
warf
Modular web application reconnaissance framework for automated subdomain enumeration, directory brute-forcing, and extraction of endpoints, JS URLs,…

Modular web application reconnaissance framework for automated subdomain enumeration, directory brute-forcing, and extraction of endpoints, JS URLs,…

🕵️♂️ Collect a dossier on a person by username from 3000+ sites

Curated framework of free OSINT tools and resources for gathering intelligence from public sources, organized by category with structured metadata…

The recursive internet scanner for hackers. 🧡

Our main goal is to share tips from some well-known bughunters. Using recon methodology, we are able to find subdomains, apis, and tokens that are…

AI-powered bug bounty hunting from your terminal - recon, 20 vuln classes, autonomous hunting, and report generation. All inside Claude Code.

The fastest and complete solution for domain recognition. Supports screenshoting, port scan, HTTP check, data import from other tools, subdomain…

An #OSINT Framework to perform various recon techniques on Companies, People, Phone Number, Bitcoin Addresses, etc., aggregate all the raw data, and…

Find way more from the Wayback Machine, Common Crawl, Alien Vault OTX, URLScan, VirusTotal, GhostArchive & Intelligence X!

XRay is a tool for recon, mapping and OSINT gathering from public networks.


A Powerful Subdomain Takeover Tool

⚡ Perform subdomain enumeration using the certificate transparency logs from Censys.

An OSINT tool that helps detect members of a company with leaked credentials

Fast Python-based subdomain enumeration tool combining passive OSINT and active brute-force scanning with DNS wildcard detection, port scanning, and…

Web Application Security Automation Framework which recons the target for various assets to maximize the attack surface for security professionals &…