DiscoverCustom bash scripts used to automate various penetration testing tasks including recon, scanning, parsing, and creating malicious payloads and listeners with Metasploit.
Stars: ✭ 2,548 (+665.17%)
RenginereNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines, recon data correlation and organization, continuous monitoring, backed by a database, and simple yet intuitive User Interface. reNgine makes it easy for penetration testers to gather reconnaissance with…
Stars: ✭ 3,439 (+932.73%)
AsnlookupLeverage ASN to look up IP addresses (IPv4 & IPv6) owned by a specific organization for reconnaissance purposes, then run port scanning on it.
Stars: ✭ 163 (-51.05%)
targetsA collection of over 5.1 million sub-domains and assets belonging to public bug bounty programs, compiled into a repo, for performing bulk operations.
Stars: ✭ 85 (-74.47%)
tugareconPentest: Subdomains enumeration tool for penetration testers.
Stars: ✭ 142 (-57.36%)
flydnsRelated subdomains finder
Stars: ✭ 29 (-91.29%)
AutosetupAuto setup is a bash script compatible with Debian based distributions to install and setup necessary programs.
Stars: ✭ 140 (-57.96%)
Spaces FinderA tool to hunt for publicly accessible DigitalOcean Spaces
Stars: ✭ 122 (-63.36%)
MegplusAutomated reconnaissance wrapper — TomNomNom's meg on steroids. [DEPRECATED]
Stars: ✭ 268 (-19.52%)
Reconky-Automated Bash ScriptReconky is an great Content Discovery bash script for bug bounty hunters which automate lot of task and organized in the well mannered form which help them to look forward.
Stars: ✭ 167 (-49.85%)
Recon My WayThis repository created for personal use and added tools from my latest blog post.
Stars: ✭ 271 (-18.62%)
WordlistsInfosec Wordlists
Stars: ✭ 271 (-18.62%)
NtlmreconEnumerate information from NTLM authentication enabled web endpoints 🔎
Stars: ✭ 252 (-24.32%)
NmapIdiomatic nmap library for go developers
Stars: ✭ 391 (+17.42%)
WebmapWebMap-Nmap Web Dashboard and Reporting
Stars: ✭ 357 (+7.21%)
SpiderfootSpiderFoot automates OSINT for threat intelligence and mapping your attack surface.
Stars: ✭ 6,882 (+1966.67%)
GorsairGorsair hacks its way into remote docker containers that expose their APIs
Stars: ✭ 678 (+103.6%)
Pyiris BackdoorPyIris-backdoor is a modular, stealthy and flexible remote-access-toolkit written completely in python used to command and control other systems. It is now in the beta stage, possibly perpetually. There are bugs still present in the framework, feel free to contribute or help me out with this project its still under active development >_>
Stars: ✭ 145 (-56.46%)
YarYar is a tool for plunderin' organizations, users and/or repositories.
Stars: ✭ 174 (-47.75%)
IkyOSINT Project
Stars: ✭ 203 (-39.04%)
Recon-XAdvanced Reconnaissance tool to enumerate attacking surface of the target.
Stars: ✭ 27 (-91.89%)
PyIrisPyIris is a modular remote access trojan toolkit written in python targeting Windows and Linux systems.
Stars: ✭ 296 (-11.11%)
fuzzmostall manner of wordlists
Stars: ✭ 23 (-93.09%)
ShonyDanzaA customizable, easy-to-navigate tool for researching, pen testing, and defending with the power of Shodan.
Stars: ✭ 86 (-74.17%)
AutoreconSimple shell script for automated domain recognition with some tools
Stars: ✭ 244 (-26.73%)
OsmedeusFully automated offensive security framework for reconnaissance and vulnerability scanning
Stars: ✭ 3,391 (+918.32%)
Awesome BbhtA bash script that will automatically install a list of bug hunting tools that I find interesting for recon, exploitation, etc. (minus burp) For Ubuntu/Debain.
Stars: ✭ 190 (-42.94%)
apkizerapkizer is a mass downloader for android applications for all available versions.
