SpiderFoot automates OSINT for threat intelligence and mapping your attack surface.
-
Updated
Apr 13, 2026 - Python
Reconnaissance refers to the process of gathering information about a target system, network, or organization, typically before launching an attack. The goal of recon is to understand the target’s vulnerabilities, systems, and defenses to increase the likelihood of a successful breach or to defend a network by identifying its weak points.
SpiderFoot automates OSINT for threat intelligence and mapping your attack surface.
E-mails, subdomains and names Harvester - OSINT
In-depth attack surface mapping and asset discovery
The recursive internet scanner for hackers. 🧡
OneForAll是一款功能强大的子域收集工具
reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines, recon data correlation and organization, continuous monitoring, backed by a database, and simple yet intuitive User Interface. reNgine makes it easy for penetration testers to gather reconnaissance with…
reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities
A modern platform for visual, flexible, and extensible graph-based investigations. For cybersecurity analysts and investigators.
Next generation web scanner
HTTP parameter discovery suite.
Official repository vuls Scan: 15000+PoCs; 23 kinds of application password crack; 7000+Web fingerprints; 146 protocols and 90000+ rules Port scanning; Fuzz, HW, awesome BugBounty( ͡° ͜ʖ ͡°)...
Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management
Email OSINT & Password breach hunting tool, locally or using premium services. Supports chasing down related email
Simple, fast web crawler designed for easy, quick discovery of endpoints and assets within a web application
AI-powered bug bounty hunting from your terminal - recon, 20 vuln classes, autonomous hunting, and report generation. All inside Claude Code.
📡 Comprehensive collection of OSINT tools for cybersecurity professionals, researchers, and bug bounty hunters. Topics: information gathering, reverse search, red team, trust & safety, AI.
Custom Bash and Python scripts used to automate various penetration testing tasks including recon, scanning, enumeration, and malicious payload creation using Metasploit. For use with Kali Linux and Ubuntu.
Take a list of domains, crawl urls and scan for endpoints, secrets, api keys, file extensions, tokens and more
Automation for internal Windows Penetrationtest / AD-Security
A collection of custom security tools for quick needs.