#1Subdomain discovery, DNS brute-force, certificate transparency, and asset enumeration tools.
Kitploit recommended

High-performance network discovery and security auditing tool with advanced port scanning, OS detection, service version detection, and scriptable…
Fast YAML-based vulnerability scanner with template-driven detection engine for automated security testing across web apps, APIs, networks, DNS, and…

🕵️♂️ Collect a dossier on a person by username from 3000+ sites

🕵️♂️ All-in-one OSINT tool for analysing any website

E-mails, subdomains and names Harvester - OSINT

Curated framework of free OSINT tools and resources for gathering intelligence from public sources, organized by category with structured metadata…

Fast passive subdomain enumeration tool.

Useful tool to track location or mobile number

Curated directory of bug bounty tools organized by category: reconnaissance, subdomain enumeration, port scanning, content discovery, exploitation,…

In-depth attack surface mapping and asset discovery

Automated penetration testing & attack surface management platform. Recon, scan, exploit, report — 600+ exploits, 90+ integrations, 10K+ detections.

Fast, multi-probe HTTP toolkit for reconnaissance and information gathering. Probes TLS, CSP, headers, tech stack, and CDN. Supports matchers,…

The recursive internet scanner for hackers. 🧡

reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out…

Our main goal is to share tips from some well-known bughunters. Using recon methodology, we are able to find subdomains, apis, and tokens that are…

A powerful open-source tool for managing networks and troubleshooting network problems!

Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management

Multi-source subdomain enumeration tool with 50+ collection modules, DNS brute-force, passive DNS analysis, certificate transparency, search engine…