Stars: ✭ 40 (-87.99%)
easyreconTool to automate recon
Stars: ✭ 37 (-88.89%)
BusterAn advanced tool for email reconnaissance
Stars: ✭ 387 (+16.22%)
GetjsA tool to fastly get all javascript sources/files
Stars: ✭ 190 (-42.94%)
LazyreconAn automated approach to performing recon for bug bounty hunting and penetration testing.
Stars: ✭ 282 (-15.32%)
goverviewgoverview - Get an overview of the list of URLs
Stars: ✭ 93 (-72.07%)
adalancheActive Directory ACL Visualizer and Explorer - who's really Domain Admin?
Stars: ✭ 862 (+158.86%)
mailcatFind existing email addresses by nickname using API/SMTP checking methods without user notification. Please, don't hesitate to improve cat's job! 🐱🔎 📬
Stars: ✭ 219 (-34.23%)
GoaltdnsA permutation generation tool written in golang
Stars: ✭ 119 (-64.26%)
sx🖖 Fast, modern, easy-to-use network scanner
Stars: ✭ 1,267 (+280.48%)
3klconAutomation Recon tool which works with Large & Medium scopes. It performs more than 20 tasks and gets back all the results in separated files.
Stars: ✭ 189 (-43.24%)
osmedeus-workflowCommunity Workflow for the Osmedeus Engine that describes basic reconnaissance methodology for you to build your own
Stars: ✭ 26 (-92.19%)
XposedOrNotXposedOrNot (XoN) tool is to search an aggregated repository of xposed passwords comprising of ~850 million real time passwords. Usage of such compromised passwords is detrimental to individual account security.
Stars: ✭ 120 (-63.96%)
sharinganOffensive Security recon tool
Stars: ✭ 88 (-73.57%)
webreconAutomated Web Recon Shell Scripts
Stars: ✭ 48 (-85.59%)
sgCheckupsgCheckup generates nmap output based on scanning your AWS Security Groups for unexpected open ports.
Stars: ✭ 77 (-76.88%)
OctopusOctopus - Network Scan/Infos & Web Scan
Stars: ✭ 25 (-92.49%)
Sub-DrillA very (very) FAST and simple subdomain finder based on online & free services. Without any configuration requirements.
Stars: ✭ 70 (-78.98%)
ArgosThis script will automatically set up an OSINT workstation starting from a Ubuntu OS.
Stars: ✭ 73 (-78.08%)
rest-apiREST API backend for Reconmap
Stars: ✭ 48 (-85.59%)
querytoolQuerytool is an OSINT framework based on Google Spreadsheets. With this tool you can perform complex search of terms, people, email addresses, files and many more.
Stars: ✭ 104 (-68.77%)
FaradayFaraday introduces a new concept - IPE (Integrated Penetration-Test Environment) a multiuser Penetration test IDE. Designed for distributing, indexing, and analyzing the data generated during a security audit.
Stars: ✭ 3,198 (+860.36%)
OffensiveCloudDistributionLeverage the ability of Terraform and AWS or GCP to distribute large security scans across numerous cloud instances.
Stars: ✭ 86 (-74.17%)
Recon PipelineAn automated target reconnaissance pipeline.
Stars: ✭ 278 (-16.52%)
RecsechRecsech is a tool for doing Footprinting and Reconnaissance on the target web. Recsech collects information such as DNS Information, Sub Domains, HoneySpot Detected, Subdomain takeovers, Reconnaissance On Github and much more you can see in Features in tools .
Stars: ✭ 173 (-48.05%)
Intrec PackIntelligence and Reconnaissance Package/Bundle installer.
Stars: ✭ 177 (-46.85%)
CEHExam Prep for the Ec-council Certified Ethical Hacker 312-50
Stars: ✭ 71 (-78.68%)
asnapasnap aims to render recon phase easier by providing updated data about which companies owns which ipv4 or ipv6 addresses and allows the user to automate initial port and service scanning.
Stars: ✭ 28 (-91.59%)
aquatoneA Tool for Domain Flyovers
Stars: ✭ 43 (-87.09%)