All Projects → Fadavvi → Sub-Drill

Fadavvi / Sub-Drill

Licence: other
A very (very) FAST and simple subdomain finder based on online & free services. Without any configuration requirements.

Programming Languages

shell
77523 projects

Projects that are alternatives of or similar to Sub-Drill

Oneforall
OneForAll是一款功能强大的子域收集工具
Stars: ✭ 4,202 (+5902.86%)
Mutual labels:  subdomain, recon, bugbounty, subdomain-enumeration, subdomain-bruteforcing
tugarecon
Pentest: Subdomains enumeration tool for penetration testers.
Stars: ✭ 142 (+102.86%)
Mutual labels:  bug-bounty, recon, bugbounty, reconnaissance, subdomain-enumeration
Awesome Bbht
A bash script that will automatically install a list of bug hunting tools that I find interesting for recon, exploitation, etc. (minus burp) For Ubuntu/Debain.
Stars: ✭ 190 (+171.43%)
Mutual labels:  bug-bounty, recon, bugbounty, reconnaissance
Rengine
reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines, recon data correlation and organization, continuous monitoring, backed by a database, and simple yet intuitive User Interface. reNgine makes it easy for penetration testers to gather reconnaissance with…
Stars: ✭ 3,439 (+4812.86%)
Mutual labels:  bug-bounty, recon, bugbounty, reconnaissance
flydns
Related subdomains finder
Stars: ✭ 29 (-58.57%)
Mutual labels:  bug-bounty, recon, bugbounty, reconnaissance
Bigbountyrecon
BigBountyRecon tool utilises 58 different techniques using various Google dorks and open source tools to expedite the process of initial reconnaissance on the target organisation.
Stars: ✭ 541 (+672.86%)
Mutual labels:  recon, bugbounty, red-team, reconnaissance
Sudomy
Sudomy is a subdomain enumeration tool to collect subdomains and analyzing domains performing automated reconnaissance (recon) for bug hunting / pentesting
Stars: ✭ 1,572 (+2145.71%)
Mutual labels:  bugbounty, reconnaissance, subdomain-enumeration, subdomain-finder
Awesome Oneliner Bugbounty
A collection of awesome one-liner scripts especially for bug bounty tips.
Stars: ✭ 594 (+748.57%)
Mutual labels:  bug-bounty, recon, bugbounty
aquatone
A Tool for Domain Flyovers
Stars: ✭ 43 (-38.57%)
Mutual labels:  bug-bounty, bugbounty, reconnaissance
Sn0int
Semi-automatic OSINT framework and package manager
Stars: ✭ 814 (+1062.86%)
Mutual labels:  bug-bounty, recon, reconnaissance
Osmedeus
Fully automated offensive security framework for reconnaissance and vulnerability scanning
Stars: ✭ 3,391 (+4744.29%)
Mutual labels:  subdomain, bugbounty, reconnaissance
Git Hound
Reconnaissance tool for GitHub code search. Finds exposed API keys using pattern matching, commit history searching, and a unique result scoring system.
Stars: ✭ 602 (+760%)
Mutual labels:  bug-bounty, recon, reconnaissance
frida setup
One-click installer for Frida and Burp certs for SSL Pinning bypass
Stars: ✭ 47 (-32.86%)
Mutual labels:  bug-bounty, bugbounty, reconnaissance
sub404
A python tool to check subdomain takeover vulnerability
Stars: ✭ 205 (+192.86%)
Mutual labels:  subdomain, bug-bounty, bugbounty
Aiodnsbrute
Python 3.5+ DNS asynchronous brute force utility
Stars: ✭ 370 (+428.57%)
Mutual labels:  subdomain, recon, red-team
Subjack
Subdomain Takeover tool written in Go
Stars: ✭ 1,194 (+1605.71%)
Mutual labels:  subdomain, bug-bounty, bugbounty
Reconftw
reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities
Stars: ✭ 974 (+1291.43%)
Mutual labels:  subdomain, recon, bugbounty
vaf
Vaf is a cross-platform very advanced and fast web fuzzer written in nim
Stars: ✭ 294 (+320%)
Mutual labels:  bug-bounty, recon, bugbounty
Discover
Custom bash scripts used to automate various penetration testing tasks including recon, scanning, parsing, and creating malicious payloads and listeners with Metasploit.
Stars: ✭ 2,548 (+3540%)
Mutual labels:  recon, red-team, reconnaissance
Autorecon
Simple shell script for automated domain recognition with some tools
Stars: ✭ 244 (+248.57%)
Mutual labels:  recon, bugbounty, reconnaissance

Sub-Drill

A very [very] simple and pipe-able script for finding subdomains based on [free] online services without any dependency to API-keys for penetration testers and bug bounty hunters.

usage:

chmod +x Sub-Drill.sh

./Sub-Drill.sh [Domain.Com] [optional-output-file]

Used services:

  • threatcrowd
  • hackertarget
  • crt.sh
  • certspotter
  • spyse.com
  • bufferover.run [tls,dns]
  • urlscan.io
  • synapsint.com
  • jldc.me (anubis)
  • omnisint.io (SonarSearch)
  • alienvault [otx]
  • riddler.io
  • suip.biz [Amass,Subfinder]
  • rapiddns.io
  • web.archive.org
  • securitytrails.com

Dependencies:

  • Curl
  • jq
Note that the project description data, including the texts, logos, images, and/or trademarks, for each open source project belongs to its rightful owner. If you wish to add or remove any projects, please contact us at [email protected].