Showing 36 of 39 projects
An AI-powered real-time global intelligence dashboard for news aggregation, geopolitical monitoring, and infrastructure tracking.
Collects a dossier on a person by checking for accounts on 3000+ websites using only a username.
A curated list of amazingly awesome open source intelligence (OSINT) tools and resources for cyber threat intelligence and investigations.
A curated collection of penetration testing tools, resources, and educational materials for offensive cybersecurity professionals.
An advanced information gathering framework for scanning international phone numbers to collect OSINT data.
Performs in-depth attack surface mapping and external asset discovery using open source intelligence and active reconnaissance.
Performs in-depth attack surface mapping and external asset discovery using open source intelligence and active reconnaissance.
A fast, passive subdomain enumeration tool for security researchers and penetration testers.
An incredibly fast web crawler designed for OSINT (Open Source Intelligence) data extraction.
A Python tool for fast subdomain enumeration using OSINT and bruteforce, designed for penetration testers and bug hunters.
A reconnaissance tool that finds potentially sensitive files in public GitHub repositories for security analysis.
A comprehensive, free information security reference covering techniques, tools, tactics, and resources for learning and professional development.
A tool for visual inspection of websites across many hosts, providing an overview of HTTP-based attack surfaces.
Domain name permutation engine for detecting homograph phishing attacks, typo squatting, and brand impersonation.
A modular reconnaissance framework for conducting open source intelligence (OSINT) gathering from web-based sources.
An open-source intelligence (OSINT) tool for crawling and analyzing websites on the dark web and beyond.
An OSINT tool that uses facial recognition to correlate social media profiles across multiple platforms for security professionals.
A command-line information gathering tool for websites, phone numbers, emails, and domains.
A semi-automatic OSINT framework and package manager for gathering intelligence and enumerating attack surfaces.
A network OSINT tool that automates subdomain enumeration, service fingerprinting, and data collection via Shodan and ViewDNS APIs.
An open-source OSINT tool that automates Twitter intelligence analysis by extracting and structuring user data, activity, and geolocation information.
A comprehensive offensive web application penetration testing framework with 108 modules covering reconnaissance to vulnerability analysis.
A comprehensive offensive web application penetration testing framework with 108 modules covering reconnaissance to vulnerability analysis.
A Python tool that catches potential phishing domains in near real-time by analyzing suspicious TLS certificate issuances via CertStream.
A pre-configured Linux virtual machine for adversary emulation and threat hunting with attacker and defender toolkits.
A curated collection of fascinating and bizarre Censys Search queries for discovering exposed devices and services.
An OSINT tool to investigate GitHub profiles, tracking usernames, emails, identities, and repositories.
An extendable Python tool to extract and aggregate Indicators of Compromise (IOCs) from various threat intelligence feeds.
An extendable Python tool to extract and aggregate Indicators of Compromise (IOCs) from various threat intelligence feeds.
A LinkedIn information gathering tool for penetration testers to collect employee data from organizations.
A Python library and CLI for extracting and refanging defanged Indicators of Compromise (IOCs) from text.
A Python tool for collecting security intelligence from public feeds about IPs, domains, URLs, emails, hashes, and SSL fingerprints.
Discover internet-wide misconfigurations in services like Elasticsearch, databases, and web servers using high-speed scanning tools.
A modular OSINT honeypot that monitors adversary reconnaissance attempts and generates early-warning intelligence for blue teams.
A modular Python tool that collects threat intelligence for hosts (IPs, domains, FQDNs) from multiple sources and outputs CSV data.
A tool that extracts all GraphQL endpoints from a given domain using subdomain enumeration, script analysis, and brute force.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.