Library
- Trickest Library
- Modules
- Attack Surface Management
- Cloud Storage
- Containers
- Content Discovery
- Discovery
- Fuzzing
- Machine Learning
- Misconfiguration
- Network
- OSINT
- Passwords
- Recon
- Scanners
- Secret Discovery
- Social Engineering
- Static Code Analysis
- Threat Intelligence
- Utilities
- Vulnerabilities
- Vulnerability Scanning
OSINT Tools
Explore a collection of powerful and efficient tools in the OSINT category to enhance your productivity and security.
dnsdumpster-dns-lookup
Look up DNS records on DNSDumpster
dnsdumpster-host-search
Look up a host on DNSDumpster
dnstwist
See what sort of trouble users can get in trying to type your domain name. Find lookalike domains that adversaries can use to attack you. Can detect typosquatters, phishing attacks, fraud, and brand impersonation. Useful as an additional source of targeted threat intelligence.
enumerepo
List all public repositories for (valid) Github usernames
favup
Lookups for real IP starting from the favicon icon and using Shodan.
infoga
Infoga is a tool gathering email accounts informations (ip,hostname,country,...) from different public source (search engines, pgp key servers and shodan) and check if emails was leaked using haveibeenpwned.com API.
maigret
Collect a dossier on a person by username from thousands of sites
pastos
Search for strings in paste sites
pymeta
Search the web for files on a domain to download and extract metadata. This technique can be used to identify: domains, usernames, software/version numbers and naming conventions.
shodan-download
Download json.gz data from shodan.
shodan-python
Shodan is a search engine for Internet-connected devices. Google lets you search for websites, Shodan lets you search for devices.
socialscan
Socialscan offers accurate and fast checks for email address and username usage on online platforms. