awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectAboutHow we rankPressMCP server
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Back to fwaeytens/dnsenum

Open-source alternatives to Dnsenum

30 open-source projects similar to fwaeytens/dnsenum, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best Dnsenum alternative.

  • darkoperator/dnsrecondarkoperator avatar

    darkoperator/dnsrecon

    3,032View on GitHub↗

    DNS Enumeration Script

    Python
    View on GitHub↗3,032
  • aboul3la/sublist3raboul3la avatar

    aboul3la/Sublist3r

    10,957View on GitHub↗

    Sublist3r is a subdomain enumeration tool and passive reconnaissance framework designed to discover subdomains by querying search engines and public intelligence sources. It functions as a security tool for identifying the digital footprint of a target domain. The project provides both passive enumeration through multi-source API aggregation and active discovery via a DNS brute force tool. It includes a TCP port scanner to identify active services and open ports on discovered subdomains, facilitating attack surface mapping. The tool can be used as a standalone utility or as a Python security

    Python
    View on GitHub↗10,957
  • therook/subbruteTheRook avatar

    TheRook/subbrute

    3,515View on GitHub↗

    A DNS meta-query spider that enumerates DNS records, and subdomains.

    Python
    View on GitHub↗3,515
  • robertdavidgraham/masscanrobertdavidgraham avatar

    robertdavidgraham/masscan

    25,355View on GitHub↗

    Masscan is a command-line network scanner designed for large-scale discovery and infrastructure reconnaissance. It identifies open ports across specific network segments or the entire internet by probing vast address ranges with high efficiency. The tool functions as an asynchronous packet engine, bypassing standard operating system kernel networking stacks to transmit raw packets directly from application memory. The project distinguishes itself through a specialized architecture that manages millions of concurrent connections by separating packet transmission and reception into independent

    C
    View on GitHub↗25,355

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Find more with AI search
  • mschwager/fiercemschwager avatar

    mschwager/fierce

    1,792View on GitHub↗

    A DNS reconnaissance tool for locating non-contiguous IP space.

    Pythondiscovered-domainsdnsdomain
    View on GitHub↗1,792
  • michenriksen/aquatonemichenriksen avatar

    michenriksen/aquatone

    5,940View on GitHub↗

    Aquatone is a web screenshot reconnaissance tool that captures full-page screenshots of web services discovered during network reconnaissance and groups them by visual similarity. It scans a list of hosts or domains for HTTP and HTTPS services on common and custom ports to find responsive web endpoints, then takes full-page screenshots of those pages for quick review. The tool accepts piped input from other tools and extracts URLs, domains, and IP addresses using regex pattern matching, making it pipeline-friendly for integration into existing workflows. It can also read XML output from Nmap

    Go
    View on GitHub↗5,940
  • ivre/ivreivre avatar

    ivre/ivre

    4,065View on GitHub↗

    This project is a network reconnaissance framework and internet metadata database used for collecting, storing, and analyzing data from active scanners and passive traffic captures. It functions as a threat intelligence aggregator and passive traffic analysis tool, merging scan results from multiple tools into a unified dataset for security investigation. The system distinguishes itself through its ability to visualize network assets using heatmaps and geographic charts to correlate autonomous systems and domain names. It provides external attack surface management by aggregating metadata to

    Pythonbroeasmexternal-attack-surface-management
    View on GitHub↗4,065
  • hackerschoice/thc-tips-tricks-hacks-cheat-sheethackerschoice avatar

    hackerschoice/thc-tips-tricks-hacks-cheat-sheet

    3,853View on GitHub↗

    This project is a comprehensive command-line reference and toolkit designed for Linux system administration and network security assessment. It provides a collection of technical snippets and operational guides focused on managing remote environments, orchestrating shell sessions, and executing administrative tasks through native terminal utilities. The repository distinguishes itself by offering specialized techniques for stealthy operations and infrastructure manipulation. It covers methods for establishing encrypted tunnels to bypass firewalls, obfuscating process identities and command hi

    Shell
    View on GitHub↗3,853
  • zmap/zmapzmap avatar

    zmap/zmap

    6,246View on GitHub↗

    ZMap is a fast single packet network scanner designed for Internet-wide network surveys.

