Ecosyste.ms: Awesome

An open API service indexing awesome lists of open source software.

Awesome Lists | Featured Topics | Projects

Reconnaissance

Reconnaissance refers to the process of gathering information about a target system, network, or organization, typically before launching an attack. The goal of recon is to understand the target’s vulnerabilities, systems, and defenses to increase the likelihood of a successful breach or to defend a network by identifying its weak points.

https://github.com/capt-meelo/LazyRecon

An automated approach to performing recon for bug bounty hunting and penetration testing.

bugbounty pentest recon reconnaissance

Last synced: 28 Oct 2024

https://github.com/hakluke/hakip2host

hakip2host takes a list of IP addresses via stdin, then does a series of checks to return associated domain names.

bugbounty hacking osint recon

Last synced: 28 Jan 2025

https://github.com/epi052/recon-pipeline

An automated target reconnaissance pipeline.

bugbounty python3 recon recon-pipeline reconnaissance scanner security-tools

Last synced: 26 Jan 2025

https://github.com/TonyPhipps/Meerkat

A collection of PowerShell modules designed for artifact gathering and reconnaisance of Windows-based endpoints.

analysis baseline blue forensics hunt incident log monitor purple recon red response scan security siem soc team threat threat-hunting triage

Last synced: 05 Nov 2024

https://github.com/tonyphipps/meerkat

A collection of PowerShell modules designed for artifact gathering and reconnaisance of Windows-based endpoints.

analysis baseline blue forensics hunt incident log monitor purple recon red response scan security siem soc team threat threat-hunting triage

Last synced: 03 Nov 2024

https://github.com/0xdekster/ReconNote

Web Application Security Automation Framework which recons the target for various assets to maximize the attack surface for security professionals & bug-hunters

pentesting recon security-tools whitehat

Last synced: 21 Nov 2024

https://github.com/0x0FB0/pulsar

Network footprint scanner platform. Discover domains and run your custom checks periodically.

collaboration cusomization dns integration osint paas recon scanner security

Last synced: 01 Nov 2024

https://github.com/redhuntlabs/bucketloot

BucketLoot is an automated S3-compatible bucket inspector that can help users extract assets, flag secret exposures and even search for custom keywords as well as Regular Expressions from publicly-exposed storage buckets by scanning files that store data in plain-text.

automation blackhat bounty bugbounty bughunting cli cloud cloud-security cybersecurity infosec infosectools osint pentesting recon reconnaissance s3 secret-scanning

Last synced: 26 Jan 2025

https://github.com/mandconsultinggroup/porch-pirate

Porch Pirate is the most comprehensive Postman recon / OSINT client and framework that facilitates the automated discovery and exploitation of API endpoints and secrets committed to workspaces, collections, requests, users and teams. Porch Pirate can be used as a client or be incorporated into your own applications.

devsecops osint postman recon scanning secrets security

Last synced: 29 Jan 2025

https://github.com/MandConsultingGroup/porch-pirate

Porch Pirate is the most comprehensive Postman recon / OSINT client and framework that facilitates the automated discovery and exploitation of API endpoints and secrets committed to workspaces, collections, requests, users and teams. Porch Pirate can be used as a client or be incorporated into your own applications.

devsecops osint postman recon scanning secrets security

Last synced: 09 Nov 2024

https://github.com/redhuntlabs/BucketLoot

BucketLoot is an automated S3-compatible bucket inspector that can help users extract assets, flag secret exposures and even search for custom keywords as well as Regular Expressions from publicly-exposed storage buckets by scanning files that store data in plain-text.

automation blackhat bounty bugbounty bughunting cli cloud cloud-security cybersecurity infosec infosectools osint pentesting recon reconnaissance s3 secret-scanning

Last synced: 02 Jan 2025

https://github.com/s0md3v/subgpt

Find subdomains with GPT, for free

recon scanner scanning subdomain

Last synced: 25 Jan 2025

https://github.com/s0md3v/SubGPT

Find subdomains with GPT, for free

recon scanner scanning subdomain

Last synced: 05 Nov 2024

https://github.com/ahussam/url-tracker

Change monitoring app that checks the content of web pages in different periods.

