The Internets #1 Subdomain Takeover Tool
☆311Jun 4, 2025Updated last year
Alternatives and similar repositories for Subdominator
Users that are interested in Subdominator are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Check subdomains for subdomain takeovers and other DNS tomfoolery☆443Updated this week
- SubDominator helps you discover subdomains associated with a target domain efficiently and with minimal impact for your Bug Bounty☆795Jun 21, 2026Updated last month
- An automation tool that enumerates subdomains then filters out xss, sqli, open redirect, lfi, ssrf and rce parameters and then scans for …☆1,292Jul 18, 2024Updated 2 years ago
- Pen Test Report Generation and Assessment Collaboration☆596Updated this week
- SessionProbe is a multi-threaded tool designed for penetration testing and bug bounty hunting. It evaluates user privileges in web applic…☆467Mar 28, 2024Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A tech enumeration toolkit focused on 404 Not found pages.☆29Oct 6, 2024Updated last year
- ☆28Jan 6, 2024Updated 2 years ago
- Curated UTF-8 URL-encoded character dictionary for injection testing, fuzzing, and bypass techniques against web applications and APIs, f…☆13Sep 20, 2021Updated 4 years ago
- Discover new target domains using Content Security Policy☆521Jun 23, 2026Updated 3 weeks ago
- A GO module to get domain name from SSL certificates when an IP address is provided.☆33Apr 14, 2023Updated 3 years ago
- This Burp extension extracts various data (path, parameter keys, parameter values, subdomains, etc.) from the sitemap. This data is used …☆45Sep 9, 2021Updated 4 years ago
- PolarDNS is a specialized authoritative DNS server suitable for penetration testing and vulnerability research.☆249Jul 8, 2025Updated last year
- my nuclei templates #new☆10Jun 24, 2024Updated 2 years ago
- SubSnipe is a tool designed to help find subdomains that are vulnerable to takeover.☆131Jan 28, 2025Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- The useful exploit finder☆828Jan 19, 2026Updated 6 months ago
- mx-takeover focuses DNS MX records and detects misconfigured MX records.☆361Jul 17, 2023Updated 3 years ago
- Cross-Site Scripting (XSS) is one of the most well known web application vulnerabilities. It even has a dedicated chapter in the OWASP To…☆12Jan 30, 2023Updated 3 years ago
- A collection of special paths linked to common sensitive APIs, devops internals, frameworks conf, known misconfigurations, juicy APIs ..e…☆1,187Apr 3, 2026Updated 3 months ago
- ☆25Jan 15, 2024Updated 2 years ago
- 「🔑」A tool used to hunt down API key leaks in JS files and pages☆920Mar 12, 2026Updated 4 months ago
- All-in Fuzzer. Burp suite extension for auto fuzzing params, headers, body☆36Apr 9, 2026Updated 3 months ago
- Extracts URLs from OSINT Archives for Security Insights☆189Updated this week
- ☆528Apr 29, 2024Updated 2 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- Seecurity helper tool to detect entry points of WordPress plugins☆10May 16, 2024Updated 2 years ago
- Use favicons to improve your target recon phase. Quickly detect technologies, WAF, exposed panels, known services.☆247Jul 10, 2026Updated last week
- A script to automatically dump all URLs present in /server-status to a file locally.☆24Feb 11, 2025Updated last year
- An IIS short filename enumeration tool☆1,205Nov 25, 2024Updated last year
- A simple Burp Suite extension to crawl JavaScript (JS) files in passive mode and display the results directly on the issues☆380Jul 25, 2023Updated 2 years ago
- Tool to parse subdomains from dmarc.live☆154Apr 19, 2024Updated 2 years ago
- A rapid HTTP downgrade smuggling scanner written in Go.☆314May 16, 2024Updated 2 years ago
- Modern CLI for exploring vulnerability data with powerful search, filtering, and analysis capabilities.☆2,593Updated this week
- dnsReaper - subdomain takeover tool for attackers, bug bounty hunters and the blue team!☆2,211Oct 6, 2025Updated 9 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Misconfig Mapper is a fast tool to help you uncover security misconfigurations on popular third-party services used by your company and/o…☆906Updated this week
- AssetViz simplifies the visualization of subdomains from input files, presenting them as a coherent mind map. Ideal for penetration test…☆38Feb 15, 2026Updated 5 months ago
- tool that generates bypasses for open redirects☆49Apr 18, 2022Updated 4 years ago
- A lightweight tool for orchestrating and organizing your bug hunting recon / pentesting command-line workflows☆307Sep 8, 2023Updated 2 years ago
- A tool for auditing endpoints defined in exposed (Swagger/OpenAPI) definition files.☆864Jul 9, 2026Updated last week
- uforall is a fast url crawler this tool crawl all URLs number of different sources, alienvault,WayBackMachine,urlscan,commoncrawl☆54Nov 3, 2025Updated 8 months ago
- Nuclei Templates☆14Jan 13, 2023Updated 3 years ago