There are 79 repositories under recon topic.
E-mails, subdomains and names Harvester - OSINT
reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines, recon data correlation and organization, continuous monitoring, backed by a database, and simple yet intuitive User Interface. reNgine makes it easy for penetration testers to gather reconnaissance with minimal configuration and with the help of reNgine's correlation, it just makes recon effortless.
Next generation web scanner
Simple, fast web crawler designed for easy, quick discovery of endpoints and assets within a web application
reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities
ARL(Asset Reconnaissance Lighthouse)资产侦察灯塔系统旨在快速侦察与目标关联的互联网资产,构建基础资产信息库。 协助甲方安全团队或者渗透测试人员有效侦察和检索资产,发现存在的薄弱点和攻击面。
Custom bash scripts used to automate various penetration testing tasks including recon, scanning, enumeration, and malicious payload creation using Metasploit. For use with Kali Linux.
vuls Scan: 15000+PoCs; 23 kinds of application password crack; 7000+Web fingerprints; 146 protocols and 90000+ rules Port scanning; Fuzz, HW, awesome BugBounty( ͡° ͜ʖ ͡°)...
Email OSINT & Password breach hunting tool, locally or using premium services. Supports chasing down related email
Automation for internal Windows Penetrationtest / AD-Security
Utilize misconfigured DNS and old database records to find hidden IP's behind the CloudFlare network
A collection of awesome one-liner scripts especially for bug bounty tips.
List of Awesome Asset Discovery Resources
🔎 Most Advanced Open Source Intelligence (OSINT) Framework for scanning IP Address, Emails, Websites, Organizations.
a recon tool that allows searching on URLs that are exposed via shortener services
Semi-automated, feedback-driven tool to rapidly search through troves of public data on GitHub for sensitive secrets.
Visualize Erlang/Elixir Nodes On The Command Line
:vulcan_salute: Fast, modern, easy-to-use network scanner
Reconnaissance tool for GitHub code search. Finds exposed API keys using pattern matching, commit history searching, and a unique result scoring system.
Email recon made fast and easy, with a framework to build on
Puredns is a fast domain resolver and subdomain bruteforcing tool that can accurately filter out wildcard subdomains and DNS poisoned entries.
BigBountyRecon tool utilises 58 different techniques using various Google dorks and open source tools to expedite the process of initial reconnaissance on the target organisation.
Advanced reconnaissance utility
Making Favicon.ico based Recon Great again !
HostHunter a recon tool for discovering hostnames using OSINT techniques.
ReconPi - A lightweight recon tool that performs extensive scanning with the latest tools.
ASN / RPKI validity / BGP stats / IPv4v6 / Prefix / URL / ASPath / Organization / IP reputation / IP geolocation / IP fingerprinting / Network recon / lookup API server / Web traceroute server