Sirius: Open-Source Vulnerability Scanner with Real-time Monitoring
This repository profile is provided by osrepos.com, an open source repository discovery platform.

Summary
Sirius is an open-source, comprehensive vulnerability scanner that integrates community-driven security intelligence and automated penetration testing. Its latest v0.4.0 release introduces robust system monitoring and observability features, enhancing its capabilities. The platform offers a user-friendly interface and a quick Docker-based setup, making it accessible for security professionals.
Repository Information
Topics
Click on any tag to explore related repositories
Use at your own risk
OSRepos shares public repositories for knowledge and discovery only. Any installation, execution, configuration, or use of code from these repositories is the user's own responsibility. Always review the repository, source code, dependencies, licenses, and security implications before running or installing anything. OSRepos is not responsible for issues, damages, or losses resulting from third-party repositories.
Introduction
Sirius is an open-source, comprehensive vulnerability scanner designed to empower security professionals with advanced penetration testing capabilities. It leverages community-driven security intelligence to provide robust vulnerability detection and risk management. The latest v0.4.0 release significantly enhances its capabilities by introducing comprehensive system monitoring and observability features, alongside improved reliability and production-ready Docker configurations. Get started quickly with its straightforward Docker-based setup.
Installation
Getting Sirius up and running is designed to be simple and fast, primarily using Docker Compose.
Prerequisites
- Docker Engine: Version 20.10.0+ with Docker Compose V2.
- System Requirements: Minimum 4GB RAM, 10GB free disk space.
- Network Access: Internet connectivity for vulnerability database updates.
- Supported Platforms: Linux, macOS, Windows (with WSL2).
One-Command Setup
Clone the repository and start Sirius using Docker Compose. This uses prebuilt images for a quick deployment.
git clone https://github.com/SiriusScan/Sirius.git
cd Sirius
docker compose up -d
Once started, access the web interface by opening http://localhost:3000 in your browser. Default login credentials are admin / password, which should be changed immediately in production environments.
Examples
Sirius offers a wide array of features for comprehensive security assessments.
Core Capabilities
- Network Discovery: Automated host discovery and service enumeration.
- Vulnerability Assessment: CVE-based vulnerability detection with CVSS scoring.
- Risk Management: Comprehensive risk scoring and remediation guidance.
- Automated Scanning: Scheduled and continuous security assessments.
- Real-time Dashboards: Live scanning progress and vulnerability metrics.
Supported Scan Types
- Network Scanning (Nmap-based)
- Vulnerability Scanning (NSE script-based)
- SMB/Windows Assessment
- Custom Workflows
- Agent-based Scanning
API Integration Example
Sirius provides a robust REST API for integration into existing security workflows. Here's how to initiate a network scan via the API:
curl -X POST http://localhost:9001/api/scans \
-H "Authorization: Bearer $TOKEN" \
-H "Content-Type: application/json" \
-d '{"target": "192.168.1.0/24", "scan_type": "network"}'
Why Use Sirius
Sirius stands out as a powerful tool for several reasons:
- Comprehensive Security: Offers end-to-end vulnerability scanning, from network discovery to detailed risk assessment and remediation guidance.
- Real-time Insights: Provides live dashboards, system monitoring, and centralized logging for immediate visibility into security posture and system health.
- Ease of Deployment: With its Docker-based setup, you can get a full scanning environment running in minutes.
- Scalable Architecture: Built on a microservices architecture (Go, Next.js, PostgreSQL), it's designed for performance and scalability across various environments.
- Extensible and Integrable: Features a comprehensive REST and WebSocket API, allowing seamless integration with other security tools and custom workflows.
- Community-Driven: Benefits from community intelligence, ensuring up-to-date vulnerability databases and evolving capabilities.
Links
- Official GitHub Repository: SiriusScan/Sirius
- Quick Start Guide: Get started in 5 minutes
- Detailed Installation Guide: Comprehensive setup instructions
- Join the Community: Discord Community
- Report Issues: GitHub Issues
Related repositories
Similar repositories that may be relevant next.

lat.md: A Knowledge Graph for Your Codebase, Written in Markdown
September 26, 2026
lat.md is an innovative tool that transforms your codebase knowledge into an interconnected graph of markdown files. It helps both AI agents and human developers quickly understand project architecture, business logic, and design decisions. By integrating directly into your project, lat.md ensures documentation remains consistent and up-to-date.

TeamAI-CLI: Empowering Teams to Become AI Native with a Git-Based Foundation
September 24, 2026
TeamAI-CLI, developed by Tencent, is a powerful command-line interface aimed at making every team AI native. It offers a unified, Git-based platform for teams to collaborate, learn, and continuously improve with AI. This tool transforms individual AI capabilities into shared team assets, integrating AI agents, machines, and team members for enhanced efficiency.

LLM Wiki: Build a Self-Maintaining, Interlinked Knowledge Base with AI
September 23, 2026
LLM Wiki is a powerful cross-platform desktop application designed to transform your documents into an organized, interlinked knowledge base automatically. Unlike traditional RAG systems, it incrementally builds and maintains a persistent wiki from your sources, ensuring knowledge is compiled once and kept current. This innovative approach offers a dynamic and evolving personal knowledge management solution.

Maka: A High-Performance Agent Workspace for AI Tasks
September 21, 2026
Apache Maka (Incubating) is a high-performance agent workspace designed to maintain a complete, append-only record of all agent actions. It focuses on measurable performance, local-first operation, and robust recovery mechanisms. This project provides a unified execution authority for desktop, TUI, and CLI clients, ensuring consistent agent behavior across platforms.
Source repository
Open the original repository on GitHub.
16 counted GitHub visits