
kostebek
Automated reconnaissance tool that discovers organization domains by querying trademark databases via Google, Bing, Yahoo, and trademark registries.

Automated reconnaissance tool that discovers organization domains by querying trademark databases via Google, Bing, Yahoo, and trademark registries.

A modular distributed penetration testing tool.

Subdomain and target enumeration tool built for offensive security testing

Read-only CLI to check whether a WordPress site is exposed to WP2Shell (CVE-2026-63030 / CVE-2026-60137)

DNSProb is a tool built on top of retryabledns that allows you to perform multiple dns queries of your choice with a list of user supplied resolvers.

Automated reconnaissance and vulnerability detection tool that enumerates subdomains, collects URLs, and runs Nuclei scans to identify…

Generates permutations, alterations and mutations of subdomains and then resolves them

BigBountyRecon tool utilises 58 different techniques using various Google dorks and open source tools to expedite the process of initial…

Subdomain brute-forcing tool that enumerates existing subdomains and detects misconfigured cloud-hosted subdomains vulnerable to takeover across AWS,…

Multithreaded Python tool for brute-forcing hidden directories and subdomains on target web servers to aid in reconnaissance and information…

CLI tool for open source and threat intelligence

Bash-based fuzzing tool that leverages Google Dorking for stealthy enumeration of directories, files, subdomains, and parameters without direct…

Wicked sick v2.0 script is intended to automate your reconnaissance process in an organized fashion.

Passive subdomain discovery tool that aggregates results from multiple online sources via CLI, supporting stdin/stdout, JSONL output, and API key…

This tool extract domains from IP address based in the information saved in virustotal.

Robust Subdomain Takeover Tool

log4shell (CVE-2021-44228) scanning tool

Torito React2Shell Scanner & Exploit Tool (CVE-2025-55182 / 66478)