domain: osint
284 products, primary matches first, then adoption-weighted; health v2 shown.
| Product | Health v2 | Stars | Maturity |
|---|---|---|---|
| Yvesssn/DetectDee DetectDee is a Go CLI tool for OSINT that hunts down social media accounts by username, email, or phone number across many social networks.… | 20 | 1806 | maintenance |
| mrh0wl/Cloudmare Cloudmare is a Python CLI tool that discovers the origin servers of websites protected by Cloudflare, Sucuri, or Incapsula when their DNS i… | 10 | 1784 | maintenance |
| megadose/OnionSearch OnionSearch is a Python 3 CLI script that scrapes URLs from multiple .onion search engines such as Ahmia, Phobos, and Deeplink. It supports… | 32 | 1777 | maintenance |
| EASY233/Finger Finger is a Python-based red team tool that performs liveness probing and web system fingerprint detection across large asset lists, identi… | 32 | 1724 | maintenance |
| threatexpress/domainhunter Domain Hunter is a Python CLI tool that finds expired or available domains with prior benign usage history via ExpiredDomains.net, then che… | 32 | 1678 | maintenance |
| Ekultek/WhatBreach WhatBreach is a Python CLI OSINT tool that searches email addresses against known data breaches via services like HIBP, dehashed, hunter.io… | 48 | 1662 | maintenance |
| martinmarinov/TempestSDR A software toolkit for remotely eavesdropping on video monitors by capturing compromising electromagnetic emanations from video cables usin… | 32 | 1615 | maintenance |
| zidansec/CloudPeler CrimeFlare is a PHP command-line OSINT tool that attempts to reveal the real origin IP address behind websites protected by Cloudflare's WA… | 10 | 1576 | maintenance |
| BishopFox/GitGot GitGot is a semi-automated, feedback-driven CLI tool for searching public GitHub data (code and gists) for exposed sensitive secrets. Users… | 32 | 1571 | maintenance |
| Viralmaniar/BigBountyRecon BigBountyRecon is a C# Windows GUI tool that automates initial reconnaissance on a target organisation using 58 techniques, including Googl… | 23 | 1564 | maintenance |
| th3unkn0n/osi.ig A Python CLI tool that gathers OSINT information about Instagram accounts, including profile details, tags, mentions, emails, and post meta… | 32 | 1552 | maintenance |
| SharadKumar97/OSINT-SPY OSINT-SPY is a Python command-line tool that performs open-source intelligence scans on emails, domains, IP addresses, organizations, Bitco… | 23 | 1543 | maintenance |
| ExpertAnonymous/PhoneInfoga A Termux-oriented shell-script distribution of PhoneInfoga, an OSINT reconnaissance tool for scanning international phone numbers using fre… | 32 | 1523 | maintenance |
| CTF-MissFeng/bayonet Bayonet is a self-hosted web-based IT asset management and attack-surface platform for penetration testers, integrating subdomain enumerati… | 23 | 1517 | maintenance |
| gwen001/github-search A collection of Python, PHP, and Bash scripts that perform targeted searches on GitHub via its search API to find secrets, keys, private re… | 23 | 1511 | maintenance |
| woj-ciech/LeakLooker A Python CLI tool that uses the Binaryedge.io API to find publicly exposed databases and services such as MongoDB, Elasticsearch, CouchDB, … | 10 | 1464 | maintenance |
| twelvesec/gasmask GasMasK is an all-in-one open source OSINT and reconnaissance tool written in Python 3. It aggregates information about a target domain fro… | 23 | 1462 | maintenance |
| davidtavarez/pwndb pwndb.py is a Python command-line tool for searching leaked credentials via the pwndb Onion service through a Tor proxy. It supports search… | 10 | 1412 | maintenance |
| sham00n/buster Buster is a Python command-line OSINT tool for email reconnaissance. It finds social accounts linked to an email, data breaches, pastes, re… | 32 | 1395 | maintenance |
| TideSec/Mars Mars is a self-hosted security platform for asset discovery, subdomain enumeration, port and web fingerprinting, and change monitoring of i… | 32 | 1376 | maintenance |
