SecPoint® Penetrator™ Vulnerability Scanner

Attackers only need one forgotten vulnerability, one exposed service or one leaked credential to break in. SecPoint® Penetrator™ helps you find the weak points first with scheduled vulnerability scanning, Dark Web Search, authenticated scanning, on premises deployment, local data control and technical scan profiles for NIS2, CRA, DORA, CMMC, OWASP and more. It helps support compliance work with technical checks and reports, but it does not replace legal, organizational or consultant-led compliance work.

What is exposed?

Unknown vulnerabilities, open services and weak configurations can give attackers the first foothold.

Can you document security checks?

NIS2, CRA, DORA, CMMC, OWASP and other technical scan profiles help turn vulnerability checks into clear evidence and reports.

Is your data already leaked?

Dark Web Search helps reveal exposed domains, credentials and leaked data before they become an incident.

SecPoint Penetrator Vulnerability Scanner
Icon Multi Core

146,000+ Vulnerability Signatures

Icon MFA

User-Based MFA with QR Code Setup

Icon MSP

MSP Functionality with Multi-User Support

Icon Privacy

Local Data Control and Transparent Privacy Menu

Icon Firewall

SecPoint® RBL and Toxic IP Blocking

White-label reports for customers, consultants and management

SecPoint® Penetrator™ can generate professional reports with your logo, company name, watermark and language selection. This helps MSPs, resellers, consultants and internal security teams deliver clear vulnerability findings under their own brand.

Brand the report

Add logo, company name and watermark to make reports look professional and customer-ready.

Choose language and format

Create reports in multiple languages and export results as PDF, HTML, XLS or XML.

Support compliance work

Use scan profiles to document technical findings for security and compliance projects without claiming to replace full legal or consultant-led compliance work.

SecPoint Penetrator white-label vulnerability scan report with logo, watermark, company name and language support

Vulnerability Scanning and Management:
Virtual Software Appliance, 1U Hardware, SFF Appliance and Cloud

Best Vulnerability Scanner +
  • Low Entry Cost: Starting at $219
  • Web Application and Network Scanning
  • Powered by 146,000+ Vulnerability Signatures
  • 1,400 Web Shell Detections
  • Dark Web Search
  • Authenticated Cisco, Linux and BSD Scanning
  • Transparent Data Privacy Menu
  • On-Premises Deployment and Local Data Control
  • Advanced AI and Machine Learning Accuracy
  • Cross-Site Scripting and Reflected XSS Detection
  • SQL Injection and Blind SQL Injection Detection
  • Report White-Labeling, Watermark, Logo and Company Name
  • Managed Service Provider Functionality
  • Terminal Console with 25 Control Options
  • 34 Vulnerability Scan Profiles
  • Multiple Report Formats: PDF, HTML, XLS and XML
  • CVSS v3 Support
  • Syslog Support for Scan Report Data and Login Events
  • Concurrent IP Scan Licensing
  • Faster Full-Port TCP Scanning
  • Multilingual Reports in 28 Languages
  • Autonomous Sonar Robot
  • WiFi Penetration Testing with Reporting
  • Let’s Encrypt Web Interface Certificate Support
  • Last 20 Scanned Locations Displayed on World Map
  • VMware ESXi, Hyper-V, Azure and Linux G4L Support
  • SecPoint® RBL List
  • Blocks Millions of Toxic IPs
  • Data Leak Detection
  • Firewall Module Blocks Countries and Attacks
  • Information Disclosure Detection
  • Missing Security Header Detection
  • CMS Vulnerability Detection
  • SCADA, ICS, PLC and IoT Vulnerability Scanning
Premier Vulnerability Scanning Solution +
  • Distributed Scanning Capability with Node Scanning Mode
  • Deploy as 1U Appliance, SFF Appliance, Cloud or Virtual Appliance
  • Platform Support: VMware ESXi, Microsoft Hyper-V, Microsoft Azure and Linux G4L
  • Built-in Ticket System for Vulnerability Management
  • Multiple Reporting: Consultant, Technical and Executive
  • Multiple Report Formats: PDF, HTML, XLS and XML
  • Scan Profile Description Page in Reports
  • Let’s Encrypt Web Interface Certificate Support with Automatic Renewal
  • Syslog Support for Scan Report Data and Login Events
Features List +
  • Choose from 34 technical scan profiles including NIS2, DORA, CMMC Level 1, CRA, CWE, OWASP and more
  • Easily Schedule Vulnerability Scans
  • Ticket system to manage found vulnerabilities with multi-user support
  • Support for aggressive scans to launch authorized exploits and Denial of Service tests
  • Complete capabilities for WiFi penetration testing including WEP, WPA, WPA2, WPS and DoS testing
  • White-label reports featuring your company name, watermark and logos
  • MSP support with a multi-user interface and user-specific access policies
  • Support for Node Distributed Scanning with centralized control
  • Dark Web Search for exposed credentials, domains and leaked data
  • Expert cyber security support from real humans, not AI chatbots
Information and Facts +
  • No experience required for basic operation. The interface is designed for fast setup and daily use
  • Conducts vulnerability scans of public-facing websites, public IP addresses and internal local IPs
  • No backdoors. Customer data remains under customer control
  • Reports support branding, logo, watermark and company name integration
  • Proactively identify and remediate network vulnerabilities before attackers exploit them
  • Choose from 34 scan profiles for technical security checks, including NIS2, DORA, CMMC Level 1, CRA, CWE, OWASP, ISO 27001, NIST, PCI-DSS, HIPAA, SCADA and more
  • Last 20 Scanned Locations Displayed on World Map for better scan visibility
Technical Information +
  • Powerful 64-bit Virtual and Hardware Appliance Options
  • 64-bit Virtual Platforms: VMware ESXi, Microsoft Hyper-V, Microsoft Azure and Linux G4L
  • High-performance 64-bit support for multi-core CPUs
  • 1 Gbps and 2.5 Gbps network ports supported depending on appliance model
  • Utilize up to 6 network interfaces
  • Not restricted to ASIC architecture. It is a genuine Linux server system designed for upgradeability
  • Terminal Console with 25 Control Options
  • Supports firmware updates, database updates and manual update uploads

