
APIHarvester
The one shot API attacker tool - finds the API url from the given root simulate the automated attacks

The one shot API attacker tool - finds the API url from the given root simulate the automated attacks

Curated collection of custom wordlists for fuzzing, DNS enumeration, parameter discovery, and default credentials, plus a Go generator for nuclei…

The Ultimate Information Gathering Toolkit

Deliberately vulnerable Docker lab with a routable DNS estate and machine-readable answer keys per target, scoring scanner precision, recall and…

The most exhaustive list of reliable DNS resolvers.

Take a list of domains and probe for working HTTP and HTTPS servers

A BASH Script to automate the installation of the most popular bug bounty tools

This tool uses a combination of dictionary-based wordlists (brute-force) and DNS resolution checks to verify the existence of subdomains.

Curated collection of Google dork queries for advanced search engine reconnaissance, uncovering exposed databases, configuration files, admin panels,…

Stuff that doesn't deserves its own repository.

Community curated list of search queries for various products across multiple search engines.

Go client to communicate with Chaos DB API.

Open-source security research tool for identifying origin IP exposure of websites protected by Cloudflare and similar reverse proxy services.

Domain name permutation engine for detecting homograph phishing attacks, typo squatting, and brand impersonation

Poor (rich?) man's bug bounty pipeline https://dubell.io

Curated framework of free OSINT tools and resources for gathering intelligence from public sources, organized by category with structured metadata…

🕵️♂️ Collect a dossier on a person by username from 6K websites

🔎 Find origin servers of websites behind CloudFlare by using Internet-wide scan data from Censys.