
pentest-tools
A collection of custom security tools for quick needs.

A collection of custom security tools for quick needs.

Curated collection of Google dork queries for advanced search engine reconnaissance, uncovering exposed databases, configuration files, admin panels,…

Search Google/Bing/Ecosia/DuckDuckGo/Yandex/Yahoo for a search term (dork) with a default set of websites, bug bounty programs or custom collection.

Poor (rich?) man's bug bounty pipeline https://dubell.io

A new generation of tool for discovering subdomains( ip , cdn and so on)

Bash-based fuzzing tool that leverages Google Dorking for stealthy enumeration of directories, files, subdomains, and parameters without direct…

Community curated list of search queries for various products across multiple search engines.

Generates permutations, alterations and mutations of subdomains and then resolves them

XCTR Hacking Tools

Take a list of domains and probe for working HTTP and HTTPS servers

API-first subdomain discovery service using Certificate Transparency logs for fast, passive enumeration of subdomains via a REST API with JSON or…

Monitoring the Cloud Landscape

Fast, multi-probe HTTP toolkit for reconnaissance and information gathering. Probes TLS, CSP, headers, tech stack, and CDN. Supports matchers,…

Go client to communicate with Chaos DB API.

Open-source security research tool for identifying origin IP exposure of websites protected by Cloudflare and similar reverse proxy services.

Curated framework of free OSINT tools and resources for gathering intelligence from public sources, organized by category with structured metadata…

🕵️♂️ Collect a dossier on a person by username from 3000+ sites

A Web Vulnerability Scanner and Patcher