
Awesome-OSINT-List
📡 Comprehensive collection of OSINT tools for cybersecurity professionals, researchers, and bug bounty hunters. Topics: information gathering,…

📡 Comprehensive collection of OSINT tools for cybersecurity professionals, researchers, and bug bounty hunters. Topics: information gathering,…

A collection of fascinating and bizarre Censys Search Queries

📕NVD Database

Curated repository of CVE records with CVSS scoring, providing a structured reference for vulnerability analysis, exploitation research, and security…

A list of Google Dorks for Bug Bounty, Web Application Security, and Pentesting

Curated collection of tools, bookmarks, and guides for open-source intelligence (OSINT) gathering, reconnaissance, and information gathering.

Curated dataset of IPs, ASNs, and SMTP banners for Exim CVE-2019-10149, with linked advisories and threat actor intelligence for vulnerability…

List of API's for gathering information about phone numbers, addresses, domains etc

Curated, categorized wordlist generator for web fuzzing, directory enumeration, and subdomain discovery. Automatically syncs 36+ sources, classifies…

Curated framework of free OSINT tools and resources for gathering intelligence from public sources, organized by category with structured metadata…

Shodan Dorks

Domains belonging to the most reputed public bug bounty programs. [NOT FOR NON-MONETARY OR PRIVATE PROGRAMS]

Collection of Cyber Threat Intelligence sources from the deep and dark web

Extracting OSINT Insights from 15TB of GitHub Event Logs

This Repositories contains list of One Liners with Descriptions and Installation requirements

Tracked impact of MOVEit CVE-2023-34362 with affected organizations, domain discovery via SFTP headers and cookies, and a real-time news ticker.

This repo contains hourly-updated data dumps of bug bounty platform scopes (like Hackerone/Bugcrowd/Intigriti/etc) that are eligible for reports

Curated collection of wordlists for bug bounty hunting, covering directories, subdomains, parameters, usernames, passwords, and web fuzzing payloads.