
Namechk
Shell-based OSINT tool for bulk username availability and usage checks across 100+ websites, forums, and social networks.

Go-based Active Directory domain information dumper that extracts users, groups, trusts, GPOs, SPNs, LAPS passwords, and GPP credentials via LDAP for…

This tool is based on regex with effective standards for detecting phishing sites in real time using certstream and can also detect punycode (IDNA)…

A geolocation OSINT tool. Offers geolocation information gathering through social networking platforms.

Shodan-based scanner that discovers FortiGate SSL VPN devices and tests them for CVE-2024-21762 vulnerability, displaying organization and country…

A tool to quickly do keyword searches over Gitlab and Github for OSINT & bug bounty recon

Android-native RF auditing toolkit for scanning, logging, and tracking WiFi, Bluetooth, BLE, and NFC devices, with GPS logging, WiGLE export, and BLE…

Web application for aggregating and analyzing cyber threat intelligence from multiple feeds and APIs, enabling cross-search of indicators, automated…

Regex-based scanner that discovers API keys, tokens, JWTs, and other secrets in JavaScript files, with support for URL extraction, custom regex, and…

Real-time phishing domain detection by monitoring Certificate Transparency logs via CertStream, scoring suspicious TLS certificate issuances based on…

Tookie is a advanced OSINT information gathering tool that finds social media accounts based on inputs.

Multi-source OSINT tool for domain, email, credential, IP, ASN, CIDR, and Google Play app reconnaissance with comprehensive scanning and customizable…

OSINT-driven wordlist generator that crawls target web content to create intelligent, dynamic wordlists for penetration testing and security auditing.

Modular OSINT framework for harvesting data from open sources and search engines. Supports DNS enumeration, social network scraping, and web API mode…

Querytool is an OSINT framework based on Google Spreadsheet. With this tool you can perform complex search of terms, people, email addresses, files…

LLM based map for research, exploration and discovery.

A Python based web application scanner to gather OSINT and fuzz for OWASP vulnerabilities on a target website.

A graphing toolkit for threat research - and other things