bugbounty change-monitoring recon reconnaissance security

Last synced: 23 Oct 2024

https://github.com/pikpikcu/XRCross

XRCross is a Reconstruction, Scanner, and a tool for penetration / BugBounty testing. This tool was built to test (XSS|SSRF|CORS|SSTI|IDOR|RCE|LFI|SQLI) vulnerabilities

bugbounty bugbounty-tool check-subdomains cors cors-scanner lfi rce recon scanners sqli ssrf subdomain-enumeration takeover-subdomain xss-scanner xss-vulnerability

Last synced: 21 Nov 2024

https://github.com/d4rckh/vaf

Vaf is a cross-platform very advanced and fast web fuzzer written in nim

bruteforce bug-bounty bugbounty burpsuite fuzzer fuzzing hacking hacking-tools nim penetration-testing pentest-tool recon security-tools vaf web xss

Last synced: 03 Nov 2024

https://github.com/reconness/reconness

ReconNess is a platform to allow continuous recon (CR) where you can set up a pipeline of #recon tools (Agents) and trigger it base on schedule or events.

bugbounty pentesting platform recon redteam tools vulnerable-targets

Last synced: 21 Nov 2024

https://github.com/edoverflow/megplus

Automated reconnaissance wrapper β€” TomNomNom's meg on steroids. [DEPRECATED]

bugbounty infosec recon reconnaissance security

Last synced: 03 Nov 2024

https://github.com/EdOverflow/megplus

Automated reconnaissance wrapper β€” TomNomNom's meg on steroids. [DEPRECATED]

bugbounty infosec recon reconnaissance security

Last synced: 16 Nov 2024

https://github.com/JoshuaMart/AutoRecon

Simple shell script for automated domain recognition with some tools

automated bugbounty domain-discovery recon reconnaissance

Last synced: 06 Nov 2024

https://github.com/silverpoision/rock-on

Rock-On is a all in one Recon tool that will just get a single entry of the Domain name and do all of the work alone.

portscanner recon reconaissance rock-on subdomain-bruteforcing subdomain-enumeration subdomain-scanner subdomain-takeover

Last synced: 23 Jan 2025

https://github.com/pwnwriter/kanha

🦚 A web-app pentesting suite written in rust .

hackers-tools hacsectools hactoberfest offsec-tools osint pentesting-suite pwntools pwnwriter recon unixporn

Last synced: 27 Jan 2025

https://github.com/six2dez/dorks_hunter

Simple Google Dorks search tool

bugbounty dorks google hacking offensive osint pentest recon

Last synced: 29 Jan 2025

https://github.com/devanshbatham/Gorecon

Gorecon is a All in one Reconnaissance Tool , a.k.a swiss knife for Reconnaissance , A tool that every pentester/bughunter might wanna consider into their arsenal

admin-panel-finder backups-finder cmsdetecter configurationfiles crawler directory-bruteforce dns dnsrecon email-hunter geo-ip nameserver recon reconaissance reverse-dns scanner subdomain-enumeration subdomain-scanner subnet-lookup whois-lookup wordpress-scanner

Last synced: 04 Nov 2024

https://github.com/Micro0x00/Arsenal

Arsenal is a Simple shell script (Bash) used to install tools and requirements for Bug Bounty

bug-bounty bugbounty hacking infosec osint penetration-testing pentesting recon reconnaissance security-tools shell

Last synced: 09 Nov 2024

https://github.com/oryon-osint/querytool

Querytool is an OSINT framework based on Google Spreadsheet. With this tool you can perform complex search of terms, people, email addresses, files and many more.

email-lookup information-gathering lookup oryon-osint osint osint-framework osint-reconnaissance osint-resources osint-tools people-search recon reconnaissance username-lookup

Last synced: 11 Nov 2024

https://github.com/koenrh/s3enum

Fast and stealthy Amazon S3 bucket enumeration tool for pentesters.

