Links for the OSINT Team
-
Updated
Oct 8, 2022
Links for the OSINT Team
Rock-On is a all in one Recon tool that will just get a single entry of the Domain name and do all of the work alone.
Gorecon is a All in one Reconnaissance Tool , a.k.a swiss knife for Reconnaissance , A tool that every pentester/bughunter might wanna consider into their arsenal
WIFI Client Detection - Identify people by assigning a name to a device performing a wireless probe request.
WebExtractor is a powerful OSINT and ethical hacking tool developed in Python. It is used to extract email addresses, phone numbers, and links from a target website
An implementation of PyADRecon using ADWS instead of LDAP. Generates individual CSV files and a single XSLX + HTML report about your AD domain. Evades EDR detections through ADWS.
reconnaissance for agent attack surfaces
A tool to discover ASN of any host and fetch IP ranges.
ReconHound is Best OSINT Tool For Enumeration We've Given 10 Different Type Of Enumeration Sub Tools Its Recon Framework Based On Api
Suijin is an open-source fully autonomous red teaming / web app pentesting framework for AI models. Powered by LangGraph, designed for bug bounty hunters and CTF players.
Finding subdomain using subfinder
This is a Python script that provides the ability to perform: Check all NS Records for Zone Transfers. Enumerate General DNS Records for a given Domain (MX, SOA, NS, A, AAAA, SPF and TXT). Perform common SRV Record Enumeration. Top Level Domain (TLD) Expansion.
Favicon based recon for faster fingerprinting of web services
OSINT Framework
WhoisX is a powerful WHOIS lookup tool written in C. It is designed to be more reliable and flexible than normal whois tools.
Various OSINT data and info related to the air fleet operated by the RCMP
A customized reconaissance automation tool written in Rust.
A curated registry of chinese military aircrafts meant for military intelligence or OSINT.
A powerful OSINT utility for manual and automated Google dorking, featuring 14 search categories, export options, and a user-friendly interface.
Find vulnerable modules inside packed files (bundles)
To associate your repository with the reconaissance topic, visit your repo's landing page and select "manage topics."