awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
0x727 avatar

0x727/ShuiZe_0x727

0
View on GitHub↗
4,014 stars·591 forks·Python·19 views

ShuiZe 0x727

ShuiZe_0x727 is an open-source intelligence gathering framework and attack surface management tool. It functions as an asset discovery engine and cyber intelligence aggregator designed to identify internet-facing assets, map network infrastructure, and visualize total network exposure.

The project integrates vulnerability scanning and sensitive data leak detection to identify security weaknesses and unauthorized access points. It employs a combination of network space API queries, certificate log analysis, and public repository scanning to extract leaked credentials, API keys, and internal administrative paths.

The framework provides capabilities for automated information gathering and cyber intelligence research, utilizing a plugin-based scanning engine to detect vulnerabilities across web services and open ports. Gathered asset data and security findings are exported into formatted spreadsheets for offline analysis and auditing.

Features

  • Attack Surface Management - Provides a comprehensive platform for discovering and monitoring internet-facing assets to manage total network exposure.
  • External Asset Discovery - Functions as a discovery engine that collects subdomains, IP ranges, and DNS records to map external network infrastructure.
  • Asset and Identity Intelligence - Searches and analyzes digital assets and organizational identities using network space engines.
  • Information Gathering - Automates the collection of subdomains, IP addresses, and organizational metadata from public sources.
  • IP and DNS Discovery - Enumerates subdomains and IP ranges by combining DNS records, certificate logs, and search engine data.
  • OSINT and Information Gathering - Harvests subdomains and network metadata from public sources for open-source intelligence gathering.
  • Multi-Source Content Aggregation - Merges technical data from certificate logs, DNS records, and crawlers into a single asset structure.
  • DNS Record Scrape Target Discovery - Collects subdomains and root domains by scraping DNS records and third-party intelligence data.
  • Infrastructure Mapping - Resolves assets to IP addresses and identifies CDN usage to visualize the target network architecture.
  • Asset Inventory Aggregators - Aggregates and deduplicates discovered security assets from multiple intelligence databases into a unified inventory.
  • Credential Leak Detection - Provides automated detection of leaked credentials, API keys, and sensitive paths within public repositories and search engine caches.
  • OSINT Frameworks - Provides an automated framework for gathering intelligence and mapping target attack surfaces using publicly available data.
  • Security Vulnerability Scanning - Detects security weaknesses and unauthorized access points in web services and open ports.
  • Intelligence Querying - Queries external network space APIs to identify target assets using titles and organizational fingerprints.
  • Cyber Intelligence Aggregators - Aggregates fingerprints, organizational metadata, and leaked credentials by querying multiple external network space APIs.
  • Modular Scanning Engines - Employs a modular scanning engine to execute isolated vulnerability tests and port scanning routines.
  • Regex Extraction Utilities - Uses regular expression sets to parse unstructured web content for leaked credentials and sensitive paths.
  • Credential Extractions - Extracts leaked API keys and sensitive administrative paths from public repositories and web pages.
  • Web Vulnerability Scanners - Detects security weaknesses and unauthorized access points in web services using an integrated scanning engine.
  • Sensitive Data Extraction Tools - Scans public repositories and web pages to extract leaked credentials, API keys, and internal paths.
  • Vulnerability Scanning Workflows - Implements structured network operations to identify security vulnerabilities across web services and open ports.
  • Concurrent Request Pooling - Implements a concurrent request pipeline using pooled HTTP and DNS queries to accelerate network mapping.

Star history

Star history chart for 0x727/shuize_0x727Star history chart for 0x727/shuize_0x727

How this analysis was created: This summary and feature list are AI-generated from collected project material and can contain mistakes. Stars, license and language are imported from GitHub. Inclusion does not mean that we have tested or audited this project. Check the source documentation for any feature you depend on. Learn more on our About page.

