Homebrew
AlternativeHomebrewbrew install masscan
Asynchronous Internet-scale port scanner
Community. Contributor-submitted. Not every claim has been re-checked. Cross-check against the upstream documentation before relying on a command.
Masscan is built for rate, not subtlety: it sends SYN probes from its own stack at tens of thousands of packets per second to find which addresses answer on a port.
It is the tool for scanning a range you are responsible for — an owned /16, a hosting subnet — to learn what is exposed. Because it does not complete handshakes by default, its results need confirmation with a connect scan before anything goes in a report.
Supported platforms
6
Documented install or usage guidance
Learning curve
advanced
Difficulty of becoming productive, not of the underlying theory
Tags
scanning, range, syn, rate
Dataset entry
masscan.ts
Reviewed 2026-01-06
Grouped by platform. Elevation requirements are marked per method.
brew install masscan
Needs elevated privileges (sudo / Administrator).
git clone https://github.com/robertdavidgraham/masscan
cd masscan && make -j$(nproc) && sudo make install
Needs elevated privileges (sudo / Administrator).
sudo apt install masscan
Package availability follows your distribution and enabled repositories. Entry revised 6 Jan 2026 — confirm the current release on the project's own download page.
Every command carries its purpose, an example where useful, and the limitations that change how you should read the output.
Probes one port across an address range with an explicit packet-per-second ceiling.
sudo masscan 192.0.2.0/24 -p80 --rate 500
Notes
Reads addresses to skip — printers, SCADA hosts, management interfaces.
sudo masscan 192.0.2.0/24 -p1-1024 --excludefile exclude.txt -oJ out.json
Notes
Completes just enough of a connection to record a service banner.
sudo masscan 192.0.2.10-192.0.2.40 -p22,80,443 --banners -oL banners.txt
On Windows, or when scanning off-subnet, Masscan needs to be told the gateway and its own address.
sudo masscan 203.0.113.0/24 -p443 --adapter-ip 198.51.100.7 --adapter-gateway 198.51.100.1 --router-ip 198.51.100.1
Symptoms you will actually hit, with the cause and the legitimate fix.
Possible causes
Usual fix
Install Npcap on Windows with raw-socket support, or list devices with `masscan --adapter` and pass `--adapter-name`.
Possible causes
Usual fix
Lower `--rate`, add `--wait 5`, and re-check a single host to separate scanner configuration from network reality.
Where to verify anything on this page. External links open in a new tab.
Nmap, RustScan cover adjacent parts of the same job.