
awesome-bugbounty-tools
Curated directory of bug bounty tools organized by category: reconnaissance, subdomain enumeration, port scanning, content discovery, exploitation,…

Curated directory of bug bounty tools organized by category: reconnaissance, subdomain enumeration, port scanning, content discovery, exploitation,…

The Ultimate Information Gathering Toolkit

A high performance offensive security tool for reconnaissance and vulnerability scanning

Curated list of OSINT tools for offensive security, covering email harvesting, subdomain enumeration, threat intelligence, and social engineering for…


Extract subdomains from SSL certificates in HTTPS sites.

ReconHound is a Python-based web reconnaissance tool designed for penetration testers, bug bounty hunters, and ethical hackers. It supports directory…

An easy-to-use Python tool for performing subdomain enumeration, endpoint recognition, and more

OWASP Web Recon & Directory Discovery Platform

All in one tool for Information Gathering, Vulnerability Scanning and Crawling. A must have tool for all penetration testers

A modular distributed penetration testing tool.

Inventus is a spider designed to find subdomains of a specific domain by crawling it and any subdomains it discovers.

An #OSINT Framework to perform various recon techniques on Companies, People, Phone Number, Bitcoin Addresses, etc., aggregate all the raw data, and…

Fast subdomains enumeration tool for penetration testers

Listing subdomains about a main domain

Concurrent DNS takeover scanner detecting CNAME, NS, AXFR, SPF, MX, SRV, and stale A record vulnerabilities across cloud providers, with multi-level…
