Vulnerability Ingestion & Import

From Scanner Output to
Client-Ready Report in Minutes

Import vulnerabilities from Nessus, Burp Suite, NMAP, and common security tools, or any custom format. AttackForge's intelligent parsing engine normalizes and maps findings to your curated writeup library automatically.

NATIVE INTEGRATIONS

Native Imports for the Tools You Already Use

Seamless integration with industry-standard vulnerability scanners and security tools

Nessus
.nessus XML
Burp Suite
.xml
Qualys
XML/CSV
Checkmarx
JSON/XML
Acunetix
XML
Rapid7 InsightVM
XML
OpenVAS
XML
Nikto
CSV/XML
OWASP ZAP
XML
Nuclei
JSON
ZAP
XML
...and more via API
Custom

One-click file upload

No scripting or CLI required

Drag-and-drop interface parses files client-side; data never leaves your browser

Individual vs Grouped import

Choose granularity to match reporting style

Individual = 1 vuln per asset; Grouped = 1 unique vuln with all affected assets included

Severity filtering at import

Ignore noise before it enters your project

Pre-filter by Critical/High/Medium/Low/Info before committing

Automatic writeup creation

Never start from a blank page

If writeup doesn't exist in library, AttackForge creates it from scanner data

CVSS score inheritance

Consistent scoring without manual entry

CVSS vector strings imported; linked to Likelihood of Exploitation

94% reduction in vulnerabilities to review

Teams using Grouped import option report a 94% reduction in vulnerabilities to review without losing a single affected host. All asset data is preserved and attached to the consolidated finding.

HOST DISCOVERY

Turn Reconnaissance into Ready-to-Test Scope

Import NMAP, Masscan, and custom scan results directly into your project scope

Direct-to-project import

Scope population in seconds

Upload scan file → select hosts → assets appear in project instantly

Hostname & port preservation

Full context for every target

Imported assets retain hostnames, open ports, services

Asset Module linkage

Single source of truth

Assets sync to centralised Asset Module for cross-project visibility

Pre-import editing

Fix errors before they propagate

Review and modify parsed data before committing to project

Use Case: Network Pentest Kickoff

Running a network pentest? Upload your NMAP XML at kickoff. In under 60 seconds, your project scope is populated with 500+ hosts, complete with ports and services, ready for testing. No manual data entry, no copy-paste errors, no spreadsheet juggling.

UNIVERSAL FORMAT SUPPORT

Your Data, Your Format: No Reformatting Required

Import from spreadsheets, legacy tools, or custom security solutions using generic CSV and JSON parsers

Generic CSV parser

Import from spreadsheets, legacy tools, or manual inventories

Generic JSON parser

Import from JSON or other AttackForge projects

Downloadable templates

Know exactly what fields AttackForge expects; no guesswork

Bulk writeup import - CSV or JSON

Migrate entire vulnerability libraries from other platforms

Bulk test case import - CSV or JSON

Bring your custom methodologies in one upload

Bulk asset import - CSV or JSON

Ingest assets from your CMDB, spreadsheets or oahter asset sources

Who This Is For

Organizations consolidating security platforms
Transitioning from spreadsheets, legacy tools, or manual workflows
Custom tool users
Proprietary internal tools or custom fuzzers
Specialized audits
Config reviews, firewall audits, compliance assessments
DIFFERENTIATOR: INTELLIGENT NORMALISATION

Stop Reviewing the Same Finding
50 Times

Other platforms import your data. AttackForge understands it.

Step 1

Upload Scanner File

Drag & drop .nessus, .xml, or any supported format

Step 2

Client-Side Parse

Extract findings locally in your browser

Step 3

Map to Writeups

Match findings to your curated vulnerability library

Step 4

Enrich

Inherit report-ready findings from your library

Step 5

Report Ready

Client-ready findings with full context

Data Transformation: Before & After

Watch how raw scanner output becomes actionable intelligence

Input: Raw Scanner Output

247 individual findings
Inconsistent severity ratings
Missing remediation guidance
No CVE linkage or references
⚠️ Requires hours of manual triage

Output: AttackForge Intelligence

14 consolidated vulnerabilities
Normalized severity + CVSS scores
Professional remediation steps
Full CVE/CWE/OWASP references
✓ Ready for client delivery in minutes

Custom Import Mapping Expressions

Auto-match scanner findings to custom curated writeups using powerful expression syntax

Dynamic Parser Actions

Transform data during import: add/remove tags, modify titles, enrich fields

Predefined Rules Library

Admins create rules once; testers select and extend at import for consistency

Client-Side Privacy

All parsing happens in your browser—scanner data never leaves your machine

Flexible Configuration

Parse and normalize even the most complex scanner output formats

Instant Results

See normalized findings in real-time as you import and configure

WHY ATTACKFORGE

Manual Approaches vs. AttackForge

Manual Pain Points
Copy-paste from scanner exports into Word
Inconsistent vuln descriptions across testers
Hours spent deduplicating findings
No traceability to test methodology
Version control nightmares with spreadsheets
AttackForge Solutions
One-click import with auto-formatted writeups
Centralised writeup libraries enforce consistency
Grouped import + mapping expressions eliminate duplicates at source
Link vulnerabilities to test cases for audit-ready evidence
Single source of truth with full audit trail

Engineered by security professionals for penetration testing workflows
Purpose-built, not repurposed from vulnerability scanning tools.

Frequently Asked Questions

Ready to Transform Your Workflow?

Join 500+ pentest teams who've eliminated manual data wrangling and
accelerated their time-to-report

SOC 2 Type II CertifiedInstant DeploymentNo credit card required