Awesome Open Source
Awesome Open Source
Combined Topics
recon
x
Advertising
📦 10
All Projects
Application Programming Interfaces
📦 124
Applications
📦 192
Artificial Intelligence
📦 78
Blockchain
📦 73
Build Tools
📦 113
Cloud Computing
📦 80
Code Quality
📦 28
Collaboration
📦 32
Command Line Interface
📦 49
Community
📦 83
Companies
📦 60
Compilers
📦 63
Computer Science
📦 80
Configuration Management
📦 42
Content Management
📦 175
Control Flow
📦 213
Data Formats
📦 78
Data Processing
📦 276
Data Storage
📦 135
Economics
📦 64
Frameworks
📦 215
Games
📦 129
Graphics
📦 110
Hardware
📦 152
Integrated Development Environments
📦 49
Learning Resources
📦 166
Legal
📦 29
Libraries
📦 129
Lists Of Projects
📦 22
Machine Learning
📦 347
Mapping
📦 64
Marketing
📦 15
Mathematics
📦 55
Media
📦 239
Messaging
📦 98
Networking
📦 315
Operating Systems
📦 89
Operations
📦 121
Package Managers
📦 55
Programming Languages
📦 245
Runtime Environments
📦 100
Science
📦 42
Security
📦 396
Social Media
📦 27
Software Architecture
📦 72
Software Development
📦 72
Software Performance
📦 58
Software Quality
📦 133
Text Editors
📦 49
Text Processing
📦 136
User Interface
📦 330
User Interface Components
📦 514
Version Control
📦 30
Virtualization
📦 71
Web Browsers
📦 42
Web Servers
📦 26
Web User Interface
📦 210
The Top 89 Recon Open Source Projects
Categories
>
Security
>
Recon
Amass
⭐
5,079
In-depth Attack Surface Mapping and Asset Discovery
Theharvester
⭐
5,076
E-mails, subdomains and names Harvester - OSINT
Oneforall
⭐
3,402
OneForAll是一款功能强大的子域收集工具
Whatweb
⭐
3,054
Next generation web scanner
Rengine
⭐
2,727
reNgine is a reconnaissance engine(framework) that does end-to-end reconnaissance with the help of highly configurable scan engines and does information gathering about the target web application. reNgine makes use of various open-source tools and makes a configurable pipeline of reconnaissance.
Arjun
⭐
2,385
HTTP parameter discovery suite.
Discover
⭐
2,296
Custom bash scripts used to automate various penetration testing tasks including recon, scanning, parsing, and creating malicious payloads and listeners with Metasploit.
Striker
⭐
1,734
Striker is an offensive information and vulnerability scanner.
H8mail
⭐
1,696
Email OSINT & Password breach hunting tool, locally or using premium services. Supports chasing down related email
Amass
⭐
1,660
In-depth Attack Surface Mapping and Asset Discovery
Arl
⭐
1,490
ARL(Asset Reconnaissance Lighthouse)资产侦察灯塔系统旨在快速侦察与目标关联的互联网资产,构建基础资产信息库。 协助甲方安全团队或者渗透测试人员有效侦察和检索资产,发现存在的薄弱点和攻击面。
Winpwn
⭐
1,362
Automation for internal Windows Penetrationtest / AD-Security
Cloudfail
⭐
1,268
Utilize misconfigured DNS and old database records to find hidden IP's behind the CloudFlare network
Reconftw
⭐
1,095
reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities
Recondog
⭐
1,094
Reconnaissance Swiss Army Knife
Observer_cli
⭐
1,071
Visualize Erlang/Elixir Nodes On The Command Line
Awesome Asset Discovery
⭐
1,046
List of Awesome Asset Discovery Resources
Gitgot
⭐
973
Semi-automated, feedback-driven tool to rapidly search through troves of public data on GitHub for sensitive secrets.
Urlhunter
⭐
948
a recon tool that allows searching on URLs that are exposed via shortener services
Sn0int
⭐
840
Semi-automatic OSINT framework and package manager
Simplyemail
⭐
783
Email recon made fast and easy, with a framework to build on
Awesome Oneliner Bugbounty
⭐
714
A collection of awesome one-liner scripts especially for bug bounty tips.
Zeus Scanner
⭐
710
Advanced reconnaissance utility
Reconspider
⭐
706
🔎 Most Advanced Open Source Intelligence (OSINT) Framework for scanning IP Address, Emails, Websites, Organizations.
