35 repositorios
Tools and services for gathering and analyzing information from public sources.
Explore 35 awesome GitHub repositories matching part of an awesome list · Open Source Intelligence. Refine with filters or upvote what's useful.
theHarvester is a command-line utility designed for gathering open-source intelligence and mapping an organization's external attack surface. It functions as a security information gathering framework that automates the collection of publicly available data to assist in reconnaissance and threat analysis. The tool utilizes a plugin-based architecture to execute isolated queries against various search engines and public databases. It employs asynchronous task execution to run multiple discovery operations in parallel, while a centralized pipeline aggregates and deduplicates findings from these
Tool for harvesting emails, subdomains, and names.
Sn1per is a vulnerability management platform and penetration testing orchestrator designed to automate reconnaissance, vulnerability scanning, and exploit verification. It functions as a dockerized security toolkit that coordinates multiple tools into a unified automated pipeline to identify security flaws across network and web assets. The platform features an attack surface manager for discovering internet-facing assets through OSINT, DNS enumeration, and certificate transparency. It distinguishes itself with an AI-powered security analyzer that uses large language models to summarize scan
Automated reconnaissance and penetration testing scanner.
WAFW00F allows one to identify and fingerprint Web Application Firewall (WAF) products protecting a website.
Fingerprinting tool for identifying web application firewall products.
WhatWeb is a web application fingerprinting tool that identifies the technology stack powering a website by scanning HTTP responses and page content. It matches responses against a library of over 1800 signatures to detect CMS platforms, JavaScript libraries, web servers, embedded devices, and third-party addons, while also extracting technical metadata such as software versions, user accounts, and module names. The tool operates through a plugin-based detection framework that supports both passive and aggressive scanning modes. Passive plugins analyze existing HTTP headers and page content w
Fingerprinting tool for identifying website technologies.
recon-ng is an open source intelligence reconnaissance framework designed to automate the collection and aggregation of public information. It is a modular intelligence tool that utilizes a system of pluggable modules to harvest target data, resolve DNS queries, and parse web content. The framework is built as an API-driven tool with a programmatic interface to integrate with other security workflows. It is provided as a containerized application, using Docker to ensure a consistent environment for running reconnaissance tasks and managing a persistent data store. Its capabilities cover exte
Full-featured framework for web reconnaissance.
Depix es una herramienta de recuperación de pixelación y utilidad de forense digital diseñada para reconstruir texto plano a partir de imágenes pixeladas. Funciona como un reconstructor de texto de fuerza bruta que identifica secuencias de texto originales comparando bloques de píxeles con una librería de caracteres renderizados. La herramienta opera como una prueba de concepto para la despixelación de imágenes, utilizando análisis de patrones para revelar información oculta. Se utiliza para el análisis forense digital y pruebas de seguridad de redacción para evaluar la efectividad de la pixelación como método para ocultar datos sensibles. El proceso de reconstrucción implica el muestreo del promedio de color y la comparación de la rejilla de píxeles. Emplea un espacio de búsqueda exhaustivo para probar combinaciones de caracteres y compara los valores medios de color de las áreas pixeladas con una librería de glifos pre-renderizada.
Recovery of text from pixelized screenshots.
Este proyecto es una colección curada de frameworks, bibliotecas y conjuntos de herramientas diseñados para la ingeniería social y la recopilación de datos públicos. Agrega software especializado y materiales educativos utilizados para realizar ataques centrados en humanos durante compromisos de seguridad profesionales. El directorio proporciona recursos para recopilar y visualizar inteligencia de fuentes abiertas (OSINT) para identificar fugas de información sensible. También incluye una colección de métodos y software para ejecutar campañas de phishing para recolectar credenciales y cookies de sesión. El repositorio cubre además materiales educativos centrados en psicología conductual, técnicas de persuasión y el estudio del hacking humano. Estos recursos están organizados en listas categorizadas para el descubrimiento de materiales psicológicos y técnicos.
Provides tools and services for gathering and analyzing information from public sources to find leaks.
pagodo (Passive Google Dork) - Automate Google Hacking Database scraping and searching
Automation for scraping the Google Hacking Database.
An #OSINT Framework to perform various recon techniques on Companies, People, Phone Number, Bitcoin Addresses, etc., aggregate all the raw data, and give data in multiple formats.
OSINT visualizer integrating multiple search and data services.
This project is a GitHub secret scanner and dorking tool designed to identify leaked credentials and private keys within repositories. It functions as an API reconnaissance utility that uses curated search queries and automated dorks to locate sensitive data across public and enterprise GitHub instances. The tool enables security vulnerability research and enterprise auditing by targeting both public cloud instances and private enterprise installations via configurable base URLs. It utilizes token-based authentication to access private repository content and bypass API rate limits. The syste
CLI tool for finding sensitive information leaks in repositories.
🎇 Quickly search over billions of images
High-speed search and matching across large image datasets.
Detect and bypass web application firewalls and protection systems
Detection and bypass tool for web application firewalls.
Semi-automatic OSINT framework and package manager
Semi-automatic framework for OSINT and package management.
OSINT tool to find breached emails, databases, pastes, and relevant information
Search tool for identifying email addresses in known data breaches.
A geolocation OSINT tool. Offers geolocation information gathering through social networking platforms.
Geolocation tool for gathering target location data.
A virtual host scanner that performs reverse lookups, can be used with pivot tools, detect catch-all scenarios, work around wildcards, aliases and dynamic default pages.
Virtual host scanner for detecting aliases and dynamic pages.
Metadata harvester
Harvester for extracting metadata from public documents.
OSINT python webscaping framework
Framework for scraping PII and passive target information.
Email recon made fast and easy, with a framework to build on
Streamlined email reconnaissance and analysis.
GyoiThon is a growing penetration test tool using Machine Learning.
Intelligence gathering tool utilizing machine learning.