Script to automate, when possible, the passive reconnaissance performed on a website prior to an assessment.
☆39Sep 25, 2026Updated this week
Alternatives and similar repositories for website-passive-reconnaissance
Users that are interested in website-passive-reconnaissance are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- all manner of wordlists☆24Jan 19, 2022Updated 4 years ago
- Docker toolbox for pentest of web based application.☆184Updated this week
- A collection of tools for managing and automating vulnerability management.☆13Mar 24, 2022Updated 4 years ago
- AliGuard PHP WAF☆12Feb 16, 2024Updated 2 years ago
- XSS Finder Via SSTI☆60Sep 14, 2023Updated 3 years ago
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- WaybackURLS + OtxURLS + CommonCrawl = The Best Results☆21Dec 7, 2019Updated 6 years ago
- Perform OSINT on external targets using Shodan☆24Feb 7, 2024Updated 2 years ago
- Burp suite Certificate modification tool☆18Jul 10, 2026Updated 2 months ago
- Instant access to you bug bounty submission dashboard on various platforms + publicly disclosed reports + #bugbountytip☆26May 26, 2020Updated 6 years ago
- CloudSpec is an open source tool for validating your resources in your cloud providers using a logical language.☆27Jan 4, 2022Updated 4 years ago
- A tool to BruteForce ssh. An upgraded version of Hydra. Multiple bruteforce options☆12Jul 9, 2022Updated 4 years ago
- A straightforward tool for exploiting SMTP Smuggling vulnerabilities.☆14Jul 22, 2024Updated 2 years ago
- 🐰 Managing command snippets for hackers/bug bounty hunters. with pet.☆113May 6, 2023Updated 3 years ago
- Sattools tool for Icone Iron series (Formerly called AutoInstaller)☆18Feb 10, 2024Updated 2 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Auto scanning tool that will help you during playing on HackTheBox, TryHackMe...etc☆20May 19, 2023Updated 3 years ago
- A BASH Script to automate the installation of the most popular bug bounty tools☆27Dec 24, 2025Updated 9 months ago
- DirBruter is a Python based CLI tool. It looks for hidden or existing directories/files using brute force method. It basically works by l…☆17Nov 15, 2023Updated 2 years ago
- ADDS (Active Directory Domain Services)☆28Mar 25, 2026Updated 6 months ago
- Extract metadata with SSRF (Server-Side Request Forgery)☆16Jul 23, 2022Updated 4 years ago
- Custom scripts for the PIPER Burp extensions.☆98Sep 24, 2023Updated 3 years ago
- PacketSifter is a tool/script that is designed to aid analysts in sifting through a packet capture (pcap) to find noteworthy traffic. Pac…☆93Jun 3, 2021Updated 5 years ago
- web application pentesting tools for docker☆18Aug 9, 2022Updated 4 years ago
- RedDrop is a quick and easy web server for capturing and processing encoded and encrypted payloads and tar archives.☆58Dec 17, 2024Updated last year
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Cool One Liners at one place to make your recon and bug bounty skills better !☆15Oct 3, 2020Updated 5 years ago
- Personal blog about cyber security and challenges☆20May 19, 2026Updated 4 months ago
- Probe and discover HTTP pathname using brute-force methodology and filtered by specific word or 2 words at once☆47Aug 19, 2021Updated 5 years ago
- ☆33Jun 19, 2021Updated 5 years ago
- A Burp Suite extension that converts IP addresses to decimal notation, useful for SSRF bypass and WAF evasion testing. Created by Harshad…☆13Dec 9, 2024Updated last year
- Basic script to rotate through reverse SSH proxies built through EC2, useful for obfuscating (weakly anonymizing) your source. Nice for b…☆13Mar 6, 2015Updated 11 years ago
- Wrapper around LinkFinder to quickly determine whether endpoints have been added/removed to JavaScript files.☆41Dec 27, 2019Updated 6 years ago
- CATANA - CUT your Wordlist!☆17Oct 2, 2022Updated 3 years ago
- Interact with your favourite Chat Bot (ChatGPT) with voice, also play saved musics with it.☆20May 24, 2025Updated last year
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- Network penetration testing toolset wrapper☆82Jul 5, 2022Updated 4 years ago
- gup aka Get All Urls parameters to create wordlists for brute forcing parameters.☆18Dec 4, 2021Updated 4 years ago
- A simple tool to check subdomains for clickjacking attack.☆12Mar 30, 2021Updated 5 years ago
- A semi-automatic osint/recon framework.☆25May 22, 2024Updated 2 years ago
- goverview - Get an overview of the list of URLs☆143Dec 5, 2025Updated 9 months ago
- [EN] BETA: Layla - recon tool for bug bounty☆75Feb 9, 2022Updated 4 years ago
- Identify virtual hosts by similarity comparison☆141Mar 18, 2026Updated 6 months ago