
Sublist3r
Fast subdomains enumeration tool for penetration testers

Fast subdomains enumeration tool for penetration testers

reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines,…

Performs OSINT scan on email/domain/ip_address/organization using OSINT-SPY. It can be used by Data Miners, Infosec Researchers, Penetration Testers…

CHOMTE.SH is a powerful shell script designed to automate reconnaissance tasks during penetration testing. It utilizes various Go-based tools to…

Graphical DNS enumeration tool for Kali Linux that scans standard records (A, NS, SOA, MX) and visualizes results in mind maps for reconnaissance and…

Rust-based DNS enumeration and subdomain discovery tool for reconnaissance and penetration testing security assessments.

Vajra is a highly customizable target and scope based automated web hacking framework to automate boring recon tasks and same scans for multiple…

E-mails, subdomains and names Harvester - OSINT

Directory/File, DNS and VHost busting tool written in Go

A high-speed tool for passively gathering URLs, optimized for efficient and comprehensive web asset discovery without active scanning.

⡷⠂𝚔𝚊𝚛𝚖𝚊 𝚟𝟸⠐⢾ is a Passive Open Source Intelligence (OSINT) Automated Reconnaissance (framework)

Generates domain name permutations for subdomain enumeration and recon, supporting custom wordlists, cloud patterns, and fast mode for security…

A new generation of tool for discovering subdomains( ip , cdn and so on)

A modular recon tool for pentesting

Fast, multi-probe HTTP toolkit for reconnaissance and information gathering. Probes TLS, CSP, headers, tech stack, and CDN. Supports matchers,…

Go client to communicate with Chaos DB API.

API-first subdomain discovery service using Certificate Transparency logs for fast, passive enumeration of subdomains via a REST API with JSON or…