NetRecon Scanner
Standalone security audit tool. ARP discovery, port scanning, device profiling, CVE intelligence, and WiFi heatmaps — no probe required.
From pocket-sized security audits to 24/7 network operations centers.
Standalone security audit tool. ARP discovery, port scanning, device profiling, CVE intelligence, and WiFi heatmaps — no probe required.
Probe controller with PCAP, IDS alerts, vulnerability scanning, honeypot monitoring, fleet management, and WireGuard VPN access.
Full-featured native application with offline mode, serial port support, and deep integration with probe infrastructure.
Scriptable command-line interface for automation, CI/CD pipelines, and headless operation. Supports scan, IPAM, and agent management.
Centralized operations dashboard with multi-tenant management, topology visualization, compliance reporting, and real-time alerting.
Hardened Ubuntu-based operating system for probe hardware. Setup wizard, automated updates, and support for ARM64 and x86_64.
Everything you need for enterprise network operations — in one platform.
Every layer of NetRecon is built with a security-first architecture.
All data at rest encrypted with authenticated encryption. Keys managed via Vault.
All probe-to-controller communication authenticated with mutual certificate verification.
No implicit trust. Every request authenticated and authorized at every layer.
Binary integrity verification, certificate pinning, and tamper response system.
Token-based authentication with TOTP multi-factor. Configurable session timeouts.
Granular role-based access control with custom permission sets per tenant.
Centralized secrets management with encrypted storage and audit logging.
Cryptographic verification of all binaries and updates before execution.
Full self-hosting option. No telemetry, no analytics, no data sharing. Complete data sovereignty.
Probes operate locally. All scan data, PCAP files, and reports stay on your infrastructure.
Obfuscation, integrity checks, and anti-tamper mechanisms protect the platform.
Extended detection and response across your entire network infrastructure.
Continuous network monitoring with Suricata IDS, anomaly detection, and rogue device identification.
Automatic MITRE ATT&CK technique mapping for every detected threat and alert.
Proactive threat hunting with PCAP forensics, baseline drift analysis, and local threat intelligence.
Automated ticketing, webhook alerts, DNS sinkhole blocking, and integration with your SIEM.
Deploy NetRecon on your own infrastructure. Your network, your data, your rules.
From one-person IT shops to global security operations centers.
Multi-site network management with centralized dashboard, RBAC, compliance reporting, and LDAP integration.
Multi-tenant architecture, fleet management, automated reporting, and white-label client portals.
Threat hunting, IDS/IPS, PCAP forensics, MITRE ATT&CK mapping, and vulnerability assessment.
Mobile-first scanning, device profiling, configuration backup, and SSH terminal in your pocket.
Self-hosted licenses. No per-device fees. No hidden costs.
Start securing your network infrastructure today.