
dnsrecon
DNS Enumeration Script

DNS Enumeration Script

Fast passive subdomain enumeration tool.

Locally-hosted, air-gapped VAPT platform that runs 8 parallel scanning modules, deterministically scores findings with CVSS v3.1, and generates PDF…

Extract subdomains from SSL certificates in HTTPS sites.

Just a silly recon tool that uses data from SSL Certificates to find potential host names

Passive wireless OSINT platform that detects and maps Wi-Fi, Bluetooth, CCTV, IoT devices, and cell towers using radio signal intelligence for…

High-speed DNS resolver and subdomain bruteforcer with accurate wildcard filtering and DNS poisoning validation for precise reconnaissance.

Hermes — an ephemeral, Docker-powered OSINT framework for testing, tinkering, and secure investigative automation.

Bash-based fuzzing tool that leverages Google Dorking for stealthy enumeration of directories, files, subdomains, and parameters without direct…

Passive subdomain discovery tool that aggregates results from multiple online sources via CLI, supporting stdin/stdout, JSONL output, and API key…

A virtual host scanner that performs reverse lookups, can be used with pivot tools, detect catch-all scenarios, work around wildcards, aliases and…

Stuff that doesn't deserves its own repository.

Bash-based domain availability checker that scans WHOIS records across multiple TLDs to find unregistered domains for red teaming and phishing…


Generates permutations, alterations and mutations of subdomains and then resolves them

🦚 A web-app pentesting suite written in rust .

Uses ChatGPT API, Bard API, and Llama2, Python-Nmap, DNS Recon, PCAP and JWT recon modules and uses the GPT3 model to create vulnerability reports…

OSINT tool that finds domains, subdomains, directories, endpoints and files for a given seed URL.