awesome-repositories.com
المدونة
MCP
awesome-repositories.com

اكتشف أفضل مستودعات المصادر المفتوحة باستخدام بحث مدعوم بالذكاء الاصطناعي.

استكشفعمليات بحث منسقةبدائل مفتوحة المصدربرمجيات ذاتية الاستضافةالمدونةخريطة الموقع
المشروعحولكيفية ترتيب النتائجالصحافةخادم MCP
قانونيالخصوصيةالشروط
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
guelfoweb avatar

guelfoweb/knock

0
View on GitHub↗
github.com/guelfoweb/knockpy↗

Knock

Knock هي أداة لإدارة سطح الهجوم وإطار عمل لاستطلاع DNS يستخدم لاكتشاف ورسم خرائط البنية التحتية الخارجية للمؤسسة. تعمل كأداة تعداد للنطاقات الفرعية وماسح أمني لـ HTTP لتحديد المضيفين القابلين للوصول وأصول المؤسسة.

يتميز المشروع باستخدام استراتيجية تعداد هجينة سلبية-نشطة، تجمع بين عمليات بحث واجهة برمجة التطبيقات الخارجية وهجمات القوة الغاشمة لقائمة الكلمات النشطة وعمليات نقل منطقة DNS. يتضمن خط أنابيب تحقق متعدد المراحل يكتشف سجلات DNS البديلة (wildcard) ويتحقق من اتصال المضيف لتصفية الإيجابيات الكاذبة.

يغطي إطار العمل رسم خرائط سطح الهجوم، وتدقيق أمن DNS، واستطلاع الثغرات الأمنية، بما في ذلك اكتشاف بروتوكولات TLS القديمة. تتم إدارة النتائج من خلال قاعدة بيانات قابلة للبحث ويمكن تصديرها كتقارير HTML أو JSON. تسمح خيارات ضبط الأداء بتعديل مستويات التزامن ومهلات الشبكة.

بحث بالذكاء الاصطناعي

استكشف المزيد من المستودعات الرائعة

صف ما تحتاجه بلغة بسيطة — وسيقوم الذكاء الاصطناعي بترتيب آلاف المشاريع مفتوحة المصدر المنسقة حسب الصلة.

Start searching with AI

Features

  • Attack Surface Mapping - Identifies all reachable subdomains and DNS records to map the organization's external attack surface.
  • Subdomain Enumeration Tools - Discovers target subdomains using a hybrid of passive API lookups and active wordlist brute-forcing.
  • Hybrid Enumeration Strategies - Combines external service lookups with active wordlist brute-force attacks to maximize subdomain discovery.
  • Discovery Validation Pipelines - Implements a multi-stage pipeline to verify host connectivity and detect DNS wildcards to filter false positives.
  • DNS Reconnaissance - Functions as a framework for querying DNS records and validating connectivity to map infrastructure.
  • DNS Zone Transfers - Implements DNS zone transfer requests to retrieve complete lists of configured hosts from root domains.
  • Attack Surface Management - Provides a complete platform for discovering, inventorying, and monitoring internet-facing assets.
  • DNS Security Auditing - Performs zone transfers and validates DNS wildcard records to find misconfigured name servers.
  • External Asset Discovery - Gathers a comprehensive list of public-facing infrastructure by integrating multiple reconnaissance sources.
  • Audit Result Persistence - Stores security audit findings and reconnaissance results in a persistent local database for auditing.
  • Wildcard Domain Detectors - Provides utilities to detect and filter out false-positive DNS responses caused by wildcard records.
  • Reachability Validators - Verifies the reachability of discovered subdomains by checking status codes and security certificates.
  • Network Security Scanners - Identifies legacy TLS versions and filters subdomains based on HTTP status codes and content.
  • Security Scan Reporting - Provides a searchable database for storing and exporting security scan findings.
  • TLS Version Auditing - Identifies servers using outdated TLS 1.0 or 1.1 protocols to uncover potential security vulnerabilities.
  • Network Reconnaissance Tools - Scans discovered hosts for outdated TLS protocols and connectivity issues to identify potential entry points.
  • Network Probing Thread Pools - Provides configurable worker thread pools to balance network probing speed and rate-limiting.
  • Reconnaissance Tools - Subdomain scanning tool.
  • Subdomain Enumeration - Wordlist-based subdomain enumeration tool.
  • DNS Security - Tool for enumerating subdomains using wordlists.
  • Subdomain Enumeration - Tool for subdomain scanning.
4,163 نجوم·883 تفرعات·Python·GPL-3.0·9 مشاهدات

