⚡ ReconNinja v10.6.0— 38-phase recon framework for pentesters & bug bounty hunters. Subdomain enum → port scan → web recon → WAF/CORS/JS/cloud bucket detection → GitHub OSINT → CVE lookup → AI threat analysis → HTML report. Domains, IPs, CIDRs, target lists. Plugin system. 598 tests.
☆43Jun 23, 2026Updated 3 months ago
Alternatives and similar repositories for ReconNinja
Users that are interested in ReconNinja are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆13Dec 28, 2023Updated 2 years ago
- Kali Linux Polyglot Framework for Autonomous Pentesting/Cyber Security☆138Aug 16, 2026Updated last month
- PhishCollector is a research framework for collecting, analysing, and tracking phishing sites.☆23Mar 1, 2026Updated 7 months ago
- Modular OSINT and attack surface analysis platform for authorized security research, with risk scoring, attack paths, and report generati…☆87Jun 4, 2026Updated 4 months ago
- mattew crawls target websites, extracts hidden attack surface, runs security analysis, fingerprints technology, and generates professiona…☆16Jul 2, 2026Updated 3 months ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- A python-based vulnerability scanner designed to identify open redirect flaws in website applications.☆26Mar 15, 2026Updated 6 months ago
- Multi-agent AI system using GPT-4o, DeepSeek v3, and Llama 3.3 to detect if CVE vulnerabilities were exploited as zero-days. Analyzes…☆21Feb 13, 2026Updated 7 months ago
- THIS IS MY RESUME☆19Jun 17, 2022Updated 4 years ago
- BountyLens MCP server — connect Claude Code to your Hunter Tracker☆65Jun 22, 2026Updated 3 months ago
- AutoAR is an automated security reconnaissance tool, ASM and Discord bot for bug bounty hunters and penetration testers. It automates gat…☆252Updated this week
- An AI red-team agent for authorized labs and web app pentesting workflows. Turns Claude Code / OpenCode / Codex into a structured recon →…☆143Aug 2, 2026Updated 2 months ago
- Generate wordlists using pattern logic and expressions.☆23Jun 18, 2026Updated 3 months ago
- JS+ is a browser extension that captures JS URLs from specified domains and scans them with AI.☆24Mar 16, 2026Updated 6 months ago
- Burp Suite extension — passively detects secrets, API keys, credentials, JWTs & PII in HTTP traffic. 160+ detection rules, bulk scan, ent…☆56Aug 24, 2026Updated last month
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Open-source passive reconnaissance and exposure discovery tool that leverages VirusTotal and the Wayback Machine to uncover subdomains, U…☆145Sep 20, 2026Updated 2 weeks ago
- Prompt-injection guardrail for LLM applications. Compact model that outperforms larger open-source guards. No regex, no signatures. Demo:…☆80May 31, 2026Updated 4 months ago
- An extension to find callback endpoints in the background while searching the Web☆48Mar 26, 2026Updated 6 months ago
- Burp Suite extension for cross-identity & cross-tenant access-control testing — BAC, IDOR, BOLA, and privilege escalation.☆61Jul 12, 2026Updated 2 months ago
- Run TTPs, with AI!☆142Feb 23, 2026Updated 7 months ago
- KHAOS is a modern C2 framework that routes agent traffic through cloud services already trusted by enterprise networks.☆244Sep 15, 2026Updated 3 weeks ago
- Security AI helper for Caido: pipes your local Claude Code / Gemini / Codex / Copilot CLI through 18 MCP tools for manual web security te…☆42Sep 2, 2026Updated last month
- My Main App Hacking CheckList☆35Jun 20, 2026Updated 3 months ago
- 🎯 Chrome Extension - Passive scanner for Dependency Confusion vulnerabilities in npm/PyPI packages☆43Jan 31, 2026Updated 8 months ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- safer-dependencies is a security layer for Claude Code that audits packages before they’re added to your project. It detects and fixes ri…☆40Aug 31, 2026Updated last month
- TokenTwin Checker — Dual Token BAC/IDOR Tester for Burp Suite☆98Aug 24, 2026Updated last month
- APILEECH is a browser extension that functions as an API endpoint sniffer, capturing network requests to help users bypass limits and acc…☆16Mar 8, 2026Updated 7 months ago
- Thermal pocket printer - BLE protocol reverse engineering, Python CLI, and web GUI☆24Sep 4, 2026Updated last month
- 👁️ Uncover the unseen☆19Oct 2, 2026Updated last week
- High-performance OSINT/CTI framework for automated identity pivoting and risk analysis across 120+ sources.☆332May 6, 2026Updated 5 months ago
- ☆16Jun 26, 2025Updated last year
- Professional AWS pentest tool: IAM privilege escalation, S3 exploits, compute enumeration, detailed audit reports☆34May 2, 2026Updated 5 months ago
- Offensive Security Scripts (OSS) - Repository of random scripts I've written for offensive purposes.☆12Feb 21, 2025Updated last year
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- BLFS: Bitcoin Lightning For Shopify☆14Nov 18, 2025Updated 10 months ago
- ☆79May 5, 2025Updated last year
- 🔐 Chrome Extension - Detect hardcoded tokens, API keys & secrets in JavaScript files☆52Dec 15, 2025Updated 9 months ago
- Hacking Hotspots: Pre-Auth Remote Code Execution, Arbitrary SMS & Adjacent Attacks on 5G & 4G/LTE Routers☆104Jun 26, 2026Updated 3 months ago
- ☆204Jan 22, 2026Updated 8 months ago
- Burp_Suite-Antigravity_AI-Bug_Bounty_Hunter☆64Feb 9, 2026Updated 8 months ago
- ☆38Oct 16, 2025Updated 11 months ago