awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
arkadiyt avatar

arkadiyt/bounty-targets-data

0
View on GitHub↗
3,645 stars·649 forks·mit·12 views

Bounty Targets Data

This project is a bug bounty target dataset and security asset list. It serves as a structured repository of reachable network assets, domains, and applications eligible for security testing across multiple vulnerability disclosure programs.

The dataset is designed to support bug bounty reconnaissance, attack surface mapping, and security target analysis. It provides organized scopes and target lists to help identify valid assets for security testing and vulnerability research workflows.

The repository utilizes automated scraping pipelines and platform API integration to synchronize data. It employs schema-based normalization to convert third-party formats into standardized static JSON files for storage and retrieval.

Features

  • Attack Surface Mapping - Provides structured data on reachable network assets and domains to map the total attack surface of security programs.
  • Bug Bounty Dataset Aggregators - Provides a structured collection of target data and scopes aggregated from public bug bounty platforms.
  • Reconnaissance Workflow Automation - Automates the retrieval of program scopes to feed into custom scanning tools and reconnaissance pipelines.
  • Security Asset Inventories - Maintains a structured repository of reachable network assets and domains for attack surface mapping.
  • Bug Bounty Data Collection - Gathers and organizes lists of eligible target domains and applications from bug bounty platforms.
  • Vulnerability Disclosure Datasets - Provides a dataset of target domains and applications eligible for security testing across multiple programs.
  • Asset Discovery Filters - Provides mechanisms to isolate valid domains and applications for security testing from large data dumps.
  • Static JSON Stores - Persists processed security scopes as flat JSON files for fast read access and versioning.
  • Schema-Driven Data Normalizers - Standardizes inconsistent third-party data formats into a consistent internal structure for analysis.
  • External Data Ingestion - Retrieves structured data dumps from external platforms for custom filtering and analysis of security findings.
  • Security Platform Integrations - Fetches raw structured data from external security platforms to populate local target datasets.
  • Target Selection Filters - Filters large datasets of bounty programs to identify specific technologies that match researcher expertise.
  • Scraping Automators - Implements scheduled scripts to extract target assets from external platforms using specific filtering rules.
  • Target Discovery - Provides lists of domains eligible for bug bounty programs.
  • Reconnaissance and Mapping - Provides updated scope data for bug bounty programs.

Star history

Star history chart for arkadiyt/bounty-targets-dataStar history chart for arkadiyt/bounty-targets-data

How this analysis was created: This summary and feature list are AI-generated from collected project material and can contain mistakes. Stars, license and language are imported from GitHub. Inclusion does not mean that we have tested or audited this project. Check the source documentation for any feature you depend on. Learn more on our About page.

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Start searching with AI

Frequently asked questions

What does arkadiyt/bounty-targets-data do?

This project is a bug bounty target dataset and security asset list. It serves as a structured repository of reachable network assets, domains, and applications eligible for security testing across multiple vulnerability disclosure programs.

What are the main features of arkadiyt/bounty-targets-data?

The main features of arkadiyt/bounty-targets-data are: Attack Surface Mapping, Bug Bounty Dataset Aggregators, Reconnaissance Workflow Automation, Security Asset Inventories, Bug Bounty Data Collection, Vulnerability Disclosure Datasets, Asset Discovery Filters, Static JSON Stores.

Which projects share features with arkadiyt/bounty-targets-data?

Projects with overlapping indexed features include: six2dez/reconftw — reconftw is an attack surface management framework and reconnaissance workflow orchestrator designed to automate the… reddelexc/hackerone-reports — hackerone-reports is a bug bounty dataset aggregator and vulnerability intelligence tool designed to scrape and parse… edu4rdshl/findomain — Findomain is a subdomain enumeration and infrastructure analysis tool designed for attack surface mapping. It… owasp/nettacker — Nettacker is an automated penetration testing framework designed to orchestrate reconnaissance, port scanning, and… ice3man543/subfinder — Subfinder is a passive subdomain enumeration tool and DNS discovery utility designed to identify valid subdomains and… jaykali/maskphish — Maskphish is a comprehensive security toolkit that integrates capabilities for digital forensics, network…

Projects sharing features with Bounty Targets Data

These projects share indexed features with Bounty Targets Data. Shared tags can include platform or build tooling; verify the primary use case before treating a result as a replacement.
  • six2dez/reconftwsix2dez avatar

    six2dez/reconftw

    7,226View on GitHub↗

    reconftw is an attack surface management framework and reconnaissance workflow orchestrator designed to automate the discovery, mapping, and monitoring of external digital assets. It operates as a modular tool-chain pipeline that coordinates a sequence of security tools to perform intelligence gathering and vulnerability scanning. The project distinguishes itself through a cloud-native deployment model that parallelizes scanning workloads across a fleet of remote VPS instances to bypass local resource constraints. It utilizes container-based environment isolation to ensure consistent executio

    Shellbug-bountybugbountybugbounty-tool
    View on GitHub↗7,226
  • reddelexc/hackerone-reportsreddelexc avatar

    reddelexc/hackerone-reports

    5,331View on GitHub↗

    hackerone-reports is a bug bounty dataset aggregator and vulnerability intelligence tool designed to scrape and parse public security reports from the HackerOne platform. It functions as a security report parser that transforms raw bug bounty feeds into structured datasets for analysis. The system automates the collection of public vulnerability reports to identify common security patterns and facilitate security research. It specializes in organizing these disclosures by bug type, payout amount, and target program to enable vulnerability trend analysis. The tool covers capabilities for scra

    Pythonbugbountycsrfhackerone
    View on GitHub↗5,331
  • edu4rdshl/findomainEdu4rdSHL avatar

    Edu4rdSHL/findomain

    3,761View on GitHub↗

    Findomain is a subdomain enumeration and infrastructure analysis tool designed for attack surface mapping. It functions as a DNS reconnaissance suite that discovers subdomains using multiple data sources and API keys to identify the full extent of a target network. The system acts as an attack surface monitor by tracking subdomain changes over time and sending real-time alerts via webhooks when new assets are detected. It includes specialized capabilities for detecting DNS wildcards to filter false positives and resolving subdomain IPs through parallel resolution. The tool provides a workflo

    Rust
    View on GitHub↗3,761
  • owasp/nettackerOWASP avatar

    OWASP/Nettacker

    5,258View on GitHub↗

    Nettacker is an automated penetration testing framework designed to orchestrate reconnaissance, port scanning, and vulnerability detection. It functions as a network reconnaissance tool and vulnerability scanner that identifies open ports, fingerprints services, and checks systems against databases of known security flaws. The framework distinguishes itself by combining a web application crawler for discovering hidden paths via fuzzing with a vulnerability management system that persists scan results in a database to track historical assessments. It also includes specialized capabilities for

    Pythonautomationbruteforcecve
    View on GitHub↗5,258
  • Compare all 30 related projects→