
Strumento OSINT per email e ricerca di violazioni di password, localmente o tramite servizi premium. Supporta la ricerca di email correlate.
h8mail è uno strumento di OSINT e di ricerca di violazioni di dati tramite email che utilizza diversi servizi di violazione e ricognizione, o archivi locali come la "Collection1" di Troy Hunt e il famigerato torrent "Breach Compilation".
pip, richiede solo requestspip3 install h8mail| Service | Functions | Status |
|---|---|---|
| HaveIBeenPwned(v3) | Numero di violazioni email | ✅ 🔑 |
| HaveIBeenPwned Pastes(v3) | URL di file di testo che menzionano i target | ✅ 🔑 |
| Hunter.io - Public | Numero di email correlate | ✅ |
| Hunter.io - Service (free tier) | Email correlate in chiaro, inseguimento | ✅ 🔑 |
| Snusbase - Service | Password in chiaro, hash e salt, username, IP - Veloce ⚡ | ✅ 🔑 |
| Leak-Lookup - Public | Numero di risultati di violazioni ricercabili | ✅ (🔑) |
| Leak-Lookup - Service | Password in chiaro, hash e salt, username, IP, dominio | ✅ 🔑 |
| Emailrep.io - Service (free) | Ultima apparizione nelle violazioni, profili social media | ✅ 🔑 |
| scylla.so - Service (free) | Password in chiaro, hash e salt, username, IP, dominio | 🚧 |
| Dehashed.com - Service | Password in chiaro, hash e salt, username, IP, dominio | ✅ 🔑 |
| IntelX.io - Service (free trial) | Password in chiaro, hash e salt, username, IP, dominio, portafogli Bitcoin, IBAN | ✅ 🔑 |
| 🆕 Breachdirectory.org - Service (free) | Password in chiaro, hash e salt, username, dominio | 🚧 🔑 |
🔑 - Chiave API richiesta
usage: h8mail [-h] [-t USER_TARGETS [USER_TARGETS ...]]
[-u USER_URLS [USER_URLS ...]] [-q USER_QUERY] [--loose]
[-c CONFIG_FILE [CONFIG_FILE ...]] [-o OUTPUT_FILE]
[-j OUTPUT_JSON] [-bc BC_PATH] [-sk]
[-k CLI_APIKEYS [CLI_APIKEYS ...]]
[-lb LOCAL_BREACH_SRC [LOCAL_BREACH_SRC ...]]
[-gz LOCAL_GZIP_SRC [LOCAL_GZIP_SRC ...]] [-sf]
[-ch [CHASE_LIMIT]] [--power-chase] [--hide] [--debug]
[--gen-config]
Email information and password lookup tool