0799bfbae8
Sanitized version of red team infrastructure automation platform. Operational content (implant pipelines, lures, credential capture) replaced with documented stubs. Architecture and infrastructure automation code intact.
2.4 KiB
2.4 KiB
countries.yaml — Format Specification
Purpose
Defines which countries to scan and optional per-country exclusions. Used by all WEBRUNNER scan modes. The scanner resolves each country code to its CIDR ranges using RIR delegated stats files (ARIN, RIPE, APNIC, LACNIC, AFRINIC — cached 24h locally).
Scope options
- Targeted countries: list specific ISO codes in this file
- Single country: just one entry
- Global sweep: include every country you want — WEBRUNNER distributes CIDRs across nodes automatically regardless of count
Relationship to scan_vars.yaml
scan_profile.rate in this file sets the masscan default, but it is
overridden by masscan_rate in scan_vars.yaml or the interactive tuning
prompt. Prefer scan_vars.yaml for operator-level tuning.
Schema
scan_profile:
name: string # Label for this profile (used in logs/reports)
rate: integer # masscan packets/sec (default: 1000, max: 100000)
max_hosts_per_country: integer|null # Cap IPs per country. null = no limit
countries:
- code: string # ISO 3166-1 alpha-2 (e.g. US, VE, NL, GB, NG)
priority: high|medium|low # Scan order. high = first
exclude_cidrs: # Optional CIDR blocks to skip within this country
- "x.x.x.x/xx"
notes: string # Optional context (not used by scanner)
Rules
codemust be a valid ISO 3166-1 alpha-2 code- GB is the correct code for United Kingdom (not UK)
rateapplies globally to the masscan run, not per-countryexclude_cidrsentries must be valid CIDR notation- Countries are scanned in priority order: high → medium → low
- Within same priority, order in the list is preserved
Valid priority values
high | medium | low
Common country codes
| Country | Code |
|---|---|
| United States | US |
| United Kingdom | GB |
| Venezuela | VE |
| Netherlands | NL |
| Canada | CA |
| Nigeria | NG |
| Russia | RU |
| Germany | DE |
| China | CN |
| Brazil | BR |
| Iran | IR |
| India | IN |
| France | FR |
| Australia | AU |
Example
scan_profile:
name: "latam-europe-sweep"
rate: 2000
max_hosts_per_country: 100000
countries:
- code: VE
priority: high
exclude_cidrs: []
notes: "Primary target"
- code: US
priority: medium
exclude_cidrs:
- "10.0.0.0/8"
- "172.16.0.0/12"
- "192.168.0.0/16"
- code: NL
priority: low