
chomp-scan
A scripted pipeline of tools to streamline the bug bounty/penetration test reconnaissance phase, so you can focus on chomping bugs.

A scripted pipeline of tools to streamline the bug bounty/penetration test reconnaissance phase, so you can focus on chomping bugs.

The most exhaustive list of reliable DNS resolvers.

A Multi-Processing Tool for collecting and extracting information to an Excel file from a Burp Suite output file.


Ashok is a OSINT Recon Tool , a.k.a 😍 Swiss Army knife .

This tool can be used to enumerate the subdomains associated with a company by aggregating the results of multiple OSINT (Open Source Intelligence)…

E-mails, subdomains and names Harvester - OSINT

A really simple utility to concate wordlists to a domain name - to pipe into your favourite resolver!

Curated collection of wordlists for bug bounty hunting, covering directories, subdomains, parameters, usernames, passwords, and web fuzzing payloads.


BigBountyRecon tool utilises 58 different techniques using various Google dorks and open source tools to expedite the process of initial…

An easy-to-use Python tool for performing subdomain enumeration, endpoint recognition, and more

An asynchronous enumeration & vulnerability scanner. Run all the tools on all the hosts.

Web-based project management interface for penetration testing and bug bounty workflows, automating port scanning with Nmap/Masscan and subdomain…

CVE-2020-13942 POC + Automation Script

Multithreaded reverse IP lookup tool for discovering domains hosted on the same IP address.

A Python-based reconnaissance scanner for safely identifying potential exposure to SharePoint vulnerability CVE-2025-53770.

Robust Subdomain Takeover Tool