Tag: reconnaissance 47 packages with this tag
« Back to VersTracker  |  All Categories  |  All Tags  |  Related: security pentesting networking osint cli subdomain dns enumeration web fingerprinting
Package Description Version
subfinder ☆ formula 12,739 Subdomain discovery tool 2.10.1
cloudfox ☆ formula 2,261 Automating situational awareness for cloud penetration tests 1.17.0
amass ☆ formula In-depth attack surface mapping and asset discovery 5.0.1
asnmap ☆ formula Quickly map organization network ranges using ASN information 1.1.1
bbot ☆ formula OSINT automation tool 2.7.2
cariddi ☆ formula Scan for endpoints, secrets, API keys, file extensions, tokens and more 1.4.4
cdncheck ☆ formula Utility to detect various technology for a given IP address 1.2.14
censys ☆ formula Command-line interface for the Censys APIs (censys.io) 2.2.19
certgraph ☆ formula Crawl the graph of certificate Alternate Names 0.1.2
chaos-client ☆ formula Client to communicate with Chaos DB API 0.5.2
cliam ☆ formula Cloud agnostic IAM permissions enumerator 2.2.0
cloudlist ☆ formula Tool for listing assets from multiple cloud providers 1.2.2
csprecon ☆ formula Discover new target domains using Content Security Policy 0.4.3
dnsgen ☆ formula Generates DNS names from existing domain names 1.0.4
dnsmap ☆ formula Passive DNS network mapper (a.k.a. subdomains bruteforcer) 0.36
dnstwist ☆ formula Test domains for typo squatting, phishing and corporate espionage 20250130
dnsx ☆ formula DNS query and resolution tool 1.2.3
favirecon ☆ formula Uses favicon.ico to improve the target recon phase 1.0.2
feroxbuster ☆ formula Fast, simple, recursive content discovery tool written in Rust 2.13.1
fierce ☆ formula DNS reconnaissance tool for locating non-contiguous IP space
findomain ☆ formula Cross-platform subdomain enumerator
fpdns ☆ formula Fingerprint DNS server versions
gau ☆ formula Open Threat Exchange, Wayback Machine, and Common Crawl URL fetcher
gobuster ☆ formula Directory/file & DNS busting tool written in Go
gsan ☆ formula Extract subdomains from SSL certificates in HTTPS sites 5.0.0
httpx ☆ formula Fast and multi-purpose HTTP toolkit
ike-scan ☆ formula Discover and fingerprint IKE hosts
katana ☆ formula Crawling and spidering framework
maigret ☆ formula Collect a dossier on a person by username from thousands of sites 0.5.0
masscan ☆ formula TCP port scanner, scans entire Internet in under 5 minutes
massdns ☆ formula High-performance DNS stub resolver
naabu ☆ formula Fast port scanner
observerward ☆ formula Web application and service fingerprint identification tool
phoneinfoga ☆ formula Information gathering framework for phone numbers 2.11.0
recon-ng ☆ formula Web Reconnaissance Framework 5.1.2
scilla ☆ formula DNS, subdomain, port, directory enumeration tool
shodan ☆ formula Python library and command-line utility for Shodan 1.31.0
shuffledns ☆ formula Enumerate subdomains using active bruteforce & resolve subdomains with wildcards
smap ☆ formula Drop-in replacement for Nmap powered by shodan.io
sn0int ☆ formula Semi-automatic OSINT framework and package manager
synscan ☆ formula Asynchronous half-open TCP portscanner
theharvester ☆ formula Gather materials from public sources (for pen testers) 4.8.2
tlsx ☆ formula Fast and configurable TLS grabber focused on TLS based data collection
uncover ☆ formula Tool to discover exposed hosts on the internet using multiple search engines 1.2.0
urlfinder ☆ formula Extracting URLs and subdomains from JS files on a website
urx ☆ formula Extracts URLs from OSINT Archives for Security Insights
wtfis ☆ formula Passive hostname, domain, and IP lookup tool 0.14.0