awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
Findomain avatar

Findomain/Findomain

0
View on GitHub↗
3,684 stars·391 forks·Rust·gpl-3.0·20 viewsfindomain.app↗

Findomain

Findomain is a subdomain discovery tool and DNS resolver used for mapping an organization's external attack surface. It functions as a DNS infrastructure analyzer that searches for registered subdomains associated with a root domain to uncover undocumented infrastructure and services.

The project includes an attack surface monitor that tracks changes to subdomains over time, using differential state monitoring to identify newly created or deleted assets. It provides real-time alerting via webhooks when changes in the monitored domain surface are detected.

The system performs high-speed DNS resolution using multi-threaded queries and custom DNS server integration. Its capabilities extend to capturing visual evidence of active web services through headless browser screenshotting and consolidating reconnaissance data by importing subdomain lists from external tools.

Features

  • Attack Surface Mapping - Maps an organization's public digital footprint by identifying all registered subdomains and IP addresses.
  • Subdomain Discoveries - Provides a comprehensive system for discovering and mapping all registered subdomains to uncover an organization's external attack surface.
  • Subdomain Discovery - Searches for hidden or undocumented subdomains associated with a root domain.
  • DNS Resolution - Performs bulk resolution of subdomains to IP addresses for network routing analysis.
  • Parallel Resolution - Implements high-speed bulk DNS resolution using multi-threaded query distribution.
  • Attack Surface Management - Monitors the external attack surface by tracking subdomain changes and sending real-time alerts.
  • Custom DNS Resolvers - Provides the ability to specify custom external DNS servers for host resolution.
  • Passive Reconnaissance Aggregators - Aggregates subdomain data from multiple external public sources to build a comprehensive asset list.
  • Infrastructure Monitoring - Tracks changes to subdomains over time to monitor the evolution of network infrastructure.
  • Asset Delta Monitoring - Tracks the addition or removal of subdomains to detect changes in the attack surface.
  • State Change Monitoring - Tracks changes in the discovered subdomain state to identify new or removed assets.
  • Domain Analysis - Inspects domain infrastructure by resolving IPs and capturing screenshots to identify open ports.
  • IP and DNS Discovery - Analyzes DNS infrastructure by resolving subdomains and capturing visual evidence of active services.
  • Browser Screenshot Capture - Captures visual evidence of active web services on discovered subdomains using headless browsers.
  • Reconnaissance Result Aggregators - Consolidates subdomain discovery data from multiple external reconnaissance tools into a unified dataset.
  • Reconnaissance and Discovery - Fast domain recognition tool with screenshotting, port scan, and subdomain monitoring.
  • Subdomain Enumeration - Fast, cross-platform subdomain enumeration.
  • Application Security - High-performance cross-platform subdomain enumerator.

Star history

Star history chart for findomain/findomainStar history chart for findomain/findomain

How this analysis was created: This summary and feature list are AI-generated from collected project material and can contain mistakes. Stars, license and language are imported from GitHub. Inclusion does not mean that we have tested or audited this project. Check the source documentation for any feature you depend on. Learn more on our About page.

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Start searching with AI

Projects sharing features with Findomain

These projects share indexed features with Findomain. Shared tags can include platform or build tooling; verify the primary use case before treating a result as a replacement.
  • edu4rdshl/findomainEdu4rdSHL avatar

    Edu4rdSHL/findomain

    3,761View on GitHub↗

    Findomain is a subdomain enumeration and infrastructure analysis tool designed for attack surface mapping. It functions as a DNS reconnaissance suite that discovers subdomains using multiple data sources and API keys to identify the full extent of a target network. The system acts as an attack surface monitor by tracking subdomain changes over time and sending real-time alerts via webhooks when new assets are detected. It includes specialized capabilities for detecting DNS wildcards to filter false positives and resolving subdomain IPs through parallel resolution. The tool provides a workflo

    Rust
    View on GitHub↗3,761
  • six2dez/reconftwsix2dez avatar

    six2dez/reconftw

    7,226View on GitHub↗

    reconftw is an attack surface management framework and reconnaissance workflow orchestrator designed to automate the discovery, mapping, and monitoring of external digital assets. It operates as a modular tool-chain pipeline that coordinates a sequence of security tools to perform intelligence gathering and vulnerability scanning. The project distinguishes itself through a cloud-native deployment model that parallelizes scanning workloads across a fleet of remote VPS instances to bypass local resource constraints. It utilizes container-based environment isolation to ensure consistent executio

    Shellbug-bountybugbountybugbounty-tool
    View on GitHub↗7,226
  • blacklanternsecurity/bbotblacklanternsecurity avatar

    blacklanternsecurity/bbot

    9,929View on GitHub↗

    This project is an open-source intelligence reconnaissance framework and recursive attack surface mapper. It functions as a containerized security scanner designed to map public-facing infrastructure, perform subdomain enumeration, and automate the gathering of open-source intelligence. The system employs a recursive discovery engine to iteratively explore target infrastructure, utilizing a plugin-based module architecture to extend scanning capabilities. It integrates third-party APIs for data enrichment and applies YARA rules across discovered assets to identify specific vulnerability patte

    Python
    View on GitHub↗9,929
  • yogeshojha/rengineyogeshojha avatar

    yogeshojha/rengine

    8,472View on GitHub↗

    Rengine is an automated reconnaissance framework and vulnerability management platform designed for attack surface monitoring. It functions as a centralized hub for discovering subdomains and open ports, gathering open-source intelligence, and tracking security flaws across target networks. The system integrates large language models to analyze reconnaissance data and generate vulnerability descriptions and insights. It distinguishes itself through a plugin-based tool integration that wraps external security scanning binaries and a target mapping system that tracks changes to assets over time

    HTMLbug-bountybugbountyhacking
    View on GitHub↗8,472
Compare all 30 related projects→

Frequently asked questions

What does findomain/findomain do?

Findomain is a subdomain discovery tool and DNS resolver used for mapping an organization's external attack surface. It functions as a DNS infrastructure analyzer that searches for registered subdomains associated with a root domain to uncover undocumented infrastructure and services.

What are the main features of findomain/findomain?

The main features of findomain/findomain are: Attack Surface Mapping, Subdomain Discoveries, Subdomain Discovery, DNS Resolution, Parallel Resolution, Attack Surface Management, Custom DNS Resolvers, Passive Reconnaissance Aggregators.

Which projects share features with findomain/findomain?

Projects with overlapping indexed features include: edu4rdshl/findomain — Findomain is a subdomain enumeration and infrastructure analysis tool designed for attack surface mapping. It… six2dez/reconftw — reconftw is an attack surface management framework and reconnaissance workflow orchestrator designed to automate the… blacklanternsecurity/bbot — This project is an open-source intelligence reconnaissance framework and recursive attack surface mapper. It functions… yogeshojha/rengine — Rengine is an automated reconnaissance framework and vulnerability management platform designed for attack surface… jaykali/maskphish — Maskphish is a comprehensive security toolkit that integrates capabilities for digital forensics, network… 1n3/sn1per — Sn1per is a vulnerability management platform and penetration testing orchestrator designed to automate…