
WireTapper
Passive wireless OSINT platform that detects and maps Wi-Fi, Bluetooth, CCTV, IoT devices, and cell towers using radio signal intelligence for…

Passive wireless OSINT platform that detects and maps Wi-Fi, Bluetooth, CCTV, IoT devices, and cell towers using radio signal intelligence for…

This tool can be used to enumerate the subdomains associated with a company by aggregating the results of multiple OSINT (Open Source Intelligence)…

A utility to detect various technology for a given IP address.

OSINT reconnaissance tool for network discovery, subdomain enumeration, IP enrichment, and secret detection via certificate logs, Shodan, and GitHub…

Official repository vuls Scan: 15000+PoCs; 23 kinds of application password crack; 7000+Web fingerprints; 146 protocols and 90000+ rules Port…

Small, fast tool for performing reverse DNS lookups en masse.

A DNS reconnaissance tool for locating non-contiguous IP space.

Take a list of domains and probe for working HTTP and HTTPS servers

A security tool for multithreaded information gathering and service enumeration whilst building directory structures to store results, along with…

Shodan-powered tool to discover real IP addresses behind Cloudflare by hashing favicon icons using MurmurHash3, enabling origin server identification…

Nmap on steroids. Simple CLI with the ability to run pure Nmap engine, 31 modules with 459 scan profiles.

Dangerously fast DNS/network/port scanner

Fierce.pl Domain Scanner

Red team Arsenal - An intelligent scanner to detect security vulnerabilities in company's layer 7 assets.

Poor (rich?) man's bug bounty pipeline https://dubell.io

ShodanX is a tool to gather information of targets using shodan dorks⚡.

Network, recon and offensive-security tool for Linux.

Pentest/BugBounty progress control with scanning modules