A black-box scanner sends its prayers into the dark.
Blackhole answers with pages, headers, flows, lies, half-truths, and—when needed—the unpleasant courtesy of ground truth.
Blackhole is a Python ASGI mock server for black-box scanner testing, education, and reproducible benchmarking. It serves vulnerable-looking behavior from replay profiles and explicit stateful mini-flows, while exposing a truth/scoring API to compare scanner findings against expected cases.
In other words: a scanner can hallucinate, overfit, panic, or boast. Blackhole keeps the receipts.
And every white hat should remember: all requests eventually fall into the black hole.
https://github.com/scadastrangelove/zhet-blackhole
https://github.com/scadastrangelove/zhet-blackhole