Ecosyste.ms: Awesome

An open API service indexing awesome lists of open source software.

Awesome Lists | Featured Topics | Projects

Reconnaissance

Reconnaissance refers to the process of gathering information about a target system, network, or organization, typically before launching an attack. The goal of recon is to understand the target’s vulnerabilities, systems, and defenses to increase the likelihood of a successful breach or to defend a network by identifying its weak points.

https://github.com/yogeshojha/rengine

reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines, recon data correlation and organization, continuous monitoring, backed by a database, and simple yet intuitive User Interface. reNgine makes it easy for penetration testers to gather reconnaissance with minimal configuration and with the help of reNgine's correlation, it just makes recon effortless.

bug-bounty bugbounty hacking information-gathering infosec osint penetration-testing pentesting recon recon-engine reconnaissance rengine scanner scanner-web scanning security-tools

Last synced: 18 Dec 2024

https://github.com/six2dez/reconftw

reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities

bug-bounty bugbounty dns fuzzing hacking nuclei osint penetration-testing pentest pentest-tool pentesting recon reconnaissance scanner security security-tools subdomain vulnerabilities

Last synced: 29 Jan 2025

https://github.com/GhostTroops/scan4all

Official repository vuls Scan: 15000+PoCs; 23 kinds of application password crack; 7000+Web fingerprints; 146 protocols and 90000+ rules Port scanning; Fuzz, HW, awesome BugBounty( ͡° ͜ʖ ͡°)...

0day attack auto brute-force bugbounty bugbounty-tools golang hacker hacktools nmap nuclei pentest-tool recon security-scanner security-tools ssh tools vulnerabilities-scan vulnerability-detection vulnerability-scanners

Last synced: 31 Oct 2024

https://github.com/ghosttroops/scan4all

Official repository vuls Scan: 15000+PoCs; 23 kinds of application password crack; 7000+Web fingerprints; 146 protocols and 90000+ rules Port scanning; Fuzz, HW, awesome BugBounty( ͡° ͜ʖ ͡°)...

0day attack auto brute-force bugbounty bugbounty-tools golang hacker hacktools nmap nuclei pentest-tool recon security-scanner security-tools ssh tools vulnerabilities-scan vulnerability-detection vulnerability-scanners

Last synced: 28 Jan 2025

https://github.com/s0md3v/arjun

HTTP parameter discovery suite.

api-fuzzer api-fuzzing api-testing parameter-discovery recon

Last synced: 27 Jan 2025

https://github.com/s0md3v/Arjun

HTTP parameter discovery suite.

api-fuzzer api-fuzzing api-testing parameter-discovery recon

Last synced: 03 Nov 2024

https://github.com/hakluke/hakrawler

Simple, fast web crawler designed for easy, quick discovery of endpoints and assets within a web application

bugbounty crawling hacking osint pentesting recon reconnaissance

Last synced: 28 Jan 2025

https://github.com/khast3x/h8mail

Email OSINT & Password breach hunting tool, locally or using premium services. Supports chasing down related email

breach breach-compilation email hacking haveibeenpwned hibp kali leak osint password recon theharvester

Last synced: 28 Jan 2025

https://github.com/leebaird/discover

Custom bash scripts used to automate various penetration testing tasks including recon, scanning, enumeration, and malicious payload creation using Metasploit. For use with Kali Linux.

bash enumeration information-gathering kali-linux metasploit nmap osint payload-generator pentesting recon reconnaissance red-team scanning

Last synced: 29 Jan 2025

https://github.com/projectdiscovery/uncover

Quickly discover exposed hosts on the internet using multiple search engines.

asm attack-surface bugbounty cli osint recon reconnaissance

Last synced: 28 Jan 2025

https://github.com/m0rtem/cloudfail

Utilize misconfigured DNS and old database records to find hidden IP's behind the CloudFlare network

bruteforce cloudflare cloudflare-ip database ip pentest pentesting python3 recon scanner tor

Last synced: 31 Jan 2025

https://github.com/s0md3v/striker

Striker is an offensive information and vulnerability scanner.

cloudflare cms-detector dnsdumpster email harvester information-gathering parameter recon theharvester

Last synced: 25 Jan 2025

https://github.com/s0md3v/Striker

Striker is an offensive information and vulnerability scanner.

cloudflare cms-detector dnsdumpster email harvester information-gathering parameter recon theharvester

Last synced: 30 Oct 2024

https://github.com/m0rtem/CloudFail

Utilize misconfigured DNS and old database records to find hidden IP's behind the CloudFlare network

bruteforce cloudflare cloudflare-ip database ip pentest pentesting python3 recon scanner tor

Last synced: 28 Oct 2024

https://github.com/bhavsec/reconspider

🔎 Most Advanced Open Source Intelligence (OSINT) Framework for scanning IP Address, Emails, Websites, Organizations.