amazon-s3 golang recon

Last synced: 29 Jan 2025

https://github.com/hkm/whoishere.py

WIFI Client Detection - Identify people by assigning a name to a device performing a wireless probe request.

cybercyber cyberpunk cybersecurity cyberweapon electronic-warfare intelligence intelligence-gathering recon reconaissance sigint wifi wifi-client-detection wifi-security

Last synced: 06 Nov 2024

https://github.com/Impact-I/x8-Burp

Hidden parameters discovery suite

api-testing bugbounty content-discovery parameter-discovery recon

Last synced: 21 Nov 2024

https://github.com/riza/linx

Reveals invisible links within JavaScript files

bugbounty infosec recon

Last synced: 01 Nov 2024

https://github.com/dirsoooo/Recon

Recon is a script to perform a full recon on a target with the main tools to search for vulnerabilities. Created based on @ofjaaah and @Jhaddix methodologies

dorks methodologies pentest recon vulnerabilities xss

Last synced: 21 Nov 2024

https://github.com/shivamrai2003/reconky-automated_bash_script

Reconky is an great Content Discovery bash script for bug bounty hunters which automate lot of task and organized in the well mannered form which help them to look forward.

automated-testing bash-script bugbounty bugbounty-tool bugbounty-tools enumeration exploitation hacking hacking-code nmap osint penetration-testing pentesting-tools recon recon-tools reconnaissance

Last synced: 26 Jan 2025

https://github.com/thevillagehacker/Bug-Hunting-Arsenal

The Repository contains various payloads, tools, tips and tricks from various hackers around the world. Please take a quick look down here πŸ‘‡πŸ‘‡

bug-hunting content-discovery google-dork naughty-strings pentest-master recon xss-payload xxe-payloads

Last synced: 21 Nov 2024

https://github.com/shubhampathak/autosetup

Auto setup is a bash script compatible with Debian based distributions to install and setup necessary programs.

autoinstall autosetup bash bugbounty debian infosec kali-linux linux post-installation postinstall recon reconnaissance script security shell ubuntu ubuntu-installation

Last synced: 21 Nov 2024

https://github.com/Talkaboutcybersecurity/GitMonitor

One way to continuously monitor sensitive information that could be exposed on Github

continuous cybersecurity github-scanning recon reconnaissance sensitive-data-exposure

Last synced: 21 Nov 2024

https://github.com/immunIT/TeamsUserEnum

User enumeration with Microsoft Teams API

enumeration go golang recon teams

Last synced: 21 Nov 2024

https://github.com/dhn/udon

A simple tool that helps to find assets/domains based on the Google Analytics ID.

bugbounty domain osint recon reconnaissance subdomain

Last synced: 21 Nov 2024

https://github.com/appsecco/spaces-finder

A tool to hunt for publicly accessible DigitalOcean Spaces

digitalocean-spaces infosec osint pentesting recon reconnaissance spaces-finder

Last synced: 27 Oct 2024

https://github.com/RossGeerlings/webstor

WebStor efficiently enumerates all websites across your organization’s networks and those in your DNS records - including cloud-hosted servers via zone transfer data - stores their responses, and lets you query for known web technologies, including those with zero-day vulnerabilities.

attack-surface bugbounty bugbounty-tool cybersecurity footprinting information-gathering infosec pentest-scripts pentest-tools pentesting pentesting-tools recon reconnaissance security security-tools

Last synced: 21 Nov 2024

https://github.com/clarketm/s3recon

Amazon S3 bucket finder and crawler.

crawler finder python recon s3 s3-bucket

Last synced: 30 Jan 2025

https://github.com/j3ssie/goverview

goverview - Get an overview of the list of URLs

browser bugbounty chromedp favicon favicon-generator infosec recon screenshot security

Last synced: 03 Jan 2025

https://github.com/Viralmaniar/XposedOrNot

XposedOrNot (XoN) tool is to search an aggregated repository of xposed passwords comprising of ~850 million real time passwords. Usage of such compromised passwords is detrimental to individual account security.

