Category: Web Information Gathering
haxunit HaxUnit combines multiple active and passive subdomain enumeration tools and port scanning tools with vulnerability discovery tools. For each subdomain enumeration tool, you’ll be prompted to add the newly...
hakoriginfinder Tool for discovering the origin host behind a reverse proxy. Useful for bypassing WAFs and other reverse proxies. How does it work? This tool will first make an HTTP...
Infoooze Infoooze is an Information collection tool (OSINT) in NodeJs. It provides various modules that allow efficient searches. Features Insta Recon Subdomain Scanner Ports Scan User Recon Mail finder URL...
Reposaur Reposaur allows users and organizations to execute policies against GitHub data to generate reports, perform auditing, and more. The end-goal is to make it easy to perform such tasks...
DDWPasteRecon Pastesites are websites that allow users to share plain text through public posts called “pastes.” Once attackers compromise the external perimeter and gain access to the internal resources they...
Skanuvaty Dangerously fast dns/network/port scanner, all-in-one. Start with a domain, and we’ll find everything about it. Features: Finds subdomains from root domain Finds IPs for subdomains Checks what ports are...
Jbin website secret scraper Jbin will gather all the URLs from the website and then it will try to expose the secret data from them. It collects both URLs and...
DOME – A subdomain enumeration tool Dome is a fast and reliable python script that makes active and/or passive scans to obtain subdomains and search for open ports. This tool...
Reconator Reconator is a Framework for automating your process of reconnaissance without any Computing resource (Systemless Recon) free of cost. Its Purely designed to host on Heroku which is a...
git-dumper A tool to dump a git repository from a website. How does it work? The tool will first check if a directory listing is available. If it is, then...
RedJoust A quick and easy-to-use security reconnaissance webapp tool does OSINT, analysis, and red-teaming in both passive and active mode. Written in nodeJS and Electron. Status on whats done Boiler...
ShadowClone ShadowClone is designed to delegate time-consuming tasks to the cloud by distributing the input data to multiple serverless functions (AWS Lambda, Azure Functions, etc.) and running the tasks in...
Vinifera – Monitor Internal Leaks on Github Vinifera allows Companies/Organizations to monitor public assets to find references to internal code leaks and potential breaches. Sometimes developers might leak internal code...
Smap Smap is a replica of Nmap which uses shodan.io’s free API for port scanning. It takes the same command-line arguments as Nmap and produces the same output which makes...
JFScan The JFScan is a wrapper around a super-fast port scanner Masscan. It’s designed to simplify work when scanning for open ports on targets in mixed formats, including domain names....