
theHarvester
E-mails, subdomains and names Harvester - OSINT

E-mails, subdomains and names Harvester - OSINT

Custom Bash and Python scripts used to automate various penetration testing tasks including recon, scanning, enumeration, and malicious payload…

A fast port scanner written in go with a focus on reliability and simplicity. Designed to be used in combination with other tools for attack surface…

A flexible internet crawler used for scanning technologies, instances and vulnerabilities worldwide across the internet.

Modular attack toolkit exploiting Azure DevOps REST API for reconnaissance, privilege escalation, and persistence using stolen cookies or PATs.

JavaScript beacons and C2 to be used for XSS payload or post exploitation implants on webapp servers or desktop software to monitor users and…

The VMWare Horizon Connection Server is often used as an internet-facing gateway to an organization’s virtual desktop environment (VDI). Until…

This tool is used to perform reverse IP lookups— searching for all domains hosted on one IP address.

Simple scanner to detect vulnerable Livewire installations.

CVE-2026-33693: SSRF via 0.0.0.0 Bypass in activitypub-federation-rust v4_is_invalid() (CVSS 6.5 Moderate)

Shodan Dorks

Port of Wappalyzer (uncovers technologies used on websites) to automate mass scanning.

[First-Blood-XO] React Server Component endpoint vulnerable to CVE-2025-55182 (RCE) → enumerated SUID binaries → /usr/bin/perl had SUID set → used…

powerfull rust cve-2025-55182-scanner used for ctf & ethical purpose only

A collection of special paths linked to common sensitive APIs, devops internals, frameworks conf, known misconfigurations, juicy APIs ..etc. It could…

CVE-2023-35813 is a proof-of-concept used to determine if an instance of Sitecore is vulnerable by analyzing a server Response Header for…

BurpFlow is one of the best Burp Suite automation tools for bug bounty hunters and penetration testers, widely used to load recon data via proxy and…

A python tool used to discover endpoints, potential parameters, a target specific wordlist for a given target and secrets