β‘·β πππππ ππΈβ β’Ύ is a Passive Open Source Intelligence (OSINT) Automated Reconnaissance (framework)
β1,031May 21, 2025Updated last year
Alternatives and similar repositories for karma_v2
Users that are interested in karma_v2 are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Small tool to Grab subdomains using Shodan api.β581Sep 1, 2025Updated last year
- β534Apr 29, 2024Updated 2 years ago
- 403/401 Bypass Methods + Bash Automation + Your Support ;)β1,673Jun 6, 2022Updated 4 years ago
- A python tool used to discover endpoints, potential parameters, a target specific wordlist for a given target and secretsβ1,592Mar 8, 2026Updated 6 months ago
- Burp Extension to find potential endpoints, parameters, and generate a custom target wordlistβ1,532Jan 8, 2026Updated 8 months ago
- GPU virtual machines on DigitalOcean Gradient AI β’ AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Find way more from the Wayback Machine, Common Crawl, Alien Vault OTX, URLScan, VirusTotal, GhostArchive & Intelligence X!β2,756Jun 11, 2026Updated 3 months ago
- Community edition nuclei templates, a simple tool that allows you to organize all the Nuclei templates offered by the community in one plβ¦β1,047Jun 6, 2026Updated 3 months ago
- declutters url lists for crawling/pentestingβ1,595Feb 23, 2025Updated last year
- Extract URLs, paths, secrets, and other interesting bits from JavaScriptβ1,936May 22, 2024Updated 2 years ago
- reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and findinβ¦β8,151Updated this week
- Gotator is a tool to generate DNS wordlists through permutations.β535Jul 17, 2022Updated 4 years ago
- Automation for javascript recon in bug bounty.β1,112Sep 9, 2023Updated 3 years ago
- The Bug Bounty Reconnaissance Framework (BBRF) can help you coordinate your reconnaissance workflows across multiple devicesβ649Jul 7, 2025Updated last year
- Puredns is a fast domain resolver and subdomain bruteforcing tool that can accurately filter out wildcard subdomains and DNS poisoned entβ¦β2,244Feb 23, 2026Updated 7 months ago
- Virtual machines for every use case on DigitalOcean β’ AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Rockyou for web fuzzingβ3,248Updated this week
- Tool for discovering the origin host behind a reverse proxy. Useful for bypassing cloud WAFs!β1,107Aug 5, 2026Updated last month
- Mining URLs from dark corners of Web Archives for bug hunting/fuzzing/further probingβ3,177Mar 7, 2026Updated 6 months ago
- Find subdomains on GitHub.β870Mar 28, 2023Updated 3 years ago
- A tool to quickly do keyword searches over Gitlab and Github for OSINT & bug bounty reconβ249Oct 20, 2023Updated 2 years ago
- User-Agent , X-Forwarded-For and Referer SQLI Fuzzerβ388May 19, 2023Updated 3 years ago
- Scope aggregation tool for HackerOne, Bugcrowd, Intigriti, YesWeHack, and Immunefi!β1,445Sep 2, 2026Updated 3 weeks ago
- Scrape domain names from SSL certificates of arbitrary hostsβ693Mar 31, 2024Updated 2 years ago
- A repository that includes all the important wordlists used while bug hunting.β1,435Mar 11, 2023Updated 3 years ago
- GPU virtual machines on DigitalOcean Gradient AI β’ AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Python tool that probes websites for open redirection via headers, JavaScript, and meta-tag refresh, pulls candidate URLs from the Waybacβ¦β827Updated this week
- ππ¦ Dalfox is a powerful open-source XSS scanner and utility focused on automation.β5,306Updated this week
- Web Cache Vulnerability Scanner is a Go-based CLI tool for testing for web cache poisoning. It is developed by Hackmanit GmbH (http://hacβ¦β1,207Jan 21, 2026Updated 8 months ago
- An automated SSRF finder. Just give the domain name and your server and chill! ;) Also has options to find XSS and open redirectsβ969Dec 8, 2021Updated 4 years ago
- Keyhacks is a repository which shows quick ways in which API keys leaked by a bug bounty program can be checked to see if they're valid.β6,345Aug 7, 2026Updated last month
- Making Favicon.ico based Recon Great again !β1,309Aug 29, 2023Updated 3 years ago
- CT Log Scannerβ594Dec 26, 2025Updated 9 months ago
- Automating XSS using Bashβ362Jan 27, 2026Updated 8 months ago
- A collection of special paths linked to common sensitive APIs, devops internals, frameworks conf, known misconfigurations, juicy APIs ..eβ¦β1,193Apr 3, 2026Updated 5 months ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits β’ AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Javascript security analysis (JSA) is a program for javascript analysis during web application security assessment.β567Mar 8, 2025Updated last year
- GF Paterns For (ssrf,RCE,Lfi,sqli,ssti,idor,url redirection,debug_logic, interesting Subs) parameters grepβ1,456Sep 13, 2024Updated 2 years ago
- This tool will check for Sensitive Data Leakage with some useful patterns/RegEx. The patterns are mostly targeted on waybackdata and filtβ¦β231May 20, 2025Updated last year
- Automated tool for domains & subdomains gatheringβ192Jan 30, 2026Updated 7 months ago
- BBT - Bug Bounty Tools (examplesπ‘)β1,911Apr 5, 2024Updated 2 years ago
- Automation Recon tool which works with Large & Medium scopes. It performs a lot of tasks and gets back all the results in separated filesβ¦β687Jul 15, 2024Updated 2 years ago
- An automation tool that scans sub-domains, sub-domain takeover, then filters out XSS, SSTI, SSRF, and more injection point parameters andβ¦β810May 11, 2026Updated 4 months ago