
GooFuzz
Bash-based fuzzing tool that leverages Google Dorking for stealthy enumeration of directories, files, subdomains, and parameters without direct…

Bash-based fuzzing tool that leverages Google Dorking for stealthy enumeration of directories, files, subdomains, and parameters without direct…


Automated Recon for Pentesting & Bug Bounty

Multiprocessing(Parallel)Subdomain Detect Script

Don't Just Search OSINT. Sweep It.

Now, the Host is Mine! - Super Fast Sub-domain Takeover Detection!

Useful for digital forensics investigations or initial black-box pentest footprinting.

fork of http://code.google.com/p/dnsmap/source/checkout

Bash-based DNS enumeration tool performing forward/reverse bruteforce, cache snooping, and zone transfer to extract DNS records and subdomains.

Passive subdomain discovery tool that aggregates results from multiple online sources via CLI, supporting stdin/stdout, JSONL output, and API key…

Hermes — an ephemeral, Docker-powered OSINT framework for testing, tinkering, and secure investigative automation.

A BASH Script to automate the installation of the most popular bug bounty tools

Modular subdomain enumeration suite with certificate transparency, DNS brute-force, and API-based discovery. Includes post-enumeration modules for…

Rust-based DNS enumeration and subdomain discovery tool for reconnaissance and penetration testing security assessments.

XRay is a tool for recon, mapping and OSINT gathering from public networks.

OWASP Domain Protect - prevent subdomain takeover