#1Tools for collecting and analyzing publicly available information from online sources.
Kitploit recommended

A personal RAG system for offensive security knowledge

A tool to find subdomains and interesting things hidden inside, external Javascript files of page, folder, and Github.

A modern platform for visual, flexible, and extensible graph-based investigations. For cybersecurity analysts and investigators.

🕵️♂️ All-in-one OSINT tool for analysing any website

The FOFA Library collects usage tips, common scenarios, F&Q, and more for FOFA.

A simple application that extracts your IoCs from garbage input and checks their reputation using multiple CTI services.

Fast passive subdomain enumeration tool.

AI-powered bug bounty hunting from your terminal - recon, 20 vuln classes, autonomous hunting, and report generation. All inside Claude Code.

A curated list of awesome search engines useful during Penetration testing, Vulnerability assessments, Red/Blue Team operations, Bug Bounty and more


Browser forensics tool for Google Chrome, other Chromium-based browsers, and Mozilla Firefox

Aggregates CVE details, exploit databases, and EPSS scores with AI risk assessment and vulnerability scanner import for prioritized patching.

Repositório criado com intuito de reunir informações, fontes(websites/portais) e tricks de OSINT dentro do contexto Brasil.

OSINT reconnaissance tool for network discovery, subdomain enumeration, IP enrichment, and secret detection via certificate logs, Shodan, and GitHub…

HiddenSteps — a local-first personal workflow intelligence platform

OSINT Tools for the Dark Web

Malwoverview is a first response tool for threat hunting across VirusTotal, Hybrid Analysis, URLHaus, Polyswarm, Malshare, Alien Vault, Malpedia,…

Incredibly fast crawler designed for OSINT.