
maigret
🕵️♂️ Collect a dossier on a person by username from 3000+ sites

🕵️♂️ Collect a dossier on a person by username from 3000+ sites

Abusing Certificate Transparency logs for getting HTTPS websites subdomains.

E-mails, subdomains and names Harvester - OSINT

Incredibly fast crawler designed for OSINT.

Modular OSINT framework for gathering intelligence on domains, usernames, phone numbers, and emails using public sources, Google dorks, and…

A collection of custom security tools for quick needs.

An #OSINT Framework to perform various recon techniques on Companies, People, Phone Number, Bitcoin Addresses, etc., aggregate all the raw data, and…

DNS Enumeration Script

🔎 Find origin servers of websites behind CloudFlare by using Internet-wide scan data from Censys.

Generates permutations, alterations and mutations of subdomains and then resolves them

Open-source security research tool for identifying origin IP exposure of websites protected by Cloudflare and similar reverse proxy services.

A DNS reconnaissance tool for locating non-contiguous IP space.

Popular Pentesting scanner in Python3.6 for SQLi/XSS/LFI/RFI and other Vulns

Performs OSINT scan on email/domain/ip_address/organization using OSINT-SPY. It can be used by Data Miners, Infosec Researchers, Penetration Testers…

This Script will help you to gather information about your victim or friend.

A virtual host scanner that performs reverse lookups, can be used with pivot tools, detect catch-all scenarios, work around wildcards, aliases and…

Build interactive map of cameras from Shodan

Search Google/Bing/Ecosia/DuckDuckGo/Yandex/Yahoo for a search term (dork) with a default set of websites, bug bounty programs or custom collection.