Skip to content
KitploitKITPLOIT
ИнструментыЭксплойтыБлог
Log in
Отправить
ИнструментыЭксплойтыБлог
Отправить

Инструменты для хакинга, пентеста и кибербезопасности — ваш арсенал защиты!

Kitploit — это каталог инструментов для хакинга, кибербезопасности и пентестинга. Находите последние обновления проектов для поиска уязвимостей, анализа систем, автоматизации тестирования и усиления вашей безопасности.

ЛентыКонтактыКонфиденциальность© 2026 Kitploit

Каталог инструментов

Категории

Все категории
Loading categories
awesome-bugbounty-tools — Curated directory of bug bounty tools organized by category: reconnaissance, subdomain enumeration, port scanning, content discovery, exploitation, and vulnerability scanning for penetration testers. | Kitploit
Инструменты/GitHubGitHub/vavkamil/awesome-bugbounty-tools
ReconnaissanceVulnerability ScannersPort ScanningExploitationWeb SecurityFuzzingSubdomain EnumerationCurated Resources

Популярное

Смотреть все →

Откройте для себя самые используемые инструменты нашего сообщества.

Изучить все инструменты

Просмотрите нашу коллекцию инструментов

Смотреть все инструменты →
Поделиться
GitHub
vavkamil/awesome-bugbounty-tools

awesome-bugbounty-tools

Curated directory of bug bounty tools organized by category: reconnaissance, subdomain enumeration, port scanning, content discovery, exploitation, and vulnerability scanning for penetration testers.

Репозиторий
6.2k9831624 ч 58 мин назадПроверено Kitploit
Контент недоступен на запрошенном языке. Показываем английскую версию.

Awesome Bug Bounty Tools Awesome

A curated list of various bug bounty tools

Contents

  • Recon

    • Subdomain Enumeration
    • Port Scanning
    • Screenshots
    • Technologies
    • Content Discovery
    • Content Filtering
    • Links
    • Parameters
    • Fuzzing
    • Monitoring
    • Waf Evasion
  • Exploitation

    • Command Injection
    • CORS Misconfiguration
    • CRLF Injection
    • CSRF Injection
    • Directory Traversal
    • File Inclusion
    • GraphQL Injection
    • Header Injection
    • Insecure Deserialization
    • Insecure Direct Object References
    • Open Redirect
    • Race Condition
    • Request Smuggling
    • Server Side Request Forgery
    • SQL Injection
    • XSS Injection
    • XXE Injection
    • Cache Poisoning
  • Miscellaneous

    • Passwords
    • Secrets
    • Git
    • Buckets
    • CMS
    • JSON Web Token
    • postMessage
    • Subdomain Takeover
    • Vulnerability Scanners
    • Forbidden Bypass
    • Permutation
    • Web Proxy and Traffic Interception
    • Origin IP
    • Useful
    • AI Agents
    • Uncategorized

Recon

Subdomain Enumeration

  • Sublist3r - Fast subdomains enumeration tool for penetration testers
  • Amass - In-depth Attack Surface Mapping and Asset Discovery
  • massdns - A high-performance DNS stub resolver for bulk lookups and reconnaissance (subdomain enumeration)
  • Findomain - The fastest and cross-platform subdomain enumerator, do not waste your time.
  • Sudomy - Sudomy is a subdomain enumeration tool to collect subdomains and analyzing domains performing automated reconnaissance (recon) for bug hunting / pentesting
  • chaos-client - Go client to communicate with Chaos DNS API.
  • domained - Multi Tool Subdomain Enumeration
  • bugcrowd-levelup-subdomain-enumeration - This repository contains all the material from the talk "Esoteric sub-domain enumeration techniques" given at Bugcrowd LevelUp 2017 virtual conference
  • shuffledns - shuffleDNS is a wrapper around massdns written in go that allows you to enumerate valid subdomains using active bruteforce as well as resolve subdomains with wildcard handling and easy input-output…
  • puredns - Fast domain resolver and subdomain bruteforcing with accurate wildcard filtering with wildcard(*)
  • censys-subdomain-finder - Perform subdomain enumeration using the certificate transparency logs from Censys.
  • Turbolist3r - Subdomain enumeration tool with analysis features for discovered domains
  • censys-enumeration - A script to extract subdomains/emails for a given domain using SSL/TLS certificate dataset on Censys
  • tugarecon - Fast subdomains enumeration tool for penetration testers.
  • Subra - A Web-UI for subdomain enumeration (subfinder)
  • Substr3am - Passive reconnaissance/enumeration of interesting targets by watching for SSL certificates being issued
  • domain - enumall.py Setup script for Regon-ng
  • altdns - Generates permutations, alterations and mutations of subdomains and then resolves them
  • brutesubs - An automation framework for running multiple open sourced subdomain bruteforcing tools (in parallel) using your own wordlists via Docker Compose
  • dns-parallel-prober - his is a parallelised domain name prober to find as many subdomains of a given domain as fast as possible.
  • dnscan - dnscan is a python wordlist-based DNS subdomain scanner.
  • knock - Knockpy is a python tool designed to enumerate subdomains on a target domain through a wordlist.
  • hakrevdns - Small, fast tool for performing reverse DNS lookups en masse.
  • dnsx - Dnsx is a fast and multi-purpose DNS toolkit allow to run multiple DNS queries of your choice with a list of user-supplied resolvers.
  • subfinder - Subfinder is a subdomain discovery tool that discovers valid subdomains for websites.
  • assetfinder - Find domains and subdomains related to a given domain
  • crtndstry - Yet another subdomain finder
  • VHostScan - A virtual host scanner that performs reverse lookups
  • scilla - Information Gathering tool - DNS / Subdomains / Ports / Directories enumeration
  • sub3suite - A research-grade suite of tools for subdomain enumeration, intelligence gathering and attack surface mapping.
  • cero - Scrape domain names from SSL certificates of arbitrary hosts
  • shosubgo - Small tool to Grab subdomains using Shodan api
  • haktrails - Golang client for querying SecurityTrails API data
  • bbot - A recursive internet scanner for hackers
  • crt.go - This Go script simplifies the process of efficiently saving and analyzing subdomain output from the crt.sh website.
  • github-subdomains - This Go tool performs searches on GitHub and parses the results to find subdomains of a given domain.
  • gitlab-subdomains - This Go tool performs searches on GitLab and parses the results to find subdomains of a given domain.
  • subdominator - Fast and powerfull to enumerate subdomains (50+ passive results ).
  • csprecon - Discover new target domains using Content Security Policy
  • related-domains - Find related domains of a given domain. this tool search for domains that have been registered by the same peoples/companies.
  • hakip2host - hakip2host takes a list of IP addresses via stdin, then does a series of checks to return associated domain names.

Port Scanning

Скачать инструмент