
SubDomainizer
A tool to find subdomains and interesting things hidden inside, external Javascript files of page, folder, and Github.

A tool to find subdomains and interesting things hidden inside, external Javascript files of page, folder, and Github.

Slack enumeration and exposed secrets detection tool

Automated OSINT tool that scans SwaggerHub API documentation to discover exposed secrets, credentials, and sensitive information using regex-based…

Passive recon & attack surface mapper — zero requests sent

GitHub Actions Pipeline Enumeration and Attack Tool

A Rust CLI tool that recursively discovers Git repositories, captures state changes, generates diffs, extracts code elements with full snippets, and…

「🔑」A tool used to hunt down API key leaks in JS files and pages

A python tool used to discover endpoints, potential parameters, a target specific wordlist for a given target and secrets

Hunt for AI coding artifacts containing secrets.

Nosey Parker is a command-line tool that finds secrets and sensitive information in textual data and Git history.

Automated Python scanner to detect hardcoded secrets (Private Keys, API Tokens) in client-side JavaScript files.

Web-based dashboard to visualize, filter, and analyze secrets discovered by TruffleHog, with batch verification, export, and session management for…

Pillage filesystems for sensitive information with Go 🔍

Fast GitHub recon tool. Scans for leaked secrets across all of GitHub, not just known repos and orgs. Support for GitHub dorks.

Tool for advanced mining for content on Github

Tool for advanced mining for content on Github

Concurrent CLI tool for discovering secrets, API keys, and links in JavaScript files during web reconnaissance, with custom regex pattern support and…

[Just for fun] Find exposed AWS keys (VALID KEYS ONLY) on github