    Cinternet-measurementinternet-scanningport-scanner
    View on GitHub↗6,246
  • floriankunushevci/rang3rF

    floriankunushevci/rang3r

    0View on GitHub↗
    View on GitHub↗0
  • gamelinux/passivednsgamelinux avatar

    gamelinux/passivedns

    1,737View on GitHub↗

    A network sniffer that logs all DNS server replies for use in a passive DNS setup

    C
    View on GitHub↗1,737
  • evilsocket/xrayevilsocket avatar

    evilsocket/xray

    2,316View on GitHub↗

    XRay is a tool for recon, mapping and OSINT gathering from public networks.

    Go
    View on GitHub↗2,316
  • edu4rdshl/findomainEdu4rdSHL avatar

    Edu4rdSHL/findomain

    3,761View on GitHub↗

    Findomain is a subdomain enumeration and infrastructure analysis tool designed for attack surface mapping. It functions as a DNS reconnaissance suite that discovers subdomains using multiple data sources and API keys to identify the full extent of a target network. The system acts as an attack surface monitor by tracking subdomain changes over time and sending real-time alerts via webhooks when new assets are detected. It includes specialized capabilities for detecting DNS wildcards to filter false positives and resolving subdomain IPs through parallel resolution. The tool provides a workflo

    Rust
    View on GitHub↗3,761
  • johnnyxmas/scancannonjohnnyxmas avatar

    johnnyxmas/ScanCannon

    476View on GitHub↗

    A script for credentials-based attack surface enumeration and general reconnaissance of massive networks

    Shell
    View on GitHub↗476
  • lanmaster53/recon-nglanmaster53 avatar

    lanmaster53/recon-ng

    5,698View on GitHub↗

    recon-ng is an open source intelligence reconnaissance framework designed to automate the collection and aggregation of public information. It is a modular intelligence tool that utilizes a system of pluggable modules to harvest target data, resolve DNS queries, and parse web content. The framework is built as an API-driven tool with a programmatic interface to integrate with other security workflows. It is provided as a containerized application, using Docker to ensure a consistent environment for running reconnaissance tasks and managing a persistent data store. Its capabilities cover exte

    Python
    View on GitHub↗5,698
  • laramies/theharvesterlaramies avatar

    laramies/theHarvester

    15,687View on GitHub↗

    theHarvester is a command-line utility designed for gathering open-source intelligence and mapping an organization's external attack surface. It functions as a security information gathering framework that automates the collection of publicly available data to assist in reconnaissance and threat analysis. The tool utilizes a plugin-based architecture to execute isolated queries against various search engines and public databases. It employs asynchronous task execution to run multiple discovery operations in parallel, while a centralized pipeline aggregates and deduplicates findings from these

    Pythonblueteamdiscoveryemails
    View on GitHub↗15,687
  • leebaird/discoverleebaird avatar

    leebaird/discover

    3,892View on GitHub↗

    Discover is an integrated suite of security tools designed for penetration testing, container auditing, payload generation, network reconnaissance, and automated open-source intelligence gathering. This collection of bash scripts provides a coordinated framework for security auditing on Kali Linux and Ubuntu. The toolkit includes a specialized generator for creating reverse shell payloads across various hardware architectures and operating systems, paired with automated configuration for network listeners. It also features a dedicated container security auditor to identify vulnerabilities, le

    Shellbashenumerationinformation-gathering
    View on GitHub↗3,892
  • m0rtem/cloudfailm0rtem avatar

    m0rtem/CloudFail

    2,637View on GitHub↗

    Utilize misconfigured DNS and old database records to find hidden IP's behind the CloudFlare network

    Python
    View on GitHub↗2,637
  • m8r0wn/subscraperM

    m8r0wn/subscraper

    0View on GitHub↗
    View on GitHub↗0
  • makefu/dnsmapmakefu avatar

    makefu/dnsmap

    118View on GitHub↗

    fork of http://code.google.com/p/dnsmap/source/checkout

    C
    View on GitHub↗118
  • manisso/cripsM

    Manisso/Crips

    0View on GitHub↗
    View on GitHub↗0
  • cyberark/aclightcyberark avatar

    cyberark/ACLight

    828View on GitHub↗

    A script for advanced discovery of Privileged Accounts - includes Shadow Admins

    PowerShell
    View on GitHub↗828
  • ciscocxsecurity/enum4linuxCiscoCXSecurity avatar

    CiscoCXSecurity/enum4linux

    1,399View on GitHub↗

    A Linux alternative to enum.exe for enumerating data from Windows and Samba hosts.

