Fast passive subdomain enumeration tool.
-
Updated
Nov 5, 2025 - Go
A bug bounty program is a deal offered by many websites, organizations and software developers by which individuals can receive recognition and compensation for reporting bugs, especially those pertaining to security exploits and vulnerabilities.
Fast passive subdomain enumeration tool.
httpx is a fast and multi-purpose HTTP toolkit that allows running multiple probes using the retryablehttp library.
A Workflow Engine for Offensive Security
Official repository vuls Scan: 15000+PoCs; 23 kinds of application password crack; 7000+Web fingerprints; 146 protocols and 90000+ rules Port scanning; Fuzz, HW, awesome BugBounty( ͡° ͜ʖ ͡°)...
Simple, fast web crawler designed for easy, quick discovery of endpoints and assets within a web application
🌙🦊 Dalfox is a powerful open-source XSS scanner and utility focused on automation.
Take a list of domains, crawl urls and scan for endpoints, secrets, api keys, file extensions, tokens and more
Quickly discover exposed hosts on the internet using multiple search engines.
The Swiss Army knife for automated Web Application Testing
Puredns is a fast domain resolver and subdomain bruteforcing tool that can accurately filter out wildcard subdomains and DNS poisoned entries.
Subdomain Takeover tool written in Go
An open-source project in Golang to asess different API Security tools and WAF for detection logic and bypasses
a recon tool that allows searching on URLs that are exposed via shortener services
Subdomain takeover vulnerability checker
OSINT tools and more but without API key
🚫 Advanced tool for security researchers to bypass 403/40X restrictions through smart techniques and adaptive request manipulation. Fast. Precise. Effective.