
theHarvester
E-mails, subdomains and names Harvester - OSINT

E-mails, subdomains and names Harvester - OSINT

Curated, continuously validated list of reliable DNS resolvers for DNS enumeration, reconnaissance, and bug bounty workflows.

A tool to find subdomains and interesting things hidden inside, external Javascript files of page, folder, and Github.

🕵️♂️ All-in-one OSINT tool for analysing any website

OSINT reconnaissance tool for network discovery, subdomain enumeration, IP enrichment, and secret detection via certificate logs, Shodan, and GitHub…

evilwaf is a penetration testing tool designed to detect and bypass common Web Application Firewalls (WAFs).

A high-speed tool for passively gathering URLs, optimized for efficient and comprehensive web asset discovery without active scanning.

reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out…

CF-Hero is a reconnaissance tool that uses multiple data sources to discover the origin IP addresses of Cloudflare-protected web applications

CLI tool for open source and threat intelligence

Subdomain enumeration tool, asynchronous dns packets, use pcap to scan 1600,000 subdomains in 1 second

An easy-to-use Python tool for performing subdomain enumeration, endpoint recognition, and more

Wicked sick v2.0 script is intended to automate your reconnaissance process in an organized fashion.


Bash-based fuzzing tool that leverages Google Dorking for stealthy enumeration of directories, files, subdomains, and parameters without direct…

Torito React2Shell Scanner & Exploit Tool (CVE-2025-55182 / 66478)

Passive subdomain discovery tool that aggregates results from multiple online sources via CLI, supporting stdin/stdout, JSONL output, and API key…