#1Tools for discovering open ports, services, and potential entry points on network devices.
Kitploit recommended

A repository of tools for pentesting of restricted and isolated environments.

Omnisci3nt is an open-source web reconnaissance and intelligence tool for extracting deep technical insights from domains, including subdomains, SSL…

Red team Arsenal - An intelligent scanner to detect security vulnerabilities in company's layer 7 assets.

Scan .onion hidden services with nmap using Tor, proxychains and dnsmasq in a minimal alpine Docker container.

Pentest/BugBounty progress control with scanning modules

Rock-On is a all in one Recon tool that will just get a single entry of the Domain name and do all of the work alone.

Fast service fingerprinting CLI for 170+ protocols (TCP/UDP/SCTP) - built by Praetorian

Dangerously fast DNS/network/port scanner

Automated web domain reconnaissance and security assessment tool integrating subdomain enumeration, port scanning, vulnerability scanning, and…

Open-source network forensics toolkit for packet analysis, port scanning, host discovery, and IP geolocation. Supports ARP, ICMP, TCP, UDP pings and…


A scripted pipeline of tools to streamline the bug bounty/penetration test reconnaissance phase, so you can focus on chomping bugs.

Asynchronous network reconnaissance engine for large-scale service discovery and fingerprinting. Identifies unsecured services (RTSP cameras, VNC,…

Fast Python-based subdomain enumeration tool combining passive OSINT and active brute-force scanning with DNS wildcard detection, port scanning, and…

A bash script for recon and DOS attacks

A tool to automate penetration tests

This repository contains a list of new remediation scripts.
