MagicRecon is a powerful shell script to maximize the recon and data collection process of an objective and finding common vulnerabilities, all this saving the results obtained in an organized way in directories and with various formats.
☆1,056Jul 23, 2024Updated 2 years ago
Alternatives and similar repositories for magicRecon
Users that are interested in magicRecon are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Automation Recon tool which works with Large & Medium scopes. It performs a lot of tasks and gets back all the results in separated files…☆687Jul 15, 2024Updated 2 years ago
- An automation tool that scans sub-domains, sub-domain takeover, then filters out XSS, SSTI, SSRF, and more injection point parameters and…☆810May 11, 2026Updated 4 months ago
- Automation for javascript recon in bug bounty.☆1,110Sep 9, 2023Updated 3 years ago
- A Bash script and Docker image for Bug Bounty reconnaissance. Intended for headless use.☆923Nov 19, 2025Updated 10 months ago
- A collection of awesome one-liner scripts especially for bug bounty tips.☆3,195Jul 29, 2024Updated 2 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A fast DOM based XSS vulnerability scanner with simplicity.☆872Sep 30, 2022Updated 3 years ago
- Python tool that probes websites for open redirection via headers, JavaScript, and meta-tag refresh, pulls candidate URLs from the Waybac…☆825Aug 26, 2026Updated 3 weeks ago
- Sudomy is a subdomain enumeration tool to collect subdomains and analyzing domains performing automated reconnaissance (recon) for bug hu…☆2,433Jun 27, 2024Updated 2 years ago
- An automated SSRF finder. Just give the domain name and your server and chill! ;) Also has options to find XSS and open redirects☆970Dec 8, 2021Updated 4 years ago
- oneliner commands for bug bounties☆461Jul 25, 2022Updated 4 years ago
- 403/401 Bypass Methods + Bash Automation + Your Support ;)☆1,670Jun 6, 2022Updated 4 years ago
- Community edition nuclei templates, a simple tool that allows you to organize all the Nuclei templates offered by the community in one pl…☆1,048Jun 6, 2026Updated 3 months ago
- reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and findin…☆8,124Sep 5, 2026Updated 2 weeks ago
- Subdomain and target enumeration tool built for offensive security testing☆976Jun 19, 2024Updated 2 years ago
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- For basic researches, top 25 vulnerability parameters that can be used in automation tools or manual recon. 🛡️⚔️🧙☆1,848Jun 9, 2024Updated 2 years ago
- A fuzzer for detecting open redirect vulnerabilities☆810Jul 1, 2024Updated 2 years ago
- Our main goal is to share tips from some well-known bughunters. Using recon methodology, we are able to find subdomains, apis, and tokens…☆5,538Jul 1, 2026Updated 2 months ago
- Making Favicon.ico based Recon Great again !☆1,309Aug 29, 2023Updated 3 years ago
- Mining URLs from dark corners of Web Archives for bug hunting/fuzzing/further probing☆3,172Mar 7, 2026Updated 6 months ago
- 🌙🦊 Dalfox is a powerful open-source XSS scanner and utility focused on automation.☆5,296Updated this week
- bug bounty automation☆14Jul 2, 2021Updated 5 years ago
- A tool to find subdomains and interesting things hidden inside, external Javascript files of page, folder, and Github.☆1,893Updated this week
- A tool to check a bunch of URLs that contain reflecting params.☆602Aug 4, 2024Updated 2 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- A python tool used to discover endpoints, potential parameters, a target specific wordlist for a given target and secrets☆1,591Mar 8, 2026Updated 6 months ago
- Community curated list of nuclei templates for finding "unknown" security vulnerabilities.☆108May 2, 2024Updated 2 years ago
- The fastest dork scanner written in Go.☆1,302Feb 4, 2024Updated 2 years ago
- BigBountyRecon tool utilises 58 different techniques using various Google dorks and open source tools to expedite the process of initial …☆1,571Jan 29, 2021Updated 5 years ago
- A repository that includes all the important wordlists used while bug hunting.☆1,434Mar 11, 2023Updated 3 years ago
- All about bug bounty (bypasses, payloads, and etc)☆6,890Sep 8, 2023Updated 3 years ago
- ScanT3r - Module based Bug Bounty Automation Tool ( use Lotus instead github.com/bugBlocker/lotus )☆684Aug 30, 2026Updated 3 weeks ago
- A fast tool to scan CRLF vulnerability written in Go☆1,565Aug 28, 2026Updated 3 weeks ago
- Find way more from the Wayback Machine, Common Crawl, Alien Vault OTX, URLScan, VirusTotal, GhostArchive & Intelligence X!☆2,753Jun 11, 2026Updated 3 months ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- BBT - Bug Bounty Tools (examples💡)☆1,913Apr 5, 2024Updated 2 years ago
- Rockyou for web fuzzing☆3,239Mar 11, 2026Updated 6 months ago
- Subdomain takeover vulnerability checker☆1,595Sep 10, 2024Updated 2 years ago
- ReconPi - A lightweight recon tool that performs extensive scanning with the latest tools.☆725May 6, 2022Updated 4 years ago
- Fetches javascript file from a list of URLS or subdomains.☆863Jul 22, 2025Updated last year
- NucleiFuzzer is a robust automation tool that efficiently detects web application vulnerabilities, including XSS, SQLi, SSRF, and Open Re…☆1,867Apr 17, 2026Updated 5 months ago
- i will upload more templates here to share with the comunity.☆573Apr 17, 2024Updated 2 years ago