subdomain
There are 489 repositories under subdomain topic.
owasp-amass/amass
In-depth attack surface mapping and asset discovery
shmilylty/OneForAll
OneForAll是一款功能强大的子域收集工具
is-a-dev/register
Grab your own sweet-looking '.is-a.dev' subdomain.
six2dez/reconftw
reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities
js-org/js.org
Dedicated to JavaScript and its awesome community since 2015
EdOverflow/can-i-take-over-xyz
"Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.
tobychui/zoraxy
A general purpose HTTP reverse proxy and forwarding tool. Now written in Go!
blechschmidt/massdns
A high-performance DNS stub resolver for bulk lookups and reconnaissance (subdomain enumeration)
knownsec/ksubdomain
无状态子域名爆破工具
open-domains/register
Free subdomains for personal sites, open-source projects, and more.
haccer/subjack
Subdomain Takeover tool written in Go
insightglacier/Dictionary-Of-Pentesting
Dictionary collection project such as Pentesing, Fuzzing, Bruteforce and BugBounty. 渗透测试、SRC漏洞挖掘、爆破、Fuzzing等字典收集项目。
d3mondev/puredns
Puredns is a fast domain resolver and subdomain bruteforcing tool that can accurately filter out wildcard subdomains and DNS poisoned entries.
mschwager/fierce
A DNS reconnaissance tool for locating non-contiguous IP space.
m3n0sd0n4ld/GooFuzz
GooFuzz is a tool to perform fuzzing with an OSINT approach, managing to enumerate directories, files, subdomains or parameters without leaving evidence on the target's server and by means of advanced Google searches (Google Dorking).
j3ssie/metabigor
OSINT tools and more but without API key
jonluca/Anubis
Subdomain enumeration and information gathering tool
k8gege/K8CScan
K8Ladon大型内网渗透自定义插件化扫描神器,包含信息收集、网络资产、漏洞扫描、密码爆破、漏洞利用,程序采用多线程批量扫描大型内网多个IP段C段主机,目前插件包含: C段旁注扫描、子域名扫描、Ftp密码爆破、Mysql密码爆破、Oracle密码爆破、MSSQL密码爆破、Windows/Linux系统密码爆破、存活主机扫描、端口扫描、Web信息探测、操作系统版本探测、Cisco思科设备扫描等,支持调用任意外部程序或脚本,支持Cobalt Strike联动
boy-hack/ksubdomain
Subdomain enumeration tool, asynchronous dns packets, use pcap to scan 1600,000 subdomains in 1 second
k8gege/Aggressor
Ladon 911 for Cobalt Strike & Cracked Download,Large Network Penetration Scanner, vulnerability / exploit / detection / MS17010 / password/brute-force/psexec/atexec/sshexec/webshell/smbexec/netcat/osscan/netscan/struts2Poc/weblogicExp
robotshell/magicRecon
MagicRecon is a powerful shell script to maximize the recon and data collection process of an objective and finding common vulnerabilities, all this saving the results obtained in an organized way in directories and with various formats.
bit4woo/teemo
A Domain Name & Email Address Collection Tool
Ice3man543/SubOver
A Powerful Subdomain Takeover Tool
pwnesia/dnstake
DNSTake — A fast tool to check missing hosted DNS zones that can lead to subdomain takeover
Qftm/Information_Collection_Handbook
Handbook of information collection for penetration testing and src
tarampampam/domains
🌐 DNS configuration for some of my domains
celrenheit/lion
Lion is a fast HTTP router for building modern scalable modular REST APIs in Go
yanxiu0614/subdomain3
A new generation of tool for discovering subdomains( ip , cdn and so on)
bit4woo/domain_hunter
A Burp Suite Extension that try to find all sub-domain, similar-domain and related-domain of an organization automatically! 基于流量自动收集整个企业或组织的子域名、相似域名、相关域名的burp插件
blark/aiodnsbrute
Python 3.5+ DNS asynchronous brute force utility
ARPSyndicate/puncia
Panthera(P.)uncia - Official CLI utility for Osprey Vision, Subdomain Center & Exploit Observer.
Cgboal/SonarSearch
A rapid API for the Project Sonar dataset
appsecco/bugcrowd-levelup-subdomain-enumeration
This repository contains all the material from the talk "Esoteric sub-domain enumeration techniques" given at Bugcrowd LevelUp 2017 virtual conference
free-domains/register
Free subdomains for personal sites, open-source projects, and more.
3nock/OTE
OSINT Template Engine
v4d1/Dome
Dome - Subdomain Enumeration Tool. Fast and reliable python script that makes active and/or passive scan to obtain subdomains and search for open ports.