Git Hound
⭐
623
Reconnaissance tool for GitHub code search. Finds exposed API keys using pattern matching, commit history searching, and a unique result scoring system.
Favfreak
⭐
583
Making Favicon.ico based Recon Great again !
Bigbountyrecon
⭐
557
BigBountyRecon tool utilises 58 different techniques using various Google dorks and open source tools to expedite the process of initial reconnaissance on the target organisation.
Reconpi
⭐
513
ReconPi - A lightweight recon tool that performs extensive scanning with the latest tools.
Odin
⭐
480
Automated network asset, email, and social media profile discovery and cataloguing.
Shotlooter
⭐
464
a recon tool that finds sensitive data inside the screenshots uploaded to prnt.sc
Hosthunter
⭐
462
HostHunter a recon tool for discovering hostnames using OSINT techniques.
Nullinux
⭐
452
Internal penetration testing tool for Linux that can be used to enumerate OS information, domain information, shares, directories, and users through SMB.
Sifter
⭐
437
Sifter aims to be a fully loaded Op Centre for Pentesters
Vajra
⭐
427
Vajra is a highly customizable target and scope based automated web hacking framework to automate boring recon tasks and same scans for multiple target during web applications penetration testing.
Buster
⭐
413
An advanced tool for email reconnaissance
Censys Subdomain Finder
⭐
410
⚡ Perform subdomain enumeration using the certificate transparency logs from Censys.
Dnsgen
⭐
399
Generates combination of domain names from the provided input.
Osint_team_links
⭐
386
Links for the OSINT Team
Aiodnsbrute
⭐
371
Python 3.5+ DNS asynchronous brute force utility
Zen
⭐
347
Find emails of Github users
Docker Onion Nmap
⭐
345
Scan .onion hidden services with nmap using Tor, proxychains and dnsmasq in a minimal alpine Docker container.
Natlas
⭐
338
Scaling Network Scanning. Changes prior to 1.0 may cause difficult to avoid backwards incompatibilities. You've been warned.
Reconnote
⭐
329
Web Application Security Automation Framework which recons the target for various assets to maximize the attack surface for security professionals & bug-hunters
Pulsar
⭐
320
Network footprint scanner platform. Discover domains and run your custom checks periodically.
Lazyrecon
⭐
289
An automated approach to performing recon for bug bounty hunting and penetration testing.
Meerkat
⭐
288
A collection of PowerShell modules designed for artifact gathering and reconnaisance of Windows-based endpoints.
Recon Pipeline
⭐
282
An automated target reconnaissance pipeline.
Wordlists
⭐
278
Infosec Wordlists
Recon My Way
⭐
276
This repository created for personal use and added tools from my latest blog post.
Megplus
⭐
272
Automated reconnaissance wrapper — TomNomNom's meg on steroids. [DEPRECATED]
3klcon
⭐
269
Automation Recon tool which works with Large & Medium scopes. It performs more than 20 tasks and gets back all the results in separated files.
Rock On
⭐
254
Rock-On is a all in one Recon tool that will just get a single entry of the Domain name and do all of the work alone.
Ntlmrecon
⭐
254
Enumerate information from NTLM authentication enabled web endpoints 🔎
Sitedorks
⭐
253
Search Google/Bing/Ecosia/DuckDuckGo/Yandex/Yahoo for a search term with a default set of websites, bug bounty programs or a custom collection. *** Help wanted with more lists ***
Autorecon
⭐
244
Simple shell script for automated domain recognition with some tools
Iky
⭐
241
OSINT Project
Puredns
⭐
225
puredns is a subdomain bruteforcing tool that improves massdns to accurately handle wildcard subdomains and DNS poisoning. Easy to use and to integrate into workflows, it ensures the results obtained by public resolvers are clean.
Phonia
⭐
221
Phonia Toolkit is one of the most advanced toolkits to scan phone numbers using only free resources. The goal is to first gather standard information such as country, area, carrier and line type on any international phone numbers with a very good accuracy.
Gorecon
⭐
216
Gorecon is a All in one Reconnaissance Tool , a.k.a swiss knife for Reconnaissance , A tool that every pentester/bughunter might wanna consider into their arsenal
Getjs
⭐
208
A tool to fastly get all javascript sources/files
Awesome Bbht
⭐
205
A bash script that will automatically install a list of bug hunting tools that I find interesting for recon, exploitation, etc. (minus burp) For Ubuntu/Debain.
Url Tracker
⭐
200
Change monitoring app that checks the content of web pages in different periods.
