
Oneliner-Bugbounty
A collection oneliner scripts for bug bounty

A collection oneliner scripts for bug bounty

OSINT tool that finds domains, subdomains, directories, endpoints and files for a given seed URL.

gh0str3con is a All in one cloud based web Recon tool.

A high-speed tool for passively gathering URLs, optimized for efficient and comprehensive web asset discovery without active scanning.

Field-validated offensive security skill pack with 169 techniques for reconnaissance and penetration testing. Covers CORS, SSRF, subdomain takeover,…

Automated exploitation framework for CVE-2025-55182 (Next.js RCE) with subdomain enumeration, vulnerability scanning, payload generation, and…

Automated web reconnaissance tool providing header analysis, DNS enumeration, subdomain discovery, directory scanning, SSL inspection, and port…

Automated penetration testing & attack surface management platform. Recon, scan, exploit, report — 600+ exploits, 90+ integrations, 10K+ detections.

Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management

🕵️♂️ Collect a dossier on a person by username from 3000+ sites

High-performance network discovery and security auditing tool with advanced port scanning, OS detection, service version detection, and scriptable…

Multi-functional Web Recon & Vulnerability Scanner Tool

Automated F5 Big IP Remote Code Execution (CVE-2020-5902) Scanner Written In Python 3

Automated reconnaissance and XSS detection framework integrating subfinder, httpx, katana, gospider, waybackurls, and dalfox into a 9-stage pipeline…

WEBFANG, is my first CLI, a modular OSINT & Reconnaissance toolkit curated for Ethical Hackers and Red-Teamers. Sink fangs into web targets using a…


Fast, multi-probe HTTP toolkit for reconnaissance and information gathering. Probes TLS, CSP, headers, tech stack, and CDN. Supports matchers,…