Detailed Features

Icon Scanning

Scanning Features

Scan local and public IPs, web applications, servers and network devices using 146,000+ vulnerability signatures, 34 scan profiles and advanced AI-assisted accuracy.

Icon Reports

Clear Reports

Reports are available in PDF, HTML, XLS and XML, with CVSS v3 support, scan profile descriptions, white-label branding, language selection and clear remediation guidance.

Icon Deployment

Deployment

Deploy as a virtual appliance, 1U appliance, SFF appliance or cloud model, with support for VMware ESXi, Microsoft Hyper-V, Microsoft Azure and Linux G4L.

Icon Languages

Languages

The reporting engine supports 28 languages, including English, Danish, Swedish, German, French, Spanish, Ukrainian, Indonesian, Macedonian, Serbian, Slovak and many more.

Icon Management

Vulnerability Management

Manage vulnerabilities with scheduled scans, ticketing, comparison with previous results, scan notifications, syslog export, and detailed reports for both technical teams and management.

Icon Dark Web

Dark Web Search

Identify exposed domains, credentials and leaked customer data, and combine dark web exposure checks with vulnerability scanning and data leak detection.

Icon SSL

SSL and TLS Vulnerability Detection

Scan websites and services for SSL and TLS weaknesses, including Heartbleed, POODLE SSL and other known weaknesses.

effect

Fully Featured Vulnerability Management

Vulnerability Management +

In-depth Vulnerability Management

The SecPoint® Penetrator™ helps organizations identify and manage vulnerabilities across local networks, public IPs, web applications, servers and network devices.

It combines scheduled scanning, 34 scan profiles, AI-assisted accuracy, CVSS v3 support, ticketing, reporting and dark web exposure checks.

Scan any Device +

Scan Any Device

The Penetrator can scan servers, websites, firewalls, routers, VPN devices, VoIP systems, IoT devices, databases and other reachable systems with an IP address.

It reports vulnerabilities in PDF, HTML, XLS and XML formats, helping both technical staff and management understand risk and remediation priorities.

Scan Local and Public IPs +

Scan Local and Public IPs

The Penetrator scans both public-facing infrastructure and internal local IPs.

Scan target locations can be shown with integrated geo mapping, including a world map view for the last 20 scanned locations.

CVE and CVSS v3 +

CVE and CVSS v3 Support

The Penetrator supports vulnerability identifiers such as CVE, NIST/NVD, Microsoft, Ubuntu and other references.

CVSS v3 support helps provide modern severity scoring and clearer prioritization in vulnerability reports.

Updated Databases +

Updated Vulnerability Databases

SecPoint® maintains regular database and firmware updates to keep the Penetrator aligned with new vulnerabilities and improved checks.

With 146,000+ vulnerability signatures and 1,400 web shell detections, the Penetrator is designed for continuous security assessment.

Concurrent IP Scans +

Concurrent IP Scans

The Penetrator uses concurrent IP scan licensing, making it flexible for organizations that need to scan changing IP ranges and different environments.

Full-port TCP scanning has been improved for faster audits across all 65,535 ports.

Dark Web Search +

Dark Web Search

Dark Web Search helps identify exposed credentials, leaked domains and other data that may already be circulating outside the organization.

When combined with vulnerability scanning and data leak detection, it gives a stronger view of both technical weaknesses and real-world exposure.

Frequently Asked Questions

line background

Choose the SecPoint® Penetrator™ for Advanced Vulnerability Scanning

Stay ahead with scheduled vulnerability scanning, authenticated assessments, Dark Web Search, 34 technical scan profiles, AI-assisted accuracy and detailed reports for technical teams and management.