Category: Web Information Gathering
Raccoon Raccoon is a tool made for reconnaissance and information gathering with an emphasis on simplicity. It will do everything from fetching DNS records, retrieving WHOIS information, obtaining TLS data,...
raven Raven is a Linkedin information gathering tool that can be used by pentesters to gather information about organization employees using Linkedin. Please do not use this program to do...
gOSINT OSINT framework in Go you probably want to take a look at the develop branch for more updates. Introduction gOSINT is a small OSINT framework in Golang, if you...
GoAltdns GoAltdns is a permutation generation tool that can take a list of subdomains, permute them using a wordlist, insert indexes, numbers, dashes and increase your chance of finding that...
Twitter Intelligence A project is written in Python to twitter tracking and analysis without using Twitter API. Database SQLite is used as the database. Tweet data are stored on the...
tactical-exploitation I’ve always been a big proponent of a tactical approach to penetration testing that does not focus on exploiting known software vulnerabilities but relies on old-school techniques such as...
OWASP JoomScan Project OWASP Joomla! Vulnerability Scanner is an open source project, developed with the aim of automating the task of vulnerability detection and reliability assurance in Joomla CMS deployments....
Crips IP Tools This Tool is a collection of online IP Tools that can be used to quickly get information about IP Address‘s, Web Pages and DNS records. Menu Whois...
WebKiller Information Gathering Tool Write With Python. Function: 1 – Reverse IP With HackTarget 2 – Reverse IP With YouGetSignal 3 – Geo IP Lookup 4 – Whois 5 –...
CertGraph A tool to crawl the graph of certificate Alternate Names CertGraph crawls SSL certificates creating a directed graph where each domain is a node and the certificate alternative names...
scanless Command-line utility for using websites that can perform port scans on your behalf. Useful for early stages of a penetration test or if you’d like to run a port...
The Hamburglar Multithreaded and recursive directory scraping script. Stores useful information with the filepath and finding. All in one file, no external packages required! The Hamburglar can find ipv4 addresses...
linkScrape Enumerates employee names from LinkedIn.com Considerations: linkScrape is a pure Web Scraper, that does not utilize LinkedIn’s API. linkScrape has limitations/bugs when scraping some character sets. Your LinkedIn.com account...
Hawkeye HawkEye is a simple tool to crawl the filesystem or a directory looking for interesting stuff like SSH Keys, Log Files, SQLite Database, password files, etc. Hawkeye uses a...
S3Finder Yet another program to find readable S3 buckets. Can search using a wordlist or by monitoring the certstream network for domain names from certificate transparency logs. If a name...