Open-Awesome
CategoriesAlternativesStacksSelf-HostedExplore
Open-Awesome

© 2026 Open-Awesome. Curated for the developer elite.

TermsPrivacyAboutGitHubRSS
  1. Home
  2. CTF
  3. Raccoon

Raccoon

MITPython

A high-performance offensive security tool for reconnaissance, vulnerability scanning, and information gathering.

GitHubGitHub
4.0k stars503 forks0 contributors

What is Raccoon?

Raccoon is a high-performance offensive security tool designed for reconnaissance and vulnerability scanning. It automates information gathering tasks such as DNS analysis, WHOIS lookups, TLS data extraction, port scanning, subdomain enumeration, and web application reconnaissance to help identify security weaknesses.

Target Audience

Security professionals, penetration testers, ethical hackers, and red teamers who need an efficient tool for comprehensive reconnaissance and initial vulnerability assessment during security audits.

Value Proposition

Developers choose Raccoon for its simplicity, asynchronous performance, and comprehensive feature set that covers a wide range of reconnaissance tasks in a single tool, with support for anonymous routing via Tor/proxies and structured output organization.

Overview

A high performance offensive security tool for reconnaissance and vulnerability scanning

Use Cases

Best For

  • Performing initial reconnaissance during penetration testing engagements
  • Automating DNS, WHOIS, and TLS data collection for security assessments
  • Enumerating subdomains and discovering hidden web application endpoints
  • Identifying open ports and services with integrated Nmap scanning
  • Detecting web application firewalls and analyzing web app configurations
  • Conducting anonymous security scans via Tor or proxy lists

Not Ideal For

  • Operations requiring purely passive reconnaissance without active scanning
  • Teams needing automated JSON output for integration with security orchestration platforms
  • Environments where scan speed must not be compromised by anonymity features like Tor
  • Users who prefer graphical interfaces over command-line tools for data visualization

Pros & Cons

Pros

Asynchronous Speed

Uses Python's asyncio to run independent scans concurrently, maximizing efficiency as stated in the Philosophy, reducing total runtime for comprehensive reconnaissance.

Comprehensive Coverage

Integrates DNS, WHOIS, TLS analysis, port scanning with Nmap, and web app reconnaissance into a single tool, automating a wide range of tasks from the Key Features list.

Stealth Options

Supports anonymous routing through Tor and proxy lists, enabling stealthy operations for ethical hacking, as highlighted in the Features and Usage sections.

Structured Output Management

Saves results in organized folders per target and files per module, making it easy to review and analyze scan data, as demonstrated in the Screenshots.

Cons

Dependency Heavy

Requires separate installation of Nmap and OpenSSL, adding complexity to setup compared to self-contained tools, as noted in the Prerequisites section.

Output Format Limitations

Currently lacks JSON output, which is on the roadmap, hindering easy data parsing and integration with other security tools for automated workflows.

Performance Trade-off with Anonymity

Using Tor or proxies significantly slows down scans, as admitted in the Usage options with warnings like 'Slows total runtime', impacting time-sensitive operations.

Frequently Asked Questions

Quick Stats

Stars4,015
Forks503
Contributors0
Open Issues12
Last commit4 months ago
CreatedSince 2018

Tags

#python-tool#enumeration#vulnerability-assessment#asyncio#pentest-tool#information-gathering#penetration-testing#reconnaissance#vulnerability-scanner#vulnerability-scanning#web-application-security#offensive-security#network-security#hacking-tool#scanner#security-scanner#nmap-integration#pentesting

Built With

O
OpenSSL
a
asyncio
N
Nmap
P
Python
D
Docker

Included in

Web Security13.2kCTF11.4k
Auto-fetched 9 hours ago

Related Projects

Metasploit JavaScript ObfuscatorMetasploit JavaScript Obfuscator

Metasploit Framework

Stars38,956
Forks14,960
Last commit1 day ago
SQLMapSQLMap

Automatic SQL injection and database takeover tool

Stars38,387
Forks6,358
Last commit1 day ago
UglifyUglify

JavaScript parser / mangler / compressor / beautifier toolkit

Stars13,382
Forks1,223
Last commit1 year ago
PhotonPhoton

Incredibly fast crawler designed for OSINT.

Stars13,175
Forks1,678
Last commit4 days ago
Community-curated · Updated weekly · 100% open source

Found a gem we're missing?

Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.

Submit a projectStar on GitHub