
insightsnexus
OSINT Graph Investigation Application

OSINT Graph Investigation Application

Curated framework of free OSINT tools and resources for gathering intelligence from public sources, organized by category with structured metadata…

Modular OSINT framework for gathering intelligence on domains, usernames, phone numbers, and emails using public sources, Google dorks, and…

This Script will help you to gather information about your victim or friend.

BigBountyRecon tool utilises 58 different techniques using various Google dorks and open source tools to expedite the process of initial…

Community curated list of search queries for various products across multiple search engines.

A Web Vulnerability Scanner and Patcher

MCP server exposing multiple OSINT tools for AI assistants like Claude

Scans Discord links across mutual guilds to extract profiles, cross‑references 700+ sites, searches usernames with 30+ tools, and generates an…

Hermes — an ephemeral, Docker-powered OSINT framework for testing, tinkering, and secure investigative automation.

Local static query builder for precise search across web engines, Shodan, crt.sh, and Wayback Machine. Supports Google dorks, filetype filters, date…

Locally-hosted, air-gapped VAPT platform that runs 8 parallel scanning modules, deterministically scores findings with CVSS v3.1, and generates PDF…

Our main goal is to share tips from some well-known bughunters. Using recon methodology, we are able to find subdomains, apis, and tokens that are…

"Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.

Automated OSINT framework for ethical hacking audits. Collects employee emails, password hashes, subdomains, and IPs via BreachDirectory and…

🔍 Recon notes organizer for bug bounty hunters and CTF players — subdomains, ports, endpoints, vulns, all in one place.

A "malicious" DNS server for executing DNS Rebinding attacks on the fly (public instance running on rebind.network:53)