
Dome
Fast Python-based subdomain enumeration tool combining passive OSINT and active brute-force scanning with DNS wildcard detection, port scanning, and…

Fast Python-based subdomain enumeration tool combining passive OSINT and active brute-force scanning with DNS wildcard detection, port scanning, and…

Master script for web reconnaissance

Curated collection of wordlists for bug bounty hunting, covering directories, subdomains, parameters, usernames, passwords, and web fuzzing payloads.

Poor (rich?) man's bug bounty pipeline https://dubell.io

Some tools to automate recon - 003random

A scripted pipeline of tools to streamline the bug bounty/penetration test reconnaissance phase, so you can focus on chomping bugs.

Crawls web applications to detect second-order subdomain takeover vulnerabilities by collecting URLs and matching configurable rules for non-200…

Wicked sick v2.0 script is intended to automate your reconnaissance process in an organized fashion.

🦚 A web-app pentesting suite written in rust .

Search for information related to domain: Emails - IP addresses - Sub-Domains - Information on WEB technology - Type of Firewall - NS and MX records.

Takeover script extracts CNAME record of all subdomains at once. TakeOver saves researcher time and increase the chance of finding subdomain takeover…

A really simple utility to concate wordlists to a domain name - to pipe into your favourite resolver!


A modular distributed penetration testing tool.

Python-based web domain scanner integrating Sublist3r, Dirble, Nmap, and WhatWeb for subdomain discovery, directory enumeration, network scanning,…


A Multi-Processing Tool for collecting and extracting information to an Excel file from a Burp Suite output file.