# wgpsec/fofa_viewer

A simple FOFA client written in JavaFX.  Made by WgpSec, Maintained by f1ashine.

Repository: https://github.com/wgpsec/fofa_viewer
Canonical: https://ross.abutalabs.com/products/fofa_viewer
Homepage: https://opensource.wgpsec.org
Language: Java
License: MIT
License Family: permissive
Topics: redteam, security-tools, fofa, fofa-api, fofa-search, cybersecurity
Last push: 2025-12-26T12:19:11+00:00

## Health v2 (maintenance only)
Score: 57/100 (v2, computed 2026-09-02T17:46:02.011165+00:00)
- activity 59, release rhythm 31, longevity 100
- inputs: {"age_days": 1967, "days_push": 250, "days_rel": 250, "gap_med": null, "n_releases_24m": 1}
- flags: none
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 1800, forks 164 (observed 2026-08-28T04:05:37.975157+00:00)

## What it is
Fofa Viewer is a JavaFX desktop client for the FOFA internet asset search engine, wrapping its API in a tabbed GUI. It helps security professionals query, browse, deduplicate, and export FOFA search results for reconnaissance and vulnerability hunting.

## Use cases
- search FOFA for exposed assets and services
- export FOFA query results to Excel
- find vulnerabilities on target websites during pentests
- convert certificate serials for cert-based FOFA queries
- exclude honeypot results from FOFA searches
- query assets by Fid or full dataset with a FOFA membership

## When to choose
- you use FOFA regularly and want a GUI instead of raw API calls
- you need tabbed browsing, deduplication, and Excel export of FOFA results
- you are a red teamer or pentester doing asset discovery

## When to avoid
- you don't have a FOFA membership API key
- you need a CLI or automated/scripted FOFA integration
- you use a different asset search engine like Shodan or ZoomEye

## Facets
- artifact type: application
- maturity: active
- function: search-engine, gui, developer-tools, http-client
- domain: security, osint, penetration-testing
- platform: cross-platform, jvm
- tags: fofa, javafx, redteam, recon, attack-surface, cybersecurity, osint-tool, desktop

## Member repositories
- wgpsec/fofa_viewer (main) score 57

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:05:37.975157+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-30T03:22:15.622673+00:00, confidence not recorded.
  - readme: https://github.com/wgpsec/fofa_viewer (fetched 2026-08-28T04:05:37.975157+00:00, sha e871e7be9448)
- Data as of 2026-08-30T08:39:29.467469+00:00.