breach-compilation credentials-gathering intelligence-gathering osint osinttool password-breach password-leak penetration-testing-tools recon reconnaissance

Last synced: 21 Nov 2024

https://github.com/viralmaniar/xposedornot

XposedOrNot (XoN) tool is to search an aggregated repository of xposed passwords comprising of ~850 million real time passwords. Usage of such compromised passwords is detrimental to individual account security.

breach-compilation credentials-gathering intelligence-gathering osint osinttool password-breach password-leak penetration-testing-tools recon reconnaissance

Last synced: 10 Nov 2024

https://github.com/rotemreiss/uddup

Urls de-duplication tool for better recon.

bugbounty recon reconnaissance url url-parsing

Last synced: 21 Nov 2024

https://github.com/kh4sh3i/smartrecon

smartrecon is a powerful shell script to automate the recon and finding common vulnerabilities for bug hunter

bug-bounty-automation bugbounty dnsgen eyewitness feroxbuster hackerone hacking httprobe httpx massdns penetration-testing pentest pentest-scripts recon reconnaissance redteam shuffledns sqlmap subfinder tools

Last synced: 07 Nov 2024

https://github.com/0xdekster/deksterecon

Web Application recon automation

automation bugbounty recon security-tools whitehat-tools

Last synced: 21 Nov 2024

https://github.com/DonatoReis/Secbuild

An automation tool to install the most popular tools for bug bounty or pentesting.

automation blueteam bugbounty hacker installer pentest pentesting recon reconnaissance redteam

Last synced: 28 Nov 2024

https://github.com/midoxnet/mapperplus

MapperPlus facilitates the extraction of source code from a collection of targets that have publicly exposed .js.map files.

automation javascript map pentest recon security security-tools source sourcemapper

Last synced: 18 Jan 2025

https://github.com/leveryd-asm/asm

Scanner platform based on Kubernetes and Argo-Workflow 基于k8sε’Œargoε·₯δ½œζ΅ηš„ζ‰«ζε™¨

argo-workflow asm kubernetes recon scanner

Last synced: 06 Jan 2025

https://github.com/Fadavvi/Sub-Drill

A very (very) FAST and simple subdomain finder based on online & free services. Without any configuration requirements.

bug-bounty bugbounty recon reconnaissance red-team red-teaming subdomain subdomain-brute subdomain-bruteforcing subdomain-enumeration subdomain-finder web-recon web-reconnaissance

Last synced: 21 Nov 2024

https://github.com/BugBountyResources/targets

A collection of over 5.1 million sub-domains and assets belonging to public bug bounty programs, compiled into a repo, for performing bulk operations.

bugbounty cybersecurity information infosec recon reconnaissance security security-tools

Last synced: 21 Nov 2024

https://github.com/leobeosab/sharingan

Offensive Security recon tool

dns go nmap recon security

Last synced: 21 Nov 2024

https://github.com/samogod/bugradar

Advanced external automation on bug bounty programs by running the best set of tools to perform scanning and finding out vulnerabilities.

automation bounty bug bug-bounty bugbounty bugbounty-tool bugcrowd hackerone osint recon recontool security security-automation security-tools

Last synced: 21 Nov 2024

https://github.com/jimen0/fdns

Concurrent Rapid7 FDNS dataset parser

dataset enumeration fdns go golang recon subdomain

Last synced: 21 Nov 2024

https://github.com/p0dalirius/rdwatool

A python script to extract information from a Microsoft Remote Desktop Web Access (RDWA) application

active-directory domain python rdp rdwa recon web

Last synced: 30 Dec 2024

https://github.com/jordanpotti/offensiveclouddistribution

Leverage the ability of Terraform and AWS or GCP to distribute large security scans across numerous cloud instances.

bugbounty recon redteam scanning security

Last synced: 22 Jan 2025

https://github.com/zomato/vinifera

A GitHub recon/monitoring tool for finding internal leaks belonging to your organisation.

github recon security

Last synced: 14 Nov 2024

https://github.com/tarunkoyalwar/talosplus

Talosplus is a fast and robust template based Intelligent automation framework primarily developed for Bug Bounty Automation

automation automation-framework bash bashscripting bugbounty go golang infosec linux recon shell template-engine

