
nmap
High-performance network discovery and security auditing tool with advanced port scanning, OS detection, service version detection, and scriptable…

High-performance network discovery and security auditing tool with advanced port scanning, OS detection, service version detection, and scriptable…

Open-source security research tool for identifying origin IP exposure of websites protected by Cloudflare and similar reverse proxy services.

An #OSINT Framework to perform various recon techniques on Companies, People, Phone Number, Bitcoin Addresses, etc., aggregate all the raw data, and…

Search for documents in a domain through Search Engines (Google, Bing and Baidu). The objective is to extract metadata

OSINT tool abusing SecurityTrails domain suggestion API to find potentially related domains by keyword and brute force.

Utilize misconfigured DNS and old database records to find hidden IP's behind the CloudFlare network

Performs OSINT scan on email/domain/ip_address/organization using OSINT-SPY. It can be used by Data Miners, Infosec Researchers, Penetration Testers…

Find domains and subdomains related to a given domain

Find subdomains with GPT, for free

BinGoo! A Linux bash based Bing and Google Dorking Tool

🔎 Find origin servers of websites behind CloudFlare by using Internet-wide scan data from Censys.

Search Google/Bing/Ecosia/DuckDuckGo/Yandex/Yahoo for a search term (dork) with a default set of websites, bug bounty programs or custom collection.

The fastest dork scanner written in Go.

⡷⠂𝚔𝚊𝚛𝚖𝚊 𝚟𝟸⠐⢾ is a Passive Open Source Intelligence (OSINT) Automated Reconnaissance (framework)

The hackers tool belt

Subdomains analysis and generation tool. Reveal the hidden!

Find Microsoft Exchange instance for a given domain and identify the exact version

Bash-based domain availability checker that scans WHOIS records across multiple TLDs to find unregistered domains for red teaming and phishing…