sslscan
« Back to VersTracker
Description:
Test SSL/TLS enabled services to discover supported cipher suites
Type: Formula  |  Tracked Since: Dec 28, 2025
Links: Homepage  |  formulae.brew.sh
Category: Security
Tags: ssl tls security auditing networking
Install: brew install sslscan
About:
Sslscan is a command-line tool designed to enumerate the cipher suites supported by SSL/TLS services. It connects to a target server and queries for supported ciphers, highlighting weak ciphers and vulnerabilities. This allows administrators to audit their server's security configuration and ensure compliance with best practices.
Key Features:
  • Enumerates supported SSL/TLS cipher suites
  • Highlights weak ciphers and potential vulnerabilities
  • Supports SSLv2, SSLv3, TLSv1.0, TLSv1.1, TLSv1.2, and TLSv1.3
  • Outputs results in human-readable, XML, or JSON formats
Use Cases:
  • Auditing web servers to ensure strong cipher suite configuration
  • Verifying compliance with PCI DSS or other security standards
  • Identifying servers vulnerable to attacks like BEAST or POODLE
Alternatives:
  • testssl.sh – A bash script offering more comprehensive testing for various vulnerabilities beyond just cipher suites.
  • nmap – A general network scanner with an ssl-enum-ciphers script, suitable for broader network reconnaissance.
Version History
Detected Version Rev Change Commit
Sep 15, 2025 11:54am 0 VERSION_BUMP 152d9127
Sep 22, 2024 2:13pm 0 VERSION_BUMP a6456395