
HostileSubBruteforcer
Subdomain brute-forcing tool that enumerates existing subdomains and detects misconfigured cloud-hosted subdomains vulnerable to takeover across AWS,…

Subdomain brute-forcing tool that enumerates existing subdomains and detects misconfigured cloud-hosted subdomains vulnerable to takeover across AWS,…

Chiasmodon is an OSINT tool designed to assist in the process of gathering information about a target domain. Its primary functionality revolves…

Automated reconnaissance framework with 17+ modules for subdomain enumeration, directory brute-forcing, JS/link mining, WAF fingerprinting, and…

Stuff that doesn't deserves its own repository.

Some tools to automate recon - 003random

Modular bug bounty hunting framework automating reconnaissance, subdomain enumeration, and vulnerability scanning with an educational focus to help…

An OSINT tool that discovers sub-domains by searching Certificate Transparency logs

Pentest/BugBounty progress control with scanning modules

Rock-On is a all in one Recon tool that will just get a single entry of the Domain name and do all of the work alone.

⚡ Perform subdomain enumeration using the certificate transparency logs from Censys.

Web Application Security Automation Framework which recons the target for various assets to maximize the attack surface for security professionals &…

DDOS Tool: To take down small websites with HTTP FLOOD. Port scanner: To know the open ports of a site. FTP Password Cracker: To hack file system of…

Automated network asset, email, and social media profile discovery and cataloguing.

Fast DNS takeover scanner that checks for missing hosted zones by querying nameservers and fingerprinting providers to identify vulnerable subdomains.

Fast Python-based subdomain enumeration tool combining passive OSINT and active brute-force scanning with DNS wildcard detection, port scanning, and…

A scripted pipeline of tools to streamline the bug bounty/penetration test reconnaissance phase, so you can focus on chomping bugs.
