Reconnaissance refers to the process of gathering information about a target system, network, or organization, typically before launching an attack. The goal of recon is to understand the target's vulnerabilities, systems, and defenses to increase the likelihood of a successful breach or to defend a network by identifying its weak points.
In-depth attack surface mapping and asset discovery
翻译 - 深度攻击面映射和资产发现
#夺旗赛 (CTF) 和网络安全资源# E-mails, subdomains and names Harvester - OSINT
翻译 - 电子邮件,子域和名称Harvester-OSINT
reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines, recon data correlation and organization, continuous mon...
翻译 - reNgine是一个自动侦察框架,用于在Web应用程序的渗透测试期间收集信息。 reNgine具有可自定义的扫描引擎,可用于扫描网站,端点和收集信息。
A recursive internet scanner for hackers. 🧡
HTTP parameter discovery suite.
翻译 - HTTP参数发现套件。
ARL(Asset Reconnaissance Lighthouse)资产侦察灯塔系统旨在快速侦察与目标关联的互联网资产,构建基础资产信息库。 协助甲方安全团队或者渗透测试人员有效侦察和检索资产,发现存在的薄弱点和攻击面。
#网络爬虫# Simple, fast web crawler designed for easy, quick discovery of endpoints and assets within a web application
翻译 - 简单,快速的Web搜寻器,旨在轻松,快速地发现Web应用程序中的端点和资产
Utilize misconfigured DNS and old database records to find hidden IP's behind the CloudFlare network
翻译 - 利用配置错误的DNS和旧数据库记录来查找CloudFlare网络背后的隐藏IP
Puredns is a fast domain resolver and subdomain bruteforcing tool that can accurately filter out wildcard subdomains and DNS poisoned entries.
翻译 - Puredns是一种快速的域解析器和子域暴力破解工具,可以准确地过滤出通配符子域和DNS中毒条目。
#网络爬虫# Take a list of domains, crawl urls and scan for endpoints, secrets, api keys, file extensions, tokens and more
翻译 - 获取域列表、抓取 url 并扫描端点、机密、api 密钥、文件扩展名、令牌等...
Reconnaissance tool for GitHub code search. Scans for exposed API keys across all of GitHub, not just known repos and orgs.
翻译 - GitHound使用模式匹配,提交历史搜索和独特的结果评分系统来精确定位GitHub上公开的API密钥。批量捕获,模式匹配,补丁攻击的秘密抢夺者。
Making Favicon.ico based Recon Great again !
翻译 - 使基于Favicon.ico的Recon再次出色!
BigBountyRecon tool utilises 58 different techniques using various Google dorks and open source tools to expedite the process of initial reconnaissance on the target organisation.
翻译 - BigBountyRecon工具利用58种不同的技术,使用了各种Google工具和开源工具,以加快对目标组织的初步侦查过程。
Information Gathering tool - DNS / Subdomains / Ports / Directories enumeration
Generates combination of domain names from the provided input.
翻译 - 根据提供的输入生成域名组合。
Go CLI and Library for quickly mapping organization network ranges using ASN information.
Vajra is a highly customizable target and scope based automated web hacking framework to automate boring recon tasks and same scans for multiple target during web applications penetration testing.
翻译 - VAJRA是一种高度可定制的目标和基于范围的自动网络黑客框架,可在Web应用程序穿透测试期间自动化钻孔RECOR任务和多个目标的相同扫描。