سجل النجوم

مخطط تاريخ النجوم لـ guelfoweb/knockمخطط تاريخ النجوم لـ guelfoweb/knock

بدائل مفتوحة المصدر لـ Knock

مشاريع مفتوحة المصدر مشابهة، مرتبة حسب عدد الميزات المشتركة مع Knock.
  • owasp/amassالصورة الرمزية لـ OWASP

    OWASP/Amass

    14,722عرض على GitHub↗

    Amass is a network attack surface mapper and reconnaissance framework designed to discover and map the external, internet-facing infrastructure of a target organization. It functions as an open source intelligence tool that identifies public network boundaries and locates hidden or forgotten subdomains to define an organization's total reachable footprint. The project utilizes passive-source data aggregation from external APIs and public databases alongside active DNS brute-forcing and recursive subdomain expansion. It employs a graph-based asset mapping system to visualize the relationships

    Go
    عرض على GitHub↗14,722
  • projectdiscovery/subfinderالصورة الرمزية لـ projectdiscovery

    projectdiscovery/subfinder

    13,105عرض على GitHub↗

    Subfinder is a security reconnaissance framework designed for subdomain enumeration and attack surface management. It functions as a discovery engine that identifies and maps internet-exposed infrastructure, cloud-hosted assets, and network ranges to maintain a comprehensive inventory of an organization's digital footprint. The project distinguishes itself through a modular, template-driven scanning engine that executes security checks against discovered assets. It leverages cloud-native asset discovery to query provider APIs and infrastructure metadata, while supporting distributed agent orc

    Gobugbountyhackinghacktoberfest
    عرض على GitHub↗13,105
  • aboul3la/sublist3rالصورة الرمزية لـ aboul3la

    aboul3la/Sublist3r

    10,957عرض على GitHub↗

    Sublist3r is a subdomain enumeration tool and passive reconnaissance framework designed to discover subdomains by querying search engines and public intelligence sources. It functions as a security tool for identifying the digital footprint of a target domain. The project provides both passive enumeration through multi-source API aggregation and active discovery via a DNS brute force tool. It includes a TCP port scanner to identify active services and open ports on discovered subdomains, facilitating attack surface mapping. The tool can be used as a standalone utility or as a Python security

    Python
    عرض على GitHub↗10,957
  • projectdiscovery/naabuالصورة الرمزية لـ projectdiscovery

    projectdiscovery/naabu

    5,766عرض على GitHub↗

    Naabu is a port scanner library and tool that probes hosts for open ports using SYN, CONNECT, and UDP methods to identify active services. It functions as a Go library for embedding port scanning into programs, and as a standalone tool that accepts targets as hostnames, IP addresses, CIDR ranges, or ASN numbers. The tool discovers live hosts before scanning, filters ports by range or top lists, and can integrate with Nmap for service version detection. The project distinguishes itself through its SYN-based port probing approach that sends TCP SYN packets and analyzes responses without complet

    Gocdn-exclusionhacktoberfestnmap
    عرض على GitHub↗5,766
عرض جميع البدائل الـ 30 لـ Knock→

الأسئلة الشائعة

ما هي وظيفة guelfoweb/knock؟

Knock هي أداة لإدارة سطح الهجوم وإطار عمل لاستطلاع DNS يستخدم لاكتشاف ورسم خرائط البنية التحتية الخارجية للمؤسسة. تعمل كأداة تعداد للنطاقات الفرعية وماسح أمني لـ HTTP لتحديد المضيفين القابلين للوصول وأصول المؤسسة.

ما هي الميزات الرئيسية لـ guelfoweb/knock؟

الميزات الرئيسية لـ guelfoweb/knock هي: Attack Surface Mapping, Subdomain Enumeration Tools, Hybrid Enumeration Strategies, Discovery Validation Pipelines, DNS Reconnaissance, DNS Zone Transfers, Attack Surface Management, DNS Security Auditing.

ما هي البدائل مفتوحة المصدر لـ guelfoweb/knock؟

تشمل البدائل مفتوحة المصدر لـ guelfoweb/knock: owasp/amass — Amass is a network attack surface mapper and reconnaissance framework designed to discover and map the external,… projectdiscovery/subfinder — Subfinder is a security reconnaissance framework designed for subdomain enumeration and attack surface management. It… aboul3la/sublist3r — Sublist3r is a subdomain enumeration tool and passive reconnaissance framework designed to discover subdomains by… projectdiscovery/naabu — Naabu is a port scanner library and tool that probes hosts for open ports using SYN, CONNECT, and UDP methods to… owasp/nettacker — Nettacker is an automated penetration testing framework designed to orchestrate reconnaissance, port scanning, and… blacklanternsecurity/bbot — This project is an open-source intelligence reconnaissance framework and recursive attack surface mapper. It functions…