements de gestionnaires de paquets

Les correspondances proviennent d’index externes de gestionnaires de paquets et restent séparées des liens de paquets Automic Vault locaux.

Nix95%

terrapin-scanner

nix profile install nixpkgs#terrapin-scanner
  • normalized package name match
  • Correspondance par : Terrapin Scanner
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/te/terrapin-scanner/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1

piste source

Généré depuis les données du dépôt

Cette page est servie par av-web depuis l'artéfact SQLite privé des paquets généré par scripts/generate-pkg-sqlite.py.

Sources utilisées

  • Geiger risk classifier
  • cross-ecosystem install command graph
  • curated package history
  • external package-manager database matches
  • pkg.so package database
  • pkgdb category and tag curation