    Perl
    View on GitHub↗1,399
  • netdiscover-scanner/netdiscovernetdiscover-scanner avatar

    netdiscover-scanner/netdiscover

    385View on GitHub↗

    Netdiscover, ARP Scanner (official repository)

    C
    View on GitHub↗385
  • owasp/amassOWASP avatar

    OWASP/Amass

    14,722View on GitHub↗

    Amass is a network attack surface mapper and reconnaissance framework designed to discover and map the external, internet-facing infrastructure of a target organization. It functions as an open source intelligence tool that identifies public network boundaries and locates hidden or forgotten subdomains to define an organization's total reachable footprint. The project utilizes passive-source data aggregation from external APIs and public databases alongside active DNS brute-forcing and recursive subdomain expansion. It employs a graph-based asset mapping system to visualize the relationships

    Go
    View on GitHub↗14,722
  • projectdiscovery/nucleiprojectdiscovery avatar

    projectdiscovery/nuclei

    29,189View on GitHub↗

    Nuclei is a modular security scanning framework designed for automated vulnerability detection and infrastructure reconnaissance. It functions as a template-driven engine that executes security checks across diverse network protocols, allowing users to define custom detection logic to identify vulnerabilities, misconfigurations, and exposed assets. The platform distinguishes itself through its highly extensible architecture, which supports distributed scanning, headless browser automation for dynamic web content, and out-of-band interaction monitoring to detect blind vulnerabilities. It integ

    Goattack-surfacecve-scannerdast
    View on GitHub↗29,189
  • prowler-cloud/prowlerprowler-cloud avatar

    prowler-cloud/prowler

    13,049View on GitHub↗

    Prowler is an automated cloud infrastructure security scanner and posture management tool. It evaluates cloud environments and infrastructure-as-code templates against security benchmarks to identify misconfigurations, vulnerabilities, and compliance gaps that could compromise system integrity. The platform distinguishes itself through graph-based attack path analysis, which identifies chains of misconfigurations that create exploitable routes for unauthorized access. It utilizes a plugin-based execution model to perform state-based assessments of live environments and static analysis of conf

    Pythonawsazurecis-benchmark
    View on GitHub↗13,049
  • rannden-sha/enumeranndenRannden-SHA avatar

    Rannden-SHA/EnumeRannden

    44View on GitHub↗

    Welcome to EnumeRannden, a comprehensive automation script for penetration testing and reconnaissance, created by Adrián Gisbert - Aka Rannden-SHA. This tool is designed to streamline and enhance your penetration testing workflow by integrating a variety of essential tools and functionalities…

    Shell
    View on GitHub↗44
  • chrislee35/passivedns-clientchrislee35 avatar

    chrislee35/passivedns-client

    201View on GitHub↗

    passivedns-client provides a library and a query tool for querying several passive DNS providers

    Ruby
    View on GitHub↗201
  • rustscan/rustscanRustScan avatar

    RustScan/RustScan

    19,932View on GitHub↗

    RustScan is a high-speed TCP network scanner written in Rust, designed for security reconnaissance and network mapping. It functions as an automated port discovery engine that identifies open ports on remote hosts using IPv6 addresses, CIDR ranges, or bulk input files. The tool is built for rapid surface area discovery, utilizing parallel port processing and OS-aware performance optimizations to identify active services. It allows for scan precision tuning through adjustable connection timeout thresholds and concurrent request controls to balance speed and accuracy. The system integrates wit

    Rust
    View on GitHub↗19,932