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Start searching with AI

Projects sharing features with ShuiZe 0x727

These projects share indexed features with ShuiZe 0x727. Shared tags can include platform or build tooling; verify the primary use case before treating a result as a replacement.
  • tidesec/tscanplusTideSec avatar

    TideSec/TscanPlus

    3,753View on GitHub↗

    TscanPlus is an external attack surface management tool and security reconnaissance framework designed for discovering network assets, enumerating subdomains, and mapping internet-facing services. It functions as a vulnerability scanning framework and network asset discovery suite to identify security exposure and map active hosts. The platform distinguishes itself by integrating an intelligence layer that uses large language models to analyze raw scan results and identify security weaknesses within JavaScript code. It also includes a dedicated proxy management system that validates and rotat

    View on GitHub↗3,753
  • six2dez/reconftwsix2dez avatar

    six2dez/reconftw

    7,226View on GitHub↗

    reconftw is an attack surface management framework and reconnaissance workflow orchestrator designed to automate the discovery, mapping, and monitoring of external digital assets. It operates as a modular tool-chain pipeline that coordinates a sequence of security tools to perform intelligence gathering and vulnerability scanning. The project distinguishes itself through a cloud-native deployment model that parallelizes scanning workloads across a fleet of remote VPS instances to bypass local resource constraints. It utilizes container-based environment isolation to ensure consistent executio

    Shellbug-bountybugbountybugbounty-tool
    View on GitHub↗7,226
  • tuhinshubhra/red_hawkTuhinshubhra avatar

    Tuhinshubhra/RED_HAWK

    3,695View on GitHub↗

    RED_HAWK is a penetration testing framework and reconnaissance suite designed for information gathering and vulnerability assessment. It provides a toolkit for infrastructure reconnaissance, technology stack detection, automated web spidering, and security scanning. The project distinguishes itself through a multi-stage reconnaissance pipeline that maps attack surfaces. This includes DNS-based infrastructure mapping to resolve network layouts and pattern-based detection to identify specific content management systems and server stacks. The system covers a broad range of capabilities includin

    PHPadmin-scannerbackups-findercloudflare-detection
    View on GitHub↗3,695
  • laramies/theharvesterlaramies avatar

    laramies/theHarvester

    15,687View on GitHub↗

    theHarvester is a command-line utility designed for gathering open-source intelligence and mapping an organization's external attack surface. It functions as a security information gathering framework that automates the collection of publicly available data to assist in reconnaissance and threat analysis. The tool utilizes a plugin-based architecture to execute isolated queries against various search engines and public databases. It employs asynchronous task execution to run multiple discovery operations in parallel, while a centralized pipeline aggregates and deduplicates findings from these

    Pythonblueteamdiscoveryemails
    View on GitHub↗15,687
Compare all 30 related projects→

Frequently asked questions

What does 0x727/shuize_0x727 do?

ShuiZe_0x727 is an open-source intelligence gathering framework and attack surface management tool. It functions as an asset discovery engine and cyber intelligence aggregator designed to identify internet-facing assets, map network infrastructure, and visualize total network exposure.

What are the main features of 0x727/shuize_0x727?

The main features of 0x727/shuize_0x727 are: Attack Surface Management, External Asset Discovery, Asset and Identity Intelligence, Information Gathering, IP and DNS Discovery, OSINT and Information Gathering, Multi-Source Content Aggregation, DNS Record Scrape Target Discovery.

Which projects share features with 0x727/shuize_0x727?

Projects with overlapping indexed features include: tidesec/tscanplus — TscanPlus is an external attack surface management tool and security reconnaissance framework designed for discovering… six2dez/reconftw — reconftw is an attack surface management framework and reconnaissance workflow orchestrator designed to automate the… tuhinshubhra/red_hawk — RED_HAWK is a penetration testing framework and reconnaissance suite designed for information gathering and… laramies/theharvester — theHarvester is a command-line utility designed for gathering open-source intelligence and mapping an organization's… yogeshojha/rengine — Rengine is an automated reconnaissance framework and vulnerability management platform designed for attack surface… 1n3/sn1per — Sn1per is a vulnerability management platform and penetration testing orchestrator designed to automate…