| w-digital-scanner/w12scan w12scan is a self-hosted network asset discovery engine that aggregates scan results into a searchable web interface backed by Elasticsearc… | 23 | 1331 | maintenance |
| redhuntlabs/RedHunt-OS RedHunt OS is a pre-configured Linux virtual machine (OVA) bundling adversary emulation and threat hunting tools such as Caldera, Atomic Re… | 33 | 1318 | maintenance |
| salesforce/jarm JARM is an active TLS server fingerprinting tool that generates unique fingerprints of TLS server configurations. It is used to group and i… | 76 | 1317 | maintenance |
| laramies/metagoofil Metagoofil is a Python command-line OSINT tool that searches Google for public documents (pdf, doc, xls, ppt) on target websites, downloads… | 32 | 1313 | maintenance |
| mandiant/ThreatPursuit-VM ThreatPursuit-VM is an open-source Windows-based virtual machine distribution from Mandiant preloaded with tools for threat intelligence an… | 10 | 1306 | maintenance |
| c4tcom/Katana Katana-ds is a Python CLI tool that automates advanced Google queries known as Google Dorks (Google Dorking), with optional Tor support for… | 10 | 1304 | maintenance |
| devanshbatham/FavFreak A Python CLI tool that fetches favicon.ico files from lists of URLs, computes their mmh3 hashes, and groups domains/subdomains/IPs by match… | 23 | 1298 | maintenance |
| LangziFun/LangSrcCurise LangSrcCurise is a Django-based automated subdomain asset monitoring system for security researchers tracking SRC (Security Response Center… | 32 | 1294 | maintenance |
| hubert3/iSniff-GPS iSniff-GPS is a passive WiFi sniffing tool that captures SSID probes, ARPs, and MDNS packets from nearby iOS devices to infer their previou… | 32 | 1288 | maintenance |
| dchrastil/ScrapedIn A Python CLI tool that scrapes LinkedIn without API restrictions to enumerate employees of a target company for red team or social engineer… | 32 | 1235 | maintenance |
| vysecurity/LinkedInt LinkedInt is a Python CLI tool for LinkedIn reconnaissance that scrapes employee profiles for a target company and generates an HTML report… | 10 | 1214 | maintenance |
| Viralmaniar/I-See-You ISeeYou is a Bash and JavaScript tool that captures a target's exact GPS coordinates (latitude/longitude) during social engineering or phis… | 32 | 1199 | maintenance |
| tejado/telegram-nearby-map A Node.js web application that uses Telegram's official TDLib to discover nearby Telegram users who have enabled the nearby feature and vis… | 32 | 1189 | maintenance |
| SpiderLabs/HostHunter HostHunter is a Python CLI recon tool that maps IPv4/IPv6 targets to virtual hostnames using OSINT and active reconnaissance techniques suc… | 23 | 1169 | maintenance |
| MiSecurity/x-patrol A GitHub leak scanning system written in Go that monitors GitHub for leaked secrets and sensitive code. It provides a web management consol… | 23 | 1152 | maintenance |
| s045pd/DarkNet_ChineseTrading A Python-based real-time crawler that monitors Chinese-language darknet marketplaces over Tor, with automatic account registration, login, … | 10 | 1149 | maintenance |
| shr3ddersec/Shr3dKit Shr3dKit is a shell script that installs a large curated collection of red team and offensive security tools onto a Kali Linux system (hard… | 32 | 1131 | maintenance |
| devxprite/infoooze Infoooze is a Node.js-based OSINT (Open-Source Intelligence) CLI tool for quickly gathering information about websites, IP addresses, usern… | 23 | 1071 | maintenance |
| daprofiler/DaProfiler DaProfiler is a Python-based OSINT CLI tool that traces a person's digital identity from a first and last name, recovering email addresses,… | 10 | 1040 | maintenance |
| yassineaboukir/sublert Sublert is a Python CLI security and reconnaissance tool that uses certificate transparency logs to monitor new subdomains issued TLS/SSL c… | 32 | 1034 | maintenance |
| averagesecurityguy/scripts A collection of Python scripts written for use during penetration testing engagements, organized into categories like brute forcing, enumer… | 32 | 1033 | maintenance |