Whoishere.py
⭐
184
WIFI Client Detection - Identify people by assigning a name to a device performing a wireless probe request.
Intrec Pack
⭐
178
Intelligence and Reconnaissance Package/Bundle installer.
Xrcross
⭐
177
XRCross is a Reconstruction, Scanner, and a tool for penetration / BugBounty testing. This tool was built to test (XSS|SSRF|CORS|SSTI|IDOR|RCE|LFI|SQLI) vulnerabilities
Recsech
⭐
176
Recsech is a tool for doing Footprinting and Reconnaissance on the target web. Recsech collects information such as DNS Information, Sub Domains, HoneySpot Detected, Subdomain takeovers, Reconnaissance On Github and much more you can see in Features in tools .
Bbrecon
⭐
171
Python library and CLI for the Bug Bounty Recon API
Osint Tools
⭐
170
👀 Some of my favorite OSINT tools.
Siem
⭐
165
SIEM Tactics, Techiques, and Procedures
Reconness
⭐
147
ReconNess is a platform to allow continuous recon (CR) where you can set up a pipeline of #recon tools (Agents) and trigger it base on schedule or events.
Autosetup
⭐
141
Auto setup is a bash script compatible with Debian based distributions to install and setup necessary programs.
Wprecon
⭐
140
WPrecon (WordPress Recon), is a vulnerability recognition tool in CMS Wordpress, developed in Go and with scripts in Lua.
Autoenum
⭐
136
Automatic Service Enumeration Script
Stardox
⭐
132
Github stargazers information gathering tool
Scilla
⭐
132
Information Gathering tool - DNS / Subdomains / Ports / Directories enumeration
Grecon
⭐
126
Your Google Recon is Now Automated
Spaces Finder
⭐
123
A tool to hunt for publicly accessible DigitalOcean Spaces
Goaltdns
⭐
121
A permutation generation tool written in golang
S3enum
⭐
120
Fast Amazon S3 bucket enumeration tool for pentesters.
Bash_scripting
⭐
120
bash scripting thing !
Gitmonitor
⭐
119
One way to continuously monitor sensitive information that could be exposed on Github
Yotter
⭐
118
yotter - bash script that performs recon and then uses dirb to discover directories that might lead to information leakage
Deksterecon
⭐
110
Web Application recon automation
Uddup
⭐
108
Urls de-duplication tool for better recon.
Oscp Prep
⭐
105
my oscp prep collection
Bugbounty Starter Notes
⭐
89
bug bounty hunters starter notes
Reconcat
⭐
67
A small Php application to fetch archive url snapshots from archive.org. using it you can fetch complete list of snapshot urls of any year or complete list of all years possible. Made Specially for penetration testing purpose.
Hoper
⭐
50
Security tool to trace URL's jumps across the rel links to obtain the last URL
Github Recon
⭐
48
GitHub Recon — and what you can achieve with it!
1-89 of 89 projects
Advertising
📦 10
All Projects
Application Programming Interfaces
📦 124
Applications
📦 192
Artificial Intelligence
📦 78
Blockchain
📦 73
Build Tools
📦 113
Cloud Computing
📦 80
Code Quality
📦 28
Collaboration
📦 32
Command Line Interface
📦 49
Community
📦 83
Companies
📦 60
Compilers
📦 63
Computer Science
📦 80
Configuration Management
📦 42
Content Management
📦 175
Control Flow
📦 213
Data Formats
📦 78
Data Processing
📦 276
Data Storage
📦 135
Economics
📦 64
Frameworks
📦 215
Games
📦 129
Graphics
📦 110
Hardware
📦 152
Integrated Development Environments
📦 49
Learning Resources
📦 166
Legal
📦 29
Libraries
📦 129
Lists Of Projects
📦 22
Machine Learning
📦 347
Mapping
📦 64
Marketing
📦 15
Mathematics
📦 55
Media
📦 239
Messaging
📦 98
Networking
📦 315
Operating Systems
📦 89
Operations
📦 121
Package Managers
📦 55
Programming Languages
📦 245
Runtime Environments
📦 100
Science
📦 42
Security
📦 396
Social Media
📦 27
Software Architecture
📦 72
Software Development
📦 72
Software Performance
📦 58
Software Quality
📦 133
Text Editors
📦 49
Text Processing
📦 136
User Interface
📦 330
User Interface Components
📦 514
Version Control
📦 30
Virtualization
📦 71
Web Browsers
📦 42
Web Servers
📦 26
Web User Interface
📦 210