← Tool index

Attack Surface

Aquatone Revamped

A continuation of Aquatone that probes HTTP services, captures screenshots, and builds searchable offline reports.

What it does

Aquatone Revamped accepts URLs, hostnames, IP addresses, and Nmap or Masscan XML. It probes reachable services, captures screenshots, fingerprints technologies, and builds a searchable offline report for visual review.

Why it exists

Screenshots make unusual login pages, default installations, and unexpected services easier to spot in a large target list. This continuation updates the capture, concurrency, session storage, and reporting behind that review workflow.

Supported workflow

  1. Feed the tool target URLs, hosts, IPs, or supported scanner output.
  2. Probe and capture the reachable HTTP services.
  3. Open the local report and review the surface visually.
  4. Export or revisit interesting targets during the assessment.

Output and privacy

The report is self-contained and makes no runtime network requests. Sessions, screenshots, headers, and saved response bodies can still contain sensitive target data, so generated output should be handled as assessment evidence.

Limitations

  • Command-line compatibility may change before the first public v2 release.
  • Release archives will be added with the first public v2 release.
  • Browser capture behavior depends on the local runtime and reachable target surface.
  • The first managed-browser run downloads Chromium unless a system browser or explicit browser path is selected.