Last synced: 27 Oct 2024

https://github.com/daudmalik06/reconcat

A small Php application to fetch archive url snapshots from archive.org. using it you can fetch complete list of snapshot urls of any year or complete list of all years possible. Made Specially for penetration testing purpose.

penetration-testing pentesting php recon reconnaissance wayback-archiver wayback-machine

Last synced: 28 Oct 2024

https://github.com/praetorian-inc/NTLMRecon

A tool for performing light brute-forcing of HTTP servers to identify commonly accessible NTLM authentication endpoints.

ntlm recon redteam

Last synced: 02 Jan 2025

https://github.com/praetorian-inc/ntlmrecon

A tool for performing light brute-forcing of HTTP servers to identify commonly accessible NTLM authentication endpoints.

ntlm recon redteam

Last synced: 09 Nov 2024

https://github.com/mathfaria/Layla

[EN] BETA: Layla - recon tool for bug bounty

bug-bounty footprint hacking recon

Last synced: 21 Nov 2024

https://github.com/blackhatethicalhacking/fetchmeurls

A Tool for Bug Bounty Hunters that uses Passive and Active Techniques to fetch URLs as a strong Recon, so you can then create Attack Vectors (XSS, Nuclei, SQLi etc...)

bugbounty bugbountytool recon reconnaissance

Last synced: 30 Jan 2025

https://github.com/tatsuya6502/recon_ex

Elixir wrapper for Recon, tools to diagnose Erlang VM safely in production

elixir erlang recon

Last synced: 30 Jan 2025

https://github.com/elfarsaouiomar/monitor-new-subdomain

MNS is a security and reconnaissance tool for monitoring new subdomains

bugbounty monitoring python3 recon subdomains

Last synced: 21 Nov 2024

https://github.com/Zarcolio/grepaddr

Use grepaddr to extract (grep) all kinds of addresses from stdin like URLs (incl. IPv4/IPv6), IP addresses & ranges (IPv4/IPv6), e-mail addresses, MAC addresses.

bugbounty command-line ctf ctf-tools e-mail extract grep-like hacking ip-addresses ipv4 ipv6 mac-address pentesting python python3 recon reconnaissance urls

Last synced: 06 Nov 2024

https://github.com/azathothas/arsenal

Hastly written Tools & Scripts for Personal Use Cases & Bug Bounties

bug-bounty bugbounty hacking recon recon-tools security security-tools tools

Last synced: 18 Nov 2024

https://github.com/wirzka/incursore

Incursore came from nmapAutomator to be your personal raider while you enumerate a target.

enum enumeration oscp pentesting pwk recon reconnaissance

Last synced: 19 Dec 2024

https://github.com/cosad3s/hfinder

Help recon of hostnames from specific ASN or CIDR, thanks to Robtex and BGP.HE

asn bugbounty cidr network osint recon

Last synced: 29 Jan 2025

https://github.com/gabamnml/hoper

Security tool to trace URL's jumps across the rel links to obtain the last URL

hoper recon redirects security security-audit security-scanner tool

Last synced: 09 Nov 2024

https://github.com/ko2sec/apkizer

apkizer is a mass downloader for android applications for all available versions.

android-application apk apkpure bugbounty recon reconnaissance

Last synced: 21 Nov 2024

https://github.com/rly0nheart/thorndyke

Lightweight username enumeration tool that checks the availability of a specified username on over 200 websites.

enumeration osint recon reconnaisance username username-checker username-enumeration username-search

Last synced: 30 Oct 2024

https://github.com/davemolk/gogetjs

a tool for extracting, searching, and saving JavaScript files (with optional headless browser)

extract go golang goquery hacking javascript osint parser pentesters playwright recon scraping

Last synced: 08 Dec 2024

https://github.com/m8sec/subwalker

Simultaneously execute various subdomain enumeration tools and aggregate results.

bugbounty recon subdomain-enumeration

Last synced: 19 Dec 2024