Reconnaissance refers to the process of gathering information about a target system, network, or organization, typically before launching an attack. The goal of recon is to understand the target's vulnerabilities, systems, and defenses to increase the likelihood of a successful breach or to defend a network by identifying its weak points.
SpiderFoot automates OSINT for threat intelligence and mapping your attack surface.
翻译 - SpiderFoot可以自动执行OSINT收集,因此您可以专注于分析。
In-depth attack surface mapping and asset discovery
翻译 - 深度攻击面映射和资产发现
#夺旗赛 (CTF) 和网络安全资源#E-mails, subdomains and names Harvester - OSINT
翻译 - 电子邮件,子域和名称Harvester-OSINT
OneForAll是一款功能强大的子域收集工具
The recursive internet scanner for hackers. 🧡
reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines, recon data correlation and organization, continuous mon...
翻译 - reNgine是一个自动侦察框架,用于在Web应用程序的渗透测试期间收集信息。 reNgine具有可自定义的扫描引擎,可用于扫描网站,端点和收集信息。
reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities
翻译 - 简单的脚本进行全面侦察
Official repository vuls Scan: 15000+PoCs; 23 kinds of application password crack; 7000+Web fingerprints; 146 protocols and 90000+ rules Port scanning; Fuzz, HW, awesome BugBounty( ͡° ͜ʖ ͡°)...
HTTP parameter discovery suite.
翻译 - HTTP参数发现套件。
ARL(Asset Reconnaissance Lighthouse)资产侦察灯塔系统旨在快速侦察与目标关联的互联网资产,构建基础资产信息库。 协助甲方安全团队或者渗透测试人员有效侦察和检索资产,发现存在的薄弱点和攻击面。
#网络爬虫#Simple, fast web crawler designed for easy, quick discovery of endpoints and assets within a web application
翻译 - 简单,快速的Web搜寻器,旨在轻松,快速地发现Web应用程序中的端点和资产
Email OSINT & Password breach hunting tool, locally or using premium services. Supports chasing down related email
翻译 - :mailbox_with_no_mail :: mag_right:本地或使用高级服务的密码泄露搜寻和电子邮件OSINT工具。支持追踪相关电子邮件
Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management
翻译 - 自动化渗透测试框架
Custom bash scripts used to automate various penetration testing tasks including recon, scanning, enumeration, and malicious payload creation using Metasploit. For use with Kali Linux.
#夺旗赛 (CTF) 和网络安全资源#Automation for internal Windows Penetrationtest / AD-Security
A collection of custom security tools for quick needs.
翻译 - 自定义笔测工具
A collection of awesome one-liner scripts especially for bug bounty tips.
Quickly discover exposed hosts on the internet using multiple search engines.
Utilize misconfigured DNS and old database records to find hidden IP's behind the CloudFlare network
翻译 - 利用配置错误的DNS和旧数据库记录来查找CloudFlare网络背后的隐藏IP