Active Filters:
📂 Reconnaissance and OSINT
Clear all filters

  Reconnaissance and OSINT

105 tools found

Showing 29-56 of 105 tool(s) in the category "Reconnaissance and OSINT"
Page 2 of 4
Cobra
Reconnaissance and OSINT

Cobra

All-in-one tool with pre-built Go and Python tools for easier hacking and reconnaissance.

D4TA-HUNTER
Reconnaissance and OSINT

D4TA-HUNTER

Automates information gathering on company employees for ethical hacking audits.

SCANNER-INURLBR
Reconnaissance and OSINT

SCANNER-INURLBR

PHP tool for advanced search engine queries, capturing and validating emails/URLs via GET/POST.

STRX
Reconnaissance and OSINT

STRX

Modular Linux string manipulation tool for OSINT, pentesting, and data analysis.

SecretOpt1c
Reconnaissance and OSINT

SecretOpt1c

Tool for Red Teams, Pentesters, and Bug Bounty Hunters that finds sensitive info on websites using active and passive techniques.

CHOMTE.SH
Reconnaissance and OSINT

CHOMTE.SH

Versatile framework for automated reconnaissance in pentesting, with scanning and reporting.

FOCA
Reconnaissance and OSINT

FOCA

Analyzes documents to extract metadata and hidden info from files like PDF, DOC, and more.

Katana
Reconnaissance and OSINT

Katana

Fast, configurable web crawler with Standard/Headless modes and JavaScript parsing.

Web Sherlock
Reconnaissance and OSINT

Web Sherlock

Web interface for username investigation across 400+ social media platforms.

Expired Domains
Reconnaissance and OSINT

Expired Domains

Search and analyze expired domains focusing on SEO, backlinks, and threat intelligence.

Sudomy
Reconnaissance and OSINT

Sudomy

Subdomain enumeration tool with advanced domain recon and OSINT capabilities.

Bounty Targets Data
Reconnaissance and OSINT

Bounty Targets Data

Collects HackerOne and Bugcrowd bounty scopes to aid recon and program targeting.

CloudFlare Origin IP
Reconnaissance and OSINT

CloudFlare Origin IP

Tries to discover the real origin IP of web apps protected by Cloudflare.

bbscope
Reconnaissance and OSINT

bbscope

Aggregates public bug bounty scopes for easier recon and efficient scope management.

WildCrawl
Reconnaissance and OSINT

WildCrawl

Bash script for deep target crawling: collects DNS, emails, IPs, titles, and file types.

WitnessMe
Reconnaissance and OSINT

WitnessMe

Web inventory tool using headless browser to capture and analyze websites.

GooFuzz
Reconnaissance and OSINT

GooFuzz

Bash script using advanced Google search for sensitive info without web requests.

Scilla
Reconnaissance and OSINT

Scilla

Information gathering tool: DNS, subdomains, ports, and directory enumeration.

adidnsdump
Reconnaissance and OSINT

adidnsdump

Tool to enumerate and export DNS records from Active Directory zones for reconnaissance.

LDAPDomainDump
Reconnaissance and OSINT

LDAPDomainDump

Collects and parses LDAP information from AD domains, exporting to human and machine-readable formats.

whatweb
Reconnaissance and OSINT

whatweb

Identifies website technologies, CMS, servers, libraries, and more, with over 1700 plugins.

GitMiner
Reconnaissance and OSINT

GitMiner

Advanced search and automation tool for code on GitHub.

FireShodanMap
Reconnaissance and OSINT

FireShodanMap

Real-time map of Shodan vulnerable devices, integrated with Firebase for analysis.

ScanCannon
Reconnaissance and OSINT

ScanCannon

Bash script for credential attack surface enumeration and large network reconnaissance.

Raccoon
Reconnaissance and OSINT

Raccoon

Offensive security tool for detailed reconnaissance and information gathering.

IntelSpy
Reconnaissance and OSINT

IntelSpy

Multi-threaded tool for automated network reconnaissance and service enumeration.

osintui
Reconnaissance and OSINT

osintui

Terminal user interface for performing Open Source Intelligence (OSINT) collection.

AttackSurfaceMapper
Reconnaissance and OSINT

AttackSurfaceMapper

Reconnaissance tool expanding attack surface using OSINT and active techniques.

GPT - RedTeam.Blue