
fierce
A DNS reconnaissance tool for locating non-contiguous IP space.

A DNS reconnaissance tool for locating non-contiguous IP space.

Production-grade MCP server giving Claude 27 security intelligence tools across 21 APIs — CVE lookup, EPSS scoring, CISA KEV, MITRE ATT&CK, Shodan,…

OWASP Web Recon & Directory Discovery Platform

Web application security scanner created by lcamtuf for google - Unofficial Mirror

MassDNS wrapper written in go to enumerate valid subdomains using active bruteforce as well as resolve subdomains with wildcard filtering and easy…


Panoptic is an open source penetration testing tool that automates the process of search and retrieval of content for common log and config files…

Burp Extension to find potential endpoints, parameters, and generate a custom target wordlist

Bash-based fuzzing tool that leverages Google Dorking for stealthy enumeration of directories, files, subdomains, and parameters without direct…

Subdomain enumeration tool, asynchronous dns packets, use pcap to scan 1600,000 subdomains in 1 second

Set of tools to audit SIP based VoIP Systems

Curated collection of bug bounty tips, one-liners, and automation workflows for recon, fuzzing, and web exploitation, with private nuclei templates…

PenBox - A Penetration Testing Framework - The Tool With All The Tools , The Hacker's Repo

Passive API key and secret discovery browser extension for Chrome and Firefox. 80+ detection patterns, zero config.

IEEE 802.15.4/ZigBee Security Research Toolkit

An easy-to-use and lightweight API wrapper for Censys APIs.

Generates domain name permutations for subdomain enumeration and recon, supporting custom wordlists, cloud patterns, and fast mode for security…

jshunter is a command-line tool designed for analyzing JavaScript files and extracting endpoints. This tool specializes in identifying sensitive…