automated cybersecurity framework hacking information-gathering osint pentest pentesting python recon reconnaissance scanner security

Last synced: 30 Oct 2024

https://github.com/d3mondev/puredns

Puredns is a fast domain resolver and subdomain bruteforcing tool that can accurately filter out wildcard subdomains and DNS poisoned entries.

bugbounty dns dns-bruteforcer dns-lookup dns-resolution dns-resolver hacking massdns recon subdomain subdomain-bruteforcing

Last synced: 29 Jan 2025

https://github.com/Sh1Yo/x8

Hidden parameters discovery suite

bugbounty content-discovery recon rust security web

Last synced: 31 Oct 2024

https://github.com/edoardottt/cariddi

Take a list of domains, crawl urls and scan for endpoints, secrets, api keys, file extensions, tokens and more

bugbounty crawler crawling endpoint-discovery endpoints go golang hacktoberfest infosec osint penetration-testing pentesting recon reconnaissance redteam scraper secret-keys secrets-detection security security-tools

Last synced: 30 Jan 2025

https://github.com/chainreactors/gogo

面向红队的, 高度可控可拓展的自动化引擎

recon redteam security security-tools

Last synced: 30 Jan 2025

https://github.com/utkusen/urlhunter

a recon tool that allows searching on URLs that are exposed via shortener services

bugbounty intelligence osint recon security

Last synced: 26 Jan 2025

https://github.com/v-byte-cpu/sx

:vulcan_salute: Fast, modern, easy-to-use network scanner

arp docker go icmp infosec ipv4 lan network pentest proxy recon scan scanner security socks socks5 syn tcp udp wan

Last synced: 26 Jan 2025

https://github.com/bishopfox/gitgot

Semi-automated, feedback-driven tool to rapidly search through troves of public data on GitHub for sensitive secrets.

fuzzy-matching gist-search gists github-api osint python recon reconnaissance security security-scanner security-tools sensitive-data-exposure

Last synced: 26 Jan 2025

https://github.com/BishopFox/GitGot

Semi-automated, feedback-driven tool to rapidly search through troves of public data on GitHub for sensitive secrets.

fuzzy-matching gist-search gists github-api osint python recon reconnaissance security security-scanner security-tools sensitive-data-exposure

Last synced: 03 Nov 2024

https://github.com/m3n0sd0n4ld/goofuzz

GooFuzz is a tool to perform fuzzing with an OSINT approach, managing to enumerate directories, files, subdomains or parameters without leaving evidence on the target's server and by means of advanced Google searches (Google Dorking).

bash-script bugbounty discovery fuzzing google-dorks hacking information-disclosure infosec osint penetration-testing pentesting recon reconnaissance red-team subdomain

Last synced: 26 Jan 2025

https://github.com/nitefood/asn

ASN / RPKI validity / BGP stats / IPv4v6 / Prefix / URL / ASPath / Organization / IP reputation / IP geolocation / IP fingerprinting / Network recon / lookup API server / Web traceroute server

api as-path asn asn-lookup autonomous-systems bash bgp fingerprinting geolocation incident-response ip-lookup ip-reputation mtr osint recon rpki shodan team-cymru traceroute whois

Last synced: 03 Nov 2024

https://github.com/m3n0sd0n4ld/GooFuzz

GooFuzz is a tool to perform fuzzing with an OSINT approach, managing to enumerate directories, files, subdomains or parameters without leaving evidence on the target's server and by means of advanced Google searches (Google Dorking).

bash-script bugbounty discovery fuzzing google-dorks hacking information-disclosure infosec osint penetration-testing pentesting recon reconnaissance red-team subdomain

Last synced: 08 Nov 2024

https://github.com/viralmaniar/bigbountyrecon

BigBountyRecon tool utilises 58 different techniques using various Google dorks and open source tools to expedite the process of initial reconnaissance on the target organisation.

blue-team bugbounty bugbounty-tool bugbountytips cybersecurity offensive-security osint pentest-tool pentesting purple-team purple-teams recon reconnaissance red-team red-teaming

Last synced: 27 Jan 2025

https://github.com/Viralmaniar/BigBountyRecon

BigBountyRecon tool utilises 58 different techniques using various Google dorks and open source tools to expedite the process of initial reconnaissance on the target organisation.

blue-team bugbounty bugbounty-tool bugbountytips cybersecurity offensive-security osint pentest-tool pentesting purple-team purple-teams recon reconnaissance red-team red-teaming

Last synced: 21 Nov 2024

https://github.com/h4r5h1t/webcopilot

An automation tool that enumerates subdomains then filters out xss, sqli, open redirect, lfi, ssrf and rce parameters and then scans for vulnerabilities.

