Skip to content

What is VirtuProbe?

VirtuProbe Studio is a multi-protocol integration testing and security assessment tool. It lets you chain interactions across protocol boundaries in a single automated workflow — send an HTTP request, catch the confirmation email over IMAP, extract a token, and use it in an LDAP bind, all in sequence.

Validate that systems communicate correctly end-to-end. A typical workflow spans multiple services and protocols — an API call that triggers an email, a token extraction, a directory lookup. VirtuProbe handles the entire chain in one place.

VirtuProbe implements all protocols from scratch against the RFC specifications — deliberately bypassing standard library constraints. This means you can send malformed packets, craft edge-case inputs, and test boundary conditions that well-behaved clients would never produce. The built-in MITM proxy gives you full visibility and control over raw traffic at the transport layer.

Test the full email pipeline end-to-end: SMTP delivery, spam score evaluation via SpamAssassin, and IMAP retrieval in a single chain.

ProtocolUse case
HTTPREST APIs, webhooks, web services
SMTPMail delivery, command sequence testing
IMAPMailbox interaction, message retrieval
LDAPDirectory lookups, bind auth, entry manipulation
DNSName resolution, record queries, RCODE assertions
SpamAssassinSpam score evaluation
SMBShare enumeration, file operations, NTLM auth, pass-the-hash
KerberosAS-REQ credential validation, AS-REP Roasting, Kerberoasting
MySQLRun SQL against MySQL / MariaDB, extract values, assert on results
MongoDBFind/insert/update/delete/aggregate/count/run-command, extract a field, assert
PostgreSQLRun SQL against PostgreSQL, extract values, assert on results

Six pieces, and the relationships between them matter more than any one of them. A probe is one protocol interaction. Bundles hold everything you author and carry its scope. Projects supply the values a run is aimed at. Chains put probes in order and pass results between them.

How VirtuProbe's pieces fit together A project holds environments and credentials, and is linked to one or more bundles. A bundle is a tree that contains probes, chains, scripts, suites and skills, and each of those takes its scope from the bundle it lives in. A chain runs probes in order and passes extracted values forward. Project the scope you work in Environments Credentials Bundle a tree, and the container everything you author lives in Probes Chains Scripts Suites linked scope is inherited Chain probes in order, results passed forward HTTP probe login SMTP probe notify IMAP probe assert {{token}} {{msgId}}

A probe is a single protocol interaction. You configure the target host, the commands or request to send, and optional assertions. Probes can be sent standalone or used as steps inside a chain.

A bundle is the container everything you author lives in: probes, chains, scripts, suites and skills. Every artifact belongs to exactly one bundle and takes its project scope from it. Bundles nest into a tree and can be linked to one or more projects. See Bundles.

A project is a named scope: its environments, its credentials, and the bundles that belong to it. Set an active project to narrow the workspace to that work; the active project’s environment drives variable substitution in probes, chains and scripts.

A chain is an ordered sequence of probe steps. The output of one step can be extracted into a variable and injected into subsequent steps via {{variable}} placeholders. Like every artifact, a chain lives in a bundle and takes its scope from it.

Environments are named sets of key-value variables scoped to a project. Switching the active environment changes the values injected into probes and chains without modifying their configuration.

The built-in MITM proxy sits between your client and the target server, capturing raw traffic. A DevTools-style UI lets you inspect request/response pairs with body decompression (gzip, deflate, Brotli).

VirtuProbe runs as two servers:

  • UI server — serves the web frontend
  • API server — executes probes and manages data

In the desktop app (Electron), both servers start automatically. In a corporate or red-team deployment, the API server can run inside the target network with only a single port exposed to the UI server — the browser never communicates directly with tested systems.