Active Filters:
📂 Reconnaissance and OSINT
Clear all filters

  Reconnaissance and OSINT

95 tools found

Showing 1-28 of 95 tool(s) in the category "Reconnaissance and OSINT"
Page 1 of 4
MetaFinder
Reconnaissance and OSINT

MetaFinder

Searches domain documents via search engines to extract relevant metadata.

AAweRT
Reconnaissance and OSINT

AAweRT

Recon framework automating phases of info gathering and vulnerability assessment, with organized session folders for each run.

AlterX
Reconnaissance and OSINT

AlterX

Fast, customizable subdomain wordlist generator using Domain-Specific Language (DSL).

uncover
Reconnaissance and OSINT

uncover

Go wrapper using search engine APIs to discover exposed hosts on the internet for automation.

OSINT Tools
Reconnaissance and OSINT

OSINT Tools

Find subdomains online using 9 hosted tools like Sublist3r, Amass, Findomain, and more.

getallurls
Reconnaissance and OSINT

getallurls

Fetches known URLs for a domain from OTX, Wayback, Common Crawl, and URLScan.

TLDFinder
Reconnaissance and OSINT

TLDFinder

Streamlined tool to discover private TLDs for security research purposes.

cdncheck
Reconnaissance and OSINT

cdncheck

Identifies technologies linked to DNS/IP addresses for infrastructure reconnaissance.

asnmap
Reconnaissance and OSINT

asnmap

Go tool to quickly map organization networks using ASN information.

shuffledns
Reconnaissance and OSINT

shuffledns

Massdns wrapper for subdomain bruteforce and resolution with wildcard handling support.

Awesome Search Queries
Reconnaissance and OSINT

Awesome Search Queries

Community-driven list of OSINT queries for multiple search engines and research purposes.

fff
Reconnaissance and OSINT

fff

Fast URL fetcher sending parallel requests at intervals without waiting for responses.

waybackurls
Reconnaissance and OSINT

waybackurls

Fetches historical URLs for domains from the Wayback Machine for surface analysis.

assetfinder
Reconnaissance and OSINT

assetfinder

Finds domains and subdomains related to a target domain automatically.

httprobe
Reconnaissance and OSINT

httprobe

Probes a list of domains to identify which have active HTTP or HTTPS servers.

dishtance
Reconnaissance and OSINT

dishtance

Calculates the location where a photo/video with a satellite dish was taken.

Photon
Reconnaissance and OSINT

Photon

Extracts URLs, intel (emails, social media), files, secret keys, and DNS data during crawling.

Wappalyzer Next
Reconnaissance and OSINT

Wappalyzer Next

CLI tool and Python library for web technology detection using updated fingerprints.

Cobra
Reconnaissance and OSINT

Cobra

All-in-one tool with pre-built Go and Python tools for easier hacking and reconnaissance.

D4TA-HUNTER
Reconnaissance and OSINT

D4TA-HUNTER

Automates information gathering on company employees for ethical hacking audits.

SCANNER-INURLBR
Reconnaissance and OSINT

SCANNER-INURLBR

PHP tool for advanced search engine queries, capturing and validating emails/URLs via GET/POST.

STRX
Reconnaissance and OSINT

STRX

Modular Linux string manipulation tool for OSINT, pentesting, and data analysis.

SecretOpt1c
Reconnaissance and OSINT

SecretOpt1c

Tool for Red Teams, Pentesters, and Bug Bounty Hunters that finds sensitive info on websites using active and passive techniques.

CHOMTE.SH
Reconnaissance and OSINT

CHOMTE.SH

Versatile framework for automated reconnaissance in pentesting, with scanning and reporting.

FOCA
Reconnaissance and OSINT

FOCA

Analyzes documents to extract metadata and hidden info from files like PDF, DOC, and more.

Katana
Reconnaissance and OSINT

Katana

Fast, configurable web crawler with Standard/Headless modes and JavaScript parsing.

Web Sherlock
Reconnaissance and OSINT

Web Sherlock

Web interface for username investigation across 400+ social media platforms.

Expired Domains
Reconnaissance and OSINT

Expired Domains

Search and analyze expired domains focusing on SEO, backlinks, and threat intelligence.

GPT - RedTeam.Blue