bug-bounty bugbounty enumeration recon reconnaissance

Last synced: 31 Jan 2025

https://github.com/SimplySecurity/SimplyEmail

Email recon made fast and easy, with a framework to build on

email-recon emails hacking kali recon

Last synced: 03 Nov 2024

https://github.com/ayoubfathi/leaky-paths

A collection of special paths linked to common sensitive APIs, devops internals, frameworks conf, known misconfigurations, juicy APIs ..etc. It could be used as a part of web content discovery, to scan passively for high-quality endpoints and quick-wins.

appsec axiom bugbounty dirbuster dirsearch ffuf fuzzing hacktoberfest meg nuclei penetration-testing pentest recon redteam redteaming security security-tools subfinder wayback-machine wordlist

Last synced: 21 Nov 2024

https://github.com/AlephNullSK/dnsgen

Generates combination of domain names from the provided input.

domains osint recon subdomains

Last synced: 02 Jan 2025

https://github.com/Zarcolio/sitedorks

Search Google/Bing/Ecosia/DuckDuckGo/Yandex/Yahoo for a search term (dork) with a default set of websites, bug bounty programs or custom collection.

baidu bing bugbounty bugcrowd duckduckgo google google-dorks googledork hackerone hacking infosec intigriti osint python3 recon reconnaissance search search-engines yahoo yandex

Last synced: 21 Nov 2024

https://github.com/kennbroorg/iky

OSINT Project. Collect information from a mail. Gather. Profile. Timeline.

email github gitlab hacking iky infosec intelligence keybase leaks linkedin mastodon osint privacy profile recon reddit spotify timeline twitch twitter

Last synced: 31 Jan 2025

https://github.com/projectdiscovery/asnmap

Go CLI and Library for quickly mapping organization network ranges using ASN information.

asn asn-lookup cidr-range osint recon

Last synced: 30 Jan 2025

https://github.com/kennbroorg/iKy

OSINT Project. Collect information from a mail. Gather. Profile. Timeline.

email github gitlab hacking iky infosec intelligence keybase leaks linkedin mastodon osint privacy profile recon reddit spotify timeline twitch twitter

Last synced: 29 Oct 2024

https://github.com/drew-alleman/datasurgeon

Quickly Extracts IP's, Email Addresses, Hashes, Files, Credit Cards, Social Security Numbers and a lot More From Text

bug-bounty ctf-tools cybersecurity email file-search hacking incident-response infosec ip-address osint pentesting recon reconnaissance regex rust rust-lang search search-tools security-tools windows

Last synced: 31 Jan 2025

https://github.com/Drew-Alleman/DataSurgeon

Quickly Extracts IP's, Email Addresses, Hashes, Files, Credit Cards, Social Security Numbers and a lot More From Text

bug-bounty ctf-tools cybersecurity email file-search hacking incident-response infosec ip-address osint pentesting recon reconnaissance regex rust rust-lang search search-tools security-tools windows

Last synced: 24 Nov 2024

https://github.com/x1mdev/reconpi

ReconPi - A lightweight recon tool that performs extensive scanning with the latest tools.

docker hacking hacking-tool hacktoberfest nuclei raspberry-pi recon recon-pi shell

Last synced: 25 Jan 2025

https://github.com/x1mdev/ReconPi

ReconPi - A lightweight recon tool that performs extensive scanning with the latest tools.

docker hacking hacking-tool hacktoberfest nuclei raspberry-pi recon recon-pi shell

Last synced: 25 Oct 2024

https://github.com/devxprite/infoooze

A OSINT tool which helps you to quickly find information effectively. All you need is to input and it will take take care of rest.

contributions-welcome cyber cybersecurity github hacking infoooze information-gathering infosec kali-tools nodejs npm npm-package open-source osint osint-tool recon termux termux-tool

Last synced: 25 Jan 2025

https://github.com/r3curs1v3-pr0xy/vajra

Vajra is a highly customizable target and scope based automated web hacking framework to automate boring recon tasks and same scans for multiple target during web applications penetration testing.

bug-bounty hacking information-gathering osint pentest-tool pentesting recon scanner vajra web-hacking

Last synced: 05 Nov 2024

https://github.com/eslam3kl/3klCon

Automation Recon tool which works with Large & Medium scopes. It performs a lot of tasks and gets back all the results in separated files.