| Malfrats/xeuledoc A Python CLI tool that fetches information about public Google documents across Drive, Docs, Sheets, Slides, and other Google Workspace ser… | 32 | 1023 | maintenance |
| bit4woo/teemo Teemo is a Python command-line reconnaissance tool that collects domains, subdomains, and email addresses for a target organization. It agg… | 32 | 1016 | maintenance |
| paulirish/github-email A small Node.js CLI tool that retrieves a GitHub user's email address even when it is not publicly listed, by querying the GitHub user prof… | 32 | 1011 | maintenance |
| s7ckTeam/Glass Glass is a Python CLI tool for rapid fingerprint identification of asset lists, querying Fofa, ZoomEye, Shodan, and 360 Quake APIs to gathe… | 32 | 1010 | maintenance |
| TideSec/FuzzScanner FuzzScanner is a Ruby/Python-based reconnaissance toolset that batch-collects information about target websites, including subdomains, open… | 32 | 1008 | maintenance |
| s0md3v/Striker Striker is a Python-based offensive reconnaissance and vulnerability scanning suite that discovers subdomains, scans common ports, detects … | 23 | 2341 | experimental |
| twintproject/twint Twint is a Python CLI tool and library that scrapes tweets, followers, following, and likes from Twitter without using the official API or … | 10 | 16398 | abandoned |
| Greenwolf/social_mapper Social Mapper is a Python 3 OSINT tool that enumerates and correlates social media profiles across sites like LinkedIn, Facebook, Twitter, … | 32 | 4073 | abandoned |
| eth0izzle/shhgit shhgit is a secrets detection tool that scans GitHub, GitLab, Bitbucket repositories and local directories for accidentally committed crede… | 36 | 3977 | abandoned |
| IvanGlinkin/CCTV CCTV (Close-Circuit Telegram Vision) is an open-source OSINT tool that abuses Telegram's 'People Nearby' feature to triangulate and track u… | 28 | 2478 | abandoned |
| evilsocket/xray XRay is a Go-based CLI tool for network reconnaissance and OSINT that enumerates subdomains via DNS bruteforcing, gathers open-port intelli… | 10 | 2331 | abandoned |
| UnkL4b/GitMiner GitMiner is a Python CLI tool for advanced searching and mining of code and code snippets on GitHub, often used to find sensitive informati… | 45 | 2152 | abandoned |
| eth0izzle/bucket-stream A Python CLI tool that monitors certificate transparency logs via certstream and discovers public Amazon S3 buckets by generating permutati… | 36 | 1808 | abandoned |
| sorenlouv/fb-sleep-stats A Node.js proof-of-concept tool that polls Facebook's online/offline status to infer and visualize friends' sleep patterns. It consists of … | 32 | 1707 | abandoned |
| sc1341/InstagramOSINT A Python CLI tool and importable module that scrapes publicly available profile information from Instagram accounts, such as follower count… | 10 | 1651 | abandoned |
| ring04h/wydomain wydomain is a Python command-line tool for discovering subdomains of a target domain. It combines dictionary-based DNS bruteforcing with qu… | 32 | 1479 | abandoned |
| ilektrojohn/creepy Creepy is a geolocation OSINT application that gathers location-related information about targets from social networking platforms. It pres… | 23 | 1470 | abandoned |
| dark-kingA/superSearchPlus superSearchPlus is a Chrome browser extension that aggregates information gathering for white-hat hackers, integrating common asset mapping… | 32 | 1436 | abandoned |
| woj-ciech/kamerka Kamerka is a Python CLI script that builds an interactive map of internet-exposed cameras, printers, tweets, and photos around given coordi… | 10 | 1269 | abandoned |
| n0tr00t/Sreg Sreg is a Python CLI OSINT tool that checks whether an email, phone number, or username has been used to register accounts across many Chin… | 32 | 1246 | abandoned |
| prose-intelligence-ltd/Telepathy-Community Telepathy-Community is a Python command-line OSINT toolkit for collecting and analyzing public Telegram chats, including archiving messages… | 76 | 1235 | abandoned |
| 0xlousie/OSIF OSIF is a Python command-line tool that gathers sensitive information from Facebook accounts, such as residence, date of birth, occupation,… | 32 | 1223 | abandoned |
