View Issue Details

IDProjectCategoryView StatusLast Update
0007448Kali LinuxNew Tool Requestspublic2026-09-02 22:10
Reportercoroner Assigned To 
PrioritynormalSeverityminorReproducibilityN/A
Status feedbackResolutionreopened 
Summary0007448: CryptoLyzer - Fast and flexible server cryptographic (TLS/SSL/SSH) settings analyzer library for Python with CLI
Description

[Name]
CryptoLyzer

[Version]
v0.7.2

[Homepage]
https://gitlab.com/coroner/cryptolyzer

[Download]
https://gitlab.com/coroner/cryptolyzer

[Author]
Szilárd Pfeiffer

[Licence]
Mozilla Public License Version 2.0 (MPL 2.0)

[Description]
Fast and flexible server cryptographic (TLS/SSL/SSH) settings analyzer library for Python with CLI

[Dependencies]
attrs>=19.1
certvalidator
cryptoparser>=0.7.1
enum34==1.1.6;python_version<"3.4"
py2-ipaddress;python_version<"3.4"
python-dateutil
requests
six
typing;python_version<"3.5"
urllib3

[Similar tools]
SSLyze, Testssl.sh

[Activity]

Project start: 2018
Actively maintained: yes

[How to install]
pip install cryptolyzer

[How to use]

cryptolyze tls ciphers www.example.com
cryptolyze ssh2 ciphers www.example.com
cryptolyze http headers www.example.com

[Packaged]
Yes
https://build.opensuse.org/package/show/home:pfeiffersz:cryptolyzer:0:7:2/cryptolyzer

Activities

g0tmi1k

g0tmi1k

2021-11-19 17:37

administrator   ~0015438

Hello, thank you for the suggestion. However I don't think this is going to be for kali at this stage

coroner

coroner

2021-11-19 22:35

reporter   ~0015439

Would you be so kind to give some details? Have you experienced any issues? Do you miss features?

g0tmi1k

g0tmi1k

2022-03-25 14:03

administrator   ~0015953

The stage, Kali is focusing on doing pentest engagement.
We see this more as a blue team or vulnerability assessment work.

coroner

coroner

2026-09-02 18:33

reporter   ~0021968

Last edited: 2026-09-02 22:10

Would you be so kind as to reconsider your decision? The current version (1.6.0) of CryptoLyzer covers the functionality of the following tools that are already in Kali Linux

  • SSLyze
  • testssl.sh
  • ssh-audit
  • ike-scan

However, there are differentiators

vs SSLyze and testssl.sh (TLS/SSL)

  • 400+ cipher suites, own protocol implementation, not OpenSSL-backed
    • GOST, ShangMi, post-quantum hybrid key exchange
  • Diffie-Hellman parameters
    • safe prime check
    • well-known and RFC 7919 group identification
    • ephemeral key reuse detection
  • Fingerprinting
    • JA3, JA4 generation, JA3 decoding
    • server mode capturing connecting clients
  • Opportunistic TLS, 13 protocols
    • FTP, IMAP, LDAP, LMTP, MySQL, NNTP, OpenVPN, POP3, PostgreSQL, RDP, Sieve, SMTP, XMPP
  • HTTP headers, 22 parsed to their components, not only detected
    • Content-Security-Policy, Content-Security-Policy-Report-Only, X-Content-Security-Policy
    • Strict-Transport-Security, Public-Key-Pinning, Expect-CT, Expect-Staple
    • X-Content-Type-Options, X-Frame-Options, X-XSS-Protection, Referrer-Policy
    • Set-Cookie, NEL, Server
    • Cache-Control, Pragma, Age, Date, Expires, Last-Modified, ETag, Content-Type

vs ssh-audit (SSH)

  • HASSH fingerprints, server and client side
  • Host keys
    • X.509 certificates and chains
    • OpenSSH certificates v00, v01
  • SSHFP records cross-verified against handshake host keys
  • Terrapin and Sweet32 as named results

vs ike-scan (IKE)

  • IKEv2, not only IKEv1
  • Enumeration, not one hand-written proposal set per run
    • every accepted transform combination
    • every accepted DH group and elliptic curve
  • Server public keys and X.509 chains
    • IKEv1 aggressive mode, IKEv2 EAP mode
  • Accepted certification authority hashes from Certificate Request payloads
  • Advertised extensions and vendor identifiers
  • Proposal simulation in strongSwan, Libreswan, Openswan, IANA spelling

DNS

  • Parsed to their components, not only detected
    • DNSSEC: DNSKEY, DS, RRSIG
    • Mail: DMARC, SPF, MTA-STS
    • SSHFP

Across all four

  • One command, one target syntax, one output format
  • JSON and Markdown output
  • Python API
  • Packaging
    • Debian
    • RPM
    • OBS repositories
  • Distributions
    • Debian
    • Arch User Repository
  • Generic vulnerability handling
    • every algorithm, key, DH parameter and curve carries its own vulnerability records
    • new algorithm or new attack means a database record, not a new check

Issue History

Date Modified Username Field Change
2021-11-17 22:03 coroner New Issue
2021-11-19 17:37 g0tmi1k Note Added: 0015438
2021-11-19 17:37 g0tmi1k Assigned To => g0tmi1k
2021-11-19 17:37 g0tmi1k Status new => closed
2021-11-19 17:37 g0tmi1k Resolution open => suspended
2021-11-19 22:35 coroner Status closed => feedback
2021-11-19 22:35 coroner Resolution suspended => reopened
2021-11-19 22:35 coroner Note Added: 0015439
2022-01-25 22:12 coroner Status feedback => assigned
2022-03-25 13:34 g0tmi1k Status assigned => new
2022-03-25 14:00 g0tmi1k Assigned To g0tmi1k =>
2022-03-25 14:03 g0tmi1k Note Added: 0015953
2022-04-13 18:38 Gamb1t Status new => closed
2026-09-02 18:33 coroner Status closed => feedback
2026-09-02 18:33 coroner Note Added: 0021968
2026-09-02 22:02 coroner Note Edited: 0021968
2026-09-02 22:09 coroner Note Edited: 0021968
2026-09-02 22:10 coroner Note Edited: 0021968