#1Tools for collecting and analyzing publicly available information from online sources.
Kitploit recommended

Defensive analysis of CVE-2009-4496 in Boa 0.94.14rc21, including source-code review, patch analysis, severity assessment, and ethical scope.
Agentic pentest profile for Hermes: 31 playbooks for authorised recon, web/access-control attacks, safe exploit validation, and evidence-driven…

An easy-to-use client-side OSINT query builder for discovering exposed file managers across search engines.

Hunting for passwords with deep learning

Penetration Testing Reference Bank - OSCP / PTP & PTX Cheatsheet

Gets updates from various clearnet domains and ransomware threat actor domains

Current links from the OSINT Inception start-me project

Passive hostname, domain and IP lookup tool for non-robots

Repo for site with links to my projects

Curated Google Dork search patterns for web security and bug bounty reconnaissance, covering exposed files, admin panels, CMS instances, logs, and…


Golang search engine scraper intended for identification of published ClickOnce deployments

Automated ransomware and leak-site OSINT tracker scraping dark-web markets, monitoring victim posts, enriching actor/crypto data, and sending…

A Pythonic interface and command line tool for interacting with the InQuest Labs API.

This OSINT Notebook provides an overview of the tools, techniques, and resources that I use for a variety of situations when it comes to performing…

Actively hunt for attacker infrastructure by filtering Shodan results with URLScan data.

Files + Writeups for DownUnderCTF 2022 Challenges