IP lookup by favicon using Shodan
☆1,189Feb 5, 2025Updated last year
Alternatives and similar repositories for fav-up
Users that are interested in fav-up are comparing it to the libraries listed below
Sorting:
- Making Favicon.ico based Recon Great again !☆1,268Aug 29, 2023Updated 2 years ago
- gitGraber: monitor GitHub to search and find sensitive data in real time for different online services such as: Google, Amazon, Paypal, G…☆2,250Jun 10, 2025Updated 9 months ago
- Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that allows you, in a quick and simple way, to improve the ac…☆1,779Apr 26, 2024Updated last year
- The fastest and complete solution for domain recognition. Supports screenshoting, port scan, HTTP check, data import from other tools, su…☆3,693Updated this week
- Keyhacks is a repository which shows quick ways in which API keys leaked by a bug bounty program can be checked to see if they're valid.☆6,089Aug 14, 2024Updated last year
- The dynamic infrastructure framework for everybody! Distribute the workload of many different scanning tools with ease, including nmap, f…☆4,352Sep 30, 2024Updated last year
- A collection of tools to perform searches on GitHub.☆1,468Feb 9, 2023Updated 3 years ago
- The Swiss Army knife for automated Web Application Testing☆2,323May 8, 2024Updated last year
- DNSGen is a powerful and flexible DNS name permutation tool designed for security researchers and penetration testers. It generates intel…☆1,054Jan 3, 2025Updated last year
- HTTP parameter discovery suite.☆6,109Feb 20, 2025Updated last year
- A Tool for Domain Flyovers☆5,904May 22, 2022Updated 3 years ago
- Mass scan IPs for vulnerable services☆1,045Feb 17, 2022Updated 4 years ago
- Collection of Scripts for shodan searching stuff.☆1,139Jan 14, 2026Updated last month
- 🔎 Find origin servers of websites behind CloudFlare by using Internet-wide scan data from Censys.☆2,940May 1, 2025Updated 10 months ago
- OSINT tools and more but without API key☆1,484Feb 15, 2026Updated 3 weeks ago
- Smuggler - An HTTP Request Smuggling / Desync testing tool written in Python 3☆2,062Jan 2, 2024Updated 2 years ago
- Tool for discovering the origin host behind a reverse proxy. Useful for bypassing cloud WAFs!☆985Jan 12, 2024Updated 2 years ago
- Generates permutations, alterations and mutations of subdomains and then resolves them☆2,477Jan 9, 2025Updated last year
- secretz, minimizing the large attack surface of Travis CI☆324May 30, 2022Updated 3 years ago
- A python script that finds endpoints in JavaScript files☆4,297Apr 13, 2024Updated last year
- List DTDs and generate XXE payloads using those local DTDs.☆649Feb 21, 2024Updated 2 years ago
- ASN target organization IP range attack surface mapping for reconnaissance, fast and lightweight☆220Apr 10, 2022Updated 3 years ago
- Semi-automated, feedback-driven tool to rapidly search through troves of public data on GitHub for sensitive secrets.☆1,548Mar 7, 2024Updated 2 years ago
- File upload vulnerability scanner and exploitation tool.☆3,302May 8, 2025Updated 10 months ago
- SecretFinder - A python script for find sensitive data (apikeys, accesstoken,jwt,..) and search anything on javascript files☆2,399May 26, 2024Updated last year
- 🔍 A collection of interesting, funny, and depressing search queries to plug into shodan.io 👩💻☆7,247May 27, 2024Updated last year
- GF Paterns For (ssrf,RCE,Lfi,sqli,ssti,idor,url redirection,debug_logic, interesting Subs) parameters grep☆1,401Sep 13, 2024Updated last year
- Quick SQLMap Tamper Suggester☆1,399Jul 18, 2022Updated 3 years ago
- CloudBunny is a tool to capture the real IP of the server that uses a WAF as a proxy or protection. In this tool we used three search eng…☆376Feb 4, 2024Updated 2 years ago
- Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl.☆4,842Jan 1, 2025Updated last year
- A collection of hacks and one-off scripts☆2,423Mar 13, 2025Updated 11 months ago
- Sublert is a security and reconnaissance tool which leverages certificate transparency to automatically monitor new subdomains deployed b…☆1,027Feb 5, 2021Updated 5 years ago
- A simple SSRF-testing sheriff written in Go☆336Oct 31, 2024Updated last year
- InQL is a robust, open-source Burp Suite extension for advanced GraphQL testing, offering intuitive vulnerability detection, customizable…☆1,737Feb 16, 2026Updated 3 weeks ago
- Notes about attacking Jenkins servers☆2,091Jul 10, 2024Updated last year
- reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and findin…☆7,280Updated this week
- Automation for javascript recon in bug bounty.☆1,069Sep 9, 2023Updated 2 years ago
- reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via E…☆8,503Nov 16, 2025Updated 3 months ago
- 🌙🦊 Dalfox is a powerful open-source XSS scanner and utility focused on automation.☆4,859Feb 28, 2026Updated last week