Bug Bounty Reconnaissance Framework The Bug Bounty Reconnaissance Framework (BBRF) can be used to coordinate your reconnaissance...
Web Information Gathering
Goblob Goblob is a lightweight and fast enumeration tool designed to aid in the discovery of sensitive...
Afuzz – An automated web path fuzzing tool Afuzz is an automated web path fuzzing tool for...
Mantra The tool in question was created in Go and its main objective is to search for...
jsFinder jsFinder is a command-line tool written in Go that scans web pages to find JavaScript files...
cloudtoolkit Cloud Penetration Testing Toolkit Capability overview Providers Payload Supported Alibaba Cloud backdoor-user: Backdoored user can be...
LinkedInDumper Python 3 script to dump company employees from LinkedIn Voyager API. The results contain firstname, lastname,...
Scanner and Patcher This tool is very helpful for finding vulnerabilities present in Web Applications. A web...
debugHunter – Chrome Extension Discover hidden debugging parameters and uncover web application secrets with debugHunter. This Chrome...
Graphicator Graphicator is a GraphQL “scraper” / extractor. The tool iterates over the introspection document returned by...
jsleak It is an easy-to-use command-line tool designed to uncover secrets and links in JavaScript files or...
EndExt EndExt is a .go tool for extracting all the possible endpoints from the JS files Idea...
ReconAIzer ReconAIzer is a powerful Jython extension for Burp Suite that leverages OpenAI to help bug bounty...
Geogramint – OSINT Geolocalization tool for Telegram Geogramint is an OSINT tool that uses Telegram’s API to...
ScrapPY: PDF Scraping Made Easy ScrapPY is a Python utility for scraping manuals, documents, and other sensitive...