Mobile Application
Android
Apkatshu
ReverseAPK
slicer
mobi
reverse-apk
Domains
Horizontal Domain Discovery (Acquisitions & Entities)
knockknock
get_acquisitions
DomLink
whoxyrm
Elevate
Vertical Domain Discovery
Passive Subdomain Enumeration
Single Execution
Findomain
vita
subfinder
sigsubs
knock
github-subdomains
OneForAll
SimpleReconSubdomain
SubDomainizer
assetfinder
crtfinder
crtsh
sub.sh
Amass
Continuous Monitor
CertEagle
sublert
monitor-new-subdomain
Substr3am
Active Subdomain Enumeration
DNS Resolvers Lists
bass
grepips
fresh.py
dnsresolvers
dnsvalidator
dmut-resolvers
dnsfaster
Domain Mutation
dnsgen
gotator
DNSCewl
goaltdns
altdns
permDNS
dmut
Get fresh list of resolvers for DNS bruteforce
Subdomains Bruteforce
sonar
ksubdomain
shuffledns
massdns
puredns
dnscan
BadDNS
flydns
dnsspider
dnsx
dnsrecon
rusolver
r3solve
resolvermt
dnscheck
Syborg
Reverse DNS
hakrevdns
Possible output: 1. A records (IPv4) 2. CNAME records 3. MX records 4. TXT records 5. AAAA (IPv6) 6. NS records
Get mutated subdomains list
VHost Discovery
VHostScan
scraped subdomains list
Send results for vertical enumeration
ASN
ASN-Eagle
Asnlookup
asnip
asnrecon
Metabigor
Leak Finder
git
Git-Pwned
GitGot
Git_Secret
GithubCloner
Hogger
github-search
gitls
gitleaks-wrapper
shhgit
gitGraber
github-dorks
Others
shania
sloot
santaHog
locohunt
keyFinder
circleci-logs
yar
Scavenger
TravisLeaks
keyhacks
xkeys
Data
Dictionary/Wordlists
Gf-Patterns
squeaky
wordlists
gf-secrets
Dictionary-Of-Pentesting
RegHex
bruteforce-lists
keywords
OneListForAll
PassList
ApiWordlistGenerator
PayloadsAllTheThings
fuzzmost
htshells
Oracle-EBS-Security-Audit
wwwordlist
SSRF-Testing
Bug Bounty Resources
Bug-Bounty-Roadmaps
targets
awesome-bughunting-oneliners
assessment-mindset
awesome-oneliner-bugbounty
bugbounty-cheatsheet
webHunt
BB-datas
learn365
one_liner
KingOfBugBountyTips
nahamcon-axiom-demo-2021
hackerone-reports
Web-Attack-Cheat-Sheet
recox
idun
owncraft
tipseeker
Scanners-Box
xsleaks
bugbounty-dorks
All In One(AIO)
Sn1per
HydraRecon
Eagle
Monitorizer
Bountystrike-sh
project-black
Interlace
Reconnoitre
penum
cariddi
recon-pipeline
3klCon
xray
Bheem
bbrf-server
Osmedeus
bug-bounty
bugshop
rengine
gampung
crimson
bbht
lazyrecon
horizon
nuclei
Garud
pentestER-Fully-automatic-scanner
DomainRecon
reconness
magicRecon
celerystalk
reconftw
chomp-scan
rejig
ARL
BigBountyRecon
cent
subdomain wordlists
jhaddix wordlists
himanshudas wordlist
EnumerationList
Web Servers
Enumerate valid web servers
httpgrep
httprobe
httpx
fprobe
fhc
URL weild
crawlers/spider
hakrawler
urlgrab
SourceWolf
gau
gauplus
waybackurls
scout
nozaki
gospider
URL's cleanup
qsfuzz
grapX
urldedupe
uniqurl
scanners
jaeles
nuclei
BountyIt
sns
detective
fingerprint
massprint
webanalyze
wappalyzergo
gofingerprint
GoPatternMatcher
Wappaligner
enumerate
urlprobe
burl
GoHead
dirscraper
cc.py
GoLinkFinder
dirlstr
Drishti
bulkreq
get-title
FavFreak
FavHunt
favicon wordlists
bruteforce/fuzzing
parameters
fuzzparam
ParamPamPam
parameth
Arjun
ParameterMiner
ParamSpider
paraglider
x8
URL's
byp4xx
XFFenum
rate-limit-checker
DirDar
meg
cansina
scanomaly
url-fuzzer
Content Discovery
pathbrute
crithit
kiterunner
yotter
urlbuster
ffufplus
ffuf
fuzznav
ChopChop
boxer
dirble
dirmap
fasdir
feroxbuster
lulzbuster
rustbuster
context-specific wordlists
wordlists
params
Top-parameters-list
top25-parameter
ffw-content-discovery
exploit
HTTP Smuggling
h2csmuggler
http2smugl
request_smuggler
smuggler
CRLF
Injectus
crlfuzz
crlf-injector
crlfmap
Cross Site Scripting(XSS)
findom-xss
dalfox
kxss
bxss
Gxss
xsspwn
puff
XSpear
QuickXSS
XRCross
ezXSS
Open Redirect
ORtester
dom-red
open-redirect
CORS
corsX
theftfuzzer
SSRF
SSRFuck
SSRFmap
ssrf-tool
ssrfDetector
ssrfuzz
Host-header
xforwardy
hinject
HostPanic
URL manipulation
unew
uddup
ureplace
qsreplace
unfurl
gal
misc
gee
differer
XSSwagger
anewer
Keye
web-cache-deception-checker
nginxpwner
untrusted-types
waybackSqliScanner
fuxploider
Javascript Enumerations
getJS
jsleak
endpointdiff
linkz
FileChangeMonitor
diffJs
subscraper
linkJS
LinkFinder
jsubfinder
nipejs
js-identifiers
JSFScan.sh
js-parse
is-website-vulnerable
SecretFinder
JScanner
JSParser
jsmon
scripthunter
extract-relative-url-heapsnapshot
URL's screenshot
Deeplack
Snapper
crystalball
eyeballer
electric-scan
gowitness
lightScreenShot
go-stare
EyeWitness
Generate wordlists
wordlistgen
Subdomain Takeover
robusto
subjack
takeover
second-order
SubOver
subcapture
NtHiM
IP Address
Remove CDN IP
cdnstrip
cdncheck
Port Scan
DivideAndScan
RustScan
blackwater
masscan
nmap
vulscan
FavHash
brutespray
Miscellaneous DNS tools
dkimsc4n
DeadDNS
domainhunter
FindFrontableDomains
NSBrute
cloudfrunt
vscan-go
BruteX
Himanshu Kumar Das
License: Creative Commons
grepips
get CIDR or ipv4