3klcon automation penetration-test recon reconnaissance-framework

Last synced: 01 Nov 2024

https://github.com/devXprite/infoooze

A OSINT tool which helps you to quickly find information effectively. All you need is to input and it will take take care of rest.

contributions-welcome cyber cybersecurity github hacking infoooze information-gathering infosec kali-tools nodejs npm npm-package open-source osint osint-tool recon termux termux-tool

Last synced: 08 Nov 2024

https://github.com/chrismaddalena/odin

Automated network asset, email, and social media profile discovery and cataloguing.

asset-discovery neo4j osint recon reconnaissance

Last synced: 25 Jan 2025

https://github.com/chrismaddalena/ODIN

Automated network asset, email, and social media profile discovery and cataloguing.

asset-discovery neo4j osint recon reconnaissance

Last synced: 25 Oct 2024

https://github.com/natlas/natlas

Scaling Network Scanning. Changes prior to 1.0 may cause difficult to avoid backwards incompatibilities. You've been warned.

infosec natlas natlas-agent natlas-server nmap recon reconnaissance scanning

Last synced: 06 Nov 2024

https://github.com/utkusen/shotlooter

a recon tool that finds sensitive data inside the screenshots uploaded to prnt.sc

recon reconnaissance screenshot

Last synced: 26 Jan 2025

https://github.com/anasfik/flutter-spy

Explore, analyze, and gain valuable data & insights from reverse engineered Flutter apps.

bugbounty flutter osint recon reconnaissance reverse-engineering security-tools

Last synced: 25 Jan 2025

https://github.com/glebarez/cero

Scrape domain names from SSL certificates of arbitrary hosts

domain-names recon scrape ssl tls websecurity

Last synced: 09 Nov 2024

https://github.com/m8sec/nullinux

Internal penetration testing tool for Linux that can be used to enumerate OS information, domain information, shares, directories, and users through SMB.

enumeration pentest-tool pentesting python recon smb

Last synced: 25 Jan 2025

https://github.com/nullt3r/jfscan

JF⚡can - Super fast port scanning & service discovery using Masscan and Nmap. Scan large networks with Masscan and use Nmap's scripting abilities to discover information about services. Generate report.

bugbounty enumeration masscan network nmap pentesting portscanner python recon scanning security-tools tcp vulnerabilityscanner

Last synced: 06 Nov 2024

https://github.com/s0md3v/zen

Find emails of Github users

github github-recon information-gathering osint recon

Last synced: 26 Jan 2025

https://github.com/0xApt/awesome-bbht

A bash script that will automatically install a list of bug hunting tools that I find interesting for recon, exploitation, etc. (minus burp) For Ubuntu/Debain.

bug-bounty bug-hunting bugbounty enumerate-subdomains exploitation hacking hacking-tool hacking-tools penetration-testing recon reconnaissance security-tools

Last synced: 25 Oct 2024

https://github.com/s0md3v/Zen

Find emails of Github users

github github-recon information-gathering osint recon

Last synced: 11 Nov 2024

https://github.com/sharsil/mailcat

Find existing email addresses by nickname using API/SMTP checking methods without user notification. Please, don't hesitate to improve cat's job! 🐱🔎 📬

cat email email-api email-checker email-enum email-enumeration email-validation osint osint-python osint-reconnaissance osint-resources osint-tool probiv recon reconnaissance smtp smtp-checker tor user-check user-checker

Last synced: 31 Oct 2024

https://github.com/jakecreps/poastal

Poastal - the Email OSINT tool

email osint python recon

Last synced: 09 Nov 2024

https://github.com/v4d1/Dome

Dome - Subdomain Enumeration Tool. Fast and reliable python script that makes active and/or passive scan to obtain subdomains and search for open ports.

bugbounty enumeration hacking-tool osint penetration-testing pentesting recon reconnaissance redteam redteam-tools subdomain subdomain-brute subdomain-enumeration subdomain-finder subdomain-scanner

Last synced: 21 Nov 2024

https://github.com/pwnfoo/ntlmrecon

Enumerate information from NTLM authentication enabled web endpoints 🔎

blackarch cybersecurity enumeration hacking hacking-tools ntlm ntlmssp osint recon reconnaissance redteam security tools

Last synced: 29 Jan 2025

https://github.com/pwnfoo/NTLMRecon

Enumerate information from NTLM authentication enabled web endpoints 🔎

blackarch cybersecurity enumeration hacking hacking-tools ntlm ntlmssp osint recon reconnaissance redteam security tools

Last synced: 21 Nov 2024

https://github.com/milesrichardson/docker-onion-nmap

Scan .onion hidden services with nmap using Tor, proxychains and dnsmasq in a minimal alpine Docker container.

docker nmap pentesting proxychains recon scanner security tor

Last synced: 17 Nov 2024

https://github.com/ice-doom/EyeJo

EyeJo是一款自动化资产风险评估平台,可以协助甲方安全人员或乙方安全人员对授权的资产中进行排查,快速发现存在的薄弱点和攻击面。

information-gathering pentest-tool recon scanner scanner-web security-tools

Last synced: 21 Nov 2024