
metabigor
OSINT reconnaissance tool for network discovery, subdomain enumeration, IP enrichment, and secret detection via certificate logs, Shodan, and GitHub…

OSINT reconnaissance tool for network discovery, subdomain enumeration, IP enrichment, and secret detection via certificate logs, Shodan, and GitHub…

Passive subdomain discovery tool that aggregates results from multiple online sources via CLI, supporting stdin/stdout, JSONL output, and API key…

Fast passive subdomain enumeration tool.

A powerful command-line interface for interacting with the [RapidDNS API](https://rapiddns.io/help/api). This tool allows you to perform DNS…

HostHunter a recon tool for discovering hostnames using OSINT techniques.

Open-source security research tool for identifying origin IP exposure of websites protected by Cloudflare and similar reverse proxy services.

Network, recon and offensive-security tool for Linux.

An OSINT tool for collecting public information.

XRay is a tool for recon, mapping and OSINT gathering from public networks.

This Script will help you to gather information about your victim or friend.

Generates domain name permutations for subdomain enumeration and recon, supporting custom wordlists, cloud patterns, and fast mode for security…

OSINT tool abusing SecurityTrails domain suggestion API to find potentially related domains by keyword and brute force.

OSINT tool that finds domains, subdomains, directories, endpoints and files for a given seed URL.

High-performance network discovery and security auditing tool with advanced port scanning, OS detection, service version detection, and scriptable…

Passive wireless OSINT platform that detects and maps Wi-Fi, Bluetooth, CCTV, IoT devices, and cell towers using radio signal intelligence for…

Shodan-powered tool to discover real IP addresses behind Cloudflare by hashing favicon icons using MurmurHash3, enabling origin server identification…

This tool extract domains from IP address based in the information saved in virustotal.

reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out…