All Categories → Security → recon

Top 127 recon open source projects

Rock On
Rock-On is a all in one Recon tool that will just get a single entry of the Domain name and do all of the work alone.
Ntlmrecon
Enumerate information from NTLM authentication enabled web endpoints 🔎
Rengine
reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines, recon data correlation and organization, continuous monitoring, backed by a database, and simple yet intuitive User Interface. reNgine makes it easy for penetration testers to gather reconnaissance with…
Autorecon
Simple shell script for automated domain recognition with some tools
Sitedorks
Search Google/Bing/Ecosia/DuckDuckGo/Yandex/Yahoo for a search term with a default set of websites, bug bounty programs or a custom collection.
Phonia
Phonia Toolkit is one of the most advanced toolkits to scan phone numbers using only free resources. The goal is to first gather standard information such as country, area, carrier and line type on any international phone numbers with a very good accuracy.
Gorecon
Gorecon is a All in one Reconnaissance Tool , a.k.a swiss knife for Reconnaissance , A tool that every pentester/bughunter might wanna consider into their arsenal
Discover
Custom bash scripts used to automate various penetration testing tasks including recon, scanning, parsing, and creating malicious payloads and listeners with Metasploit.
Awesome Bbht
A bash script that will automatically install a list of bug hunting tools that I find interesting for recon, exploitation, etc. (minus burp) For Ubuntu/Debain.
3klcon
Automation Recon tool which works with Large & Medium scopes. It performs more than 20 tasks and gets back all the results in separated files.
Whoishere.py
WIFI Client Detection - Identify people by assigning a name to a device performing a wireless probe request.
Xrcross
XRCross is a Reconstruction, Scanner, and a tool for penetration / BugBounty testing. This tool was built to test (XSS|SSRF|CORS|SSTI|IDOR|RCE|LFI|SQLI) vulnerabilities
Recsech
Recsech is a tool for doing Footprinting and Reconnaissance on the target web. Recsech collects information such as DNS Information, Sub Domains, HoneySpot Detected, Subdomain takeovers, Reconnaissance On Github and much more you can see in Features in tools .
Url Tracker
Change monitoring app that checks the content of web pages in different periods.
Bbrecon
Python library and CLI for the Bug Bounty Recon API
Osint Tools
👀 Some of my favorite OSINT tools.
Striker
Striker is an offensive information and vulnerability scanner.
Autosetup
Auto setup is a bash script compatible with Debian based distributions to install and setup necessary programs.
Wprecon
WPrecon (WordPress Recon), is a vulnerability recognition tool in CMS Wordpress, developed in Go and with scripts in Lua.
Amass
In-depth Attack Surface Mapping and Asset Discovery
Autoenum
Automatic Service Enumeration Script
Reconness
ReconNess is a platform to allow continuous recon (CR) where you can set up a pipeline of #recon tools (Agents) and trigger it base on schedule or events.
H8mail
Email OSINT & Password breach hunting tool, locally or using premium services. Supports chasing down related email
Stardox
Github stargazers information gathering tool
Spaces Finder
A tool to hunt for publicly accessible DigitalOcean Spaces
S3enum
Fast Amazon S3 bucket enumeration tool for pentesters.
Goaltdns
A permutation generation tool written in golang
Grecon
Your Google Recon is Now Automated
Yotter
yotter - bash script that performs recon and then uses dirb to discover directories that might lead to information leakage
Gitmonitor
One way to continuously monitor sensitive information that could be exposed on Github
Deksterecon
Web Application recon automation
Uddup
Urls de-duplication tool for better recon.
Arl
ARL(Asset Reconnaissance Lighthouse)资产侦察灯塔系统旨在快速侦察与目标关联的互联网资产,构建基础资产信息库。 协助甲方安全团队或者渗透测试人员有效侦察和检索资产,发现存在的薄弱点和攻击面。
Winpwn
Automation for internal Windows Penetrationtest / AD-Security
Cloudfail
Utilize misconfigured DNS and old database records to find hidden IP's behind the CloudFlare network
Reconcat
A small Php application to fetch archive url snapshots from archive.org. using it you can fetch complete list of snapshot urls of any year or complete list of all years possible. Made Specially for penetration testing purpose.
Recondog
Reconnaissance Swiss Army Knife
Observer cli
Visualize Erlang/Elixir Nodes On The Command Line
Hoper
Security tool to trace URL's jumps across the rel links to obtain the last URL
Github Recon
GitHub Recon — and what you can achieve with it!
Awesome Asset Discovery
List of Awesome Asset Discovery Resources
Reconftw
reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities
Gitgot
Semi-automated, feedback-driven tool to rapidly search through troves of public data on GitHub for sensitive secrets.
Urlhunter
a recon tool that allows searching on URLs that are exposed via shortener services
Simplyemail
Email recon made fast and easy, with a framework to build on
Reconspider
🔎 Most Advanced Open Source Intelligence (OSINT) Framework for scanning IP Address, Emails, Websites, Organizations.
Awesome Oneliner Bugbounty
A collection of awesome one-liner scripts especially for bug bounty tips.
Git Hound
Reconnaissance tool for GitHub code search. Finds exposed API keys using pattern matching, commit history searching, and a unique result scoring system.
1-60 of 127 recon projects