Hexbuffer
Request Crafting & Testing

Network & Port Scanner

High-performance multi-threaded TCP port discovery, service banner grabbing, and network auditing.

Network & Port Scanner

Before auditing web applications, mapping out open network ports, accessible services, and exposed infrastructure is essential. Hexbuffer includes a fast, multi-threaded Port Scanner built directly into the desktop application.


Features & Capabilities

High-Performance Rust Core Engine

  • JoinSet Asynchronous Concurrency: Powered by Tokio's JoinSet architecture in Rust, allowing Hexbuffer to scan thousands of ports per second with minimal CPU and memory overhead.
  • Service Banner Grabbing: Toggle banner grabbing to identify running network daemons and services (e.g., HTTP/80, HTTPS/443, SSH/22, MySQL/3306, PostgreSQL/5432, Redis/6379, MongoDB/27017).
  • Live Progress & Cancellation: Per-result streaming with progress events and a stop button to cancel long-running scans.

Scan Profiles & Custom Ports Dialog

  • Quick Preset: Rapid audit of common application, database, and system services.
  • Web Preset: Targeted scan focusing on web proxy and HTTP/HTTPS alternative ports.
  • Top 100 & Full Range: Scan the top 100 ports or the complete 1-65535 range.
  • Custom Ports Dialog: Manage custom port lists and ranges (e.g., 21-25, 80, 443, 8000-8100, 65535) with a parsed count preview and validation.

Concurrency, Timeouts & Stealth Mode

  • Concurrency Control: Configure parallel worker tasks (default 100).
  • Socket Timeout: Set per-connection timeout thresholds (default 800ms).
  • Stealth Mode: Switch between high-performance scanning (fast, but may trigger SIEM/IDS alerts—Hexbuffer warns you before starting) and stealth mode, which adds inter-request delays, jitter, and port randomization to reduce detection.

How to Run a Port Scan

  1. Select Port Scanner from the left navigation menu.
  2. Enter the target hostname or IP address (e.g., 192.168.1.50 or staging.myapp.dev).
  3. Select your scan profile or open the Custom Ports Dialog to specify port lists.
  4. Set concurrency limits (parallel worker task count) and socket timeout thresholds, and toggle banner grabbing.
  5. Click Start Scan.
  6. Review open ports in the real-time results table, filter to open-only, sort by port number or service signature, and copy discovered services to your clipboard.

Best Practices

[!NOTE] Internal Network Hygiene: Regularly audit staging and local development networks to ensure sensitive internal services (such as unauthenticated Redis caches or debug endpoints) are not inadvertently bound to public IP interfaces!

On this page