| 4x99/code6 Code6 (码小六) is a self-hosted web application that monitors GitHub for leaked code and secrets, scanning periodically and alerting via email… | 23 | 1177 | abandoned |
| xillwillx/skiptracer Skiptracer is a Python-based OSINT web scraping framework that aggregates paid and free lookup services to enumerate target information suc… | 23 | 1146 | abandoned |
| joshhighet/ransomwatch A transparent ransomware claim tracker that monitors ransomware groups' leak sites on the dark web and records their victim claims. It aggr… | 10 | 1116 | abandoned |
| j3ssie/osmedeus Osmedeus is a security-focused declarative orchestration engine that lets users define reconnaissance and vulnerability-scanning pipelines … | 93 | 6538 | active |
| aidlearning/AidLearning-FrameWork AidLux (originally AidLearning) is an AIoT development platform that runs a native Ubuntu Linux environment with GUI, deep learning tooling… | 70 | 5797 | active |
| Oros42/IMSI-catcher A Python tool that decodes GSM radio traffic captured via software-defined radio receivers (RTL-SDR, HackRF, BladeRF, OsmocomBB) to display… | 71 | 4515 | active |
| darkoperator/dnsrecon DNSRecon is a Python-based DNS enumeration tool for security assessments and network troubleshooting. It supports zone transfer checks, gen… | 91 | 3061 | active |
| samugit83/redamon RedAmon is an AI-powered agentic red team framework that automates offensive security operations end-to-end, chaining reconnaissance, explo… | 81 | 2354 | active |
| kismetwireless/kismet Kismet is a wireless network detector, sniffer, and intrusion detection system for Wi-Fi, Bluetooth, SDR, and other wireless protocols. It … | 77 | 2210 | active |
| spyboy-productions/r4ven R4ven is a security awareness and penetration testing tool that hosts a web page which, when a user grants browser permissions, captures GP… | 60 | 1492 | active |
| projectdiscovery/wappalyzergo A high-performance Go library that ports the Wappalyzer technology detection stack, identifying web technologies from HTTP headers and HTML… | 95 | 1092 | active |
| thehackingsage/hackdroid HackDroid is a curated collection of 364+ pentesting and security-related Android apps organized into categories like MITM, forensics, snif… | 32 | 1072 | active |
| TheRook/subbrute SubBrute is a Python DNS meta-query spider that enumerates subdomains and arbitrary DNS record types by leveraging open resolvers to bypass… | 23 | 3526 | maintenance |
| JosephLai241/URS URS (Universal Reddit Scraper) is a comprehensive command-line tool written in Python (with Rust components) for scraping and archiving Red… | 64 | 1020 | active |
| x0rz/tweets_analyzer A Python command-line script that scrapes a Twitter profile's tweets and analyzes metadata such as activity patterns, timezone, sources, ge… | 23 | 2981 | maintenance |
| 0xInfection/TIDoS-Framework TIDoS is a Python-based offensive web application penetration testing framework with a Metasploit-like console interface and an optional Qt… | 23 | 1868 | maintenance |
| vincentcox/bypass-firewalls-by-DNS-history A shell script that attempts to bypass web application firewalls (like Cloudflare, Incapsula, SUCURI) by finding the origin server IP throu… | 32 | 1306 | maintenance |
| XploitWizer-Community/XploitSPY XploitSPY is a self-hosted, cloud-based Android monitoring tool built on NodeJS that logs GPS, SMS, calls, notifications, microphone audio,… | 32 | 1273 | maintenance |
| utkusen/wholeaked wholeaked is a file-sharing tool written in Go that embeds a unique hidden signature for each recipient into a shared file. If the file lea… | 23 | 1100 | maintenance |
| TheKingOfDuck/ApkAnalyser A Python-based command-line tool that extracts potentially sensitive information from Android APK files, including URLs, IPs, hashes, acces… | 23 | 1004 | maintenance |
| chinoogawa/fbht A Python 2 command-line tool for interacting with and scraping Facebook accounts, including graph-based analysis of social connections. It … | 23 | 1591 | abandoned |
← prev page 3 / 3