
arp-scan
Fast ARP-based network scanner for discovering and fingerprinting IPv4 hosts on local networks, with vendor lookup, adjustable scan rates, and…

Fast ARP-based network scanner for discovering and fingerprinting IPv4 hosts on local networks, with vendor lookup, adjustable scan rates, and…

Small, fast tool for performing reverse DNS lookups en masse.

OSCP-legal network recon orchestrator for port discovery, service classification, and enum-only plugin dispatch across HTTP, SMB, FTP, SNMP, SSH, and…

cPanel Scanner is a fast, multi-threaded tool written in Go for detecting cPanel services across IP ranges, CIDR blocks, or target lists. Perfect for…

A tool to scrape the AWS ranges looking for a keyword in SSL certificate data.

peeko – Browser-based XSS C2 for stealthy internal network exploration via infected browser.

A python tool to map the access rights of network shares into a BloodHound OpenGraphs easily

SSLScrape | A scanning tool for scaping hostnames from SSL certificates.

Exploiting HID VertX and EDGE access control systems

Metasploit auxiliary module that identifies Emby Media Server version and exploits CVE-2020-26948 SSRF vulnerability to scan internal network…

LiquidNet: A powerful tool tailored for cybersecurity professionals and ethical hackers. It simplifies the process of collecting IPv4 addresses…

Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container

A port scanner written purely in PowerShell.

Network, recon and offensive-security tool for Linux.

This tool extract domains from IP address based in the information saved in virustotal.

Multi-threaded router fingerprinting tool that identifies web-exposed network devices by analyzing HTTP responses, headers, and favicon hashes for…

This tool is used to perform reverse IP lookups— searching for all domains hosted on one IP address.

gh0str3con is a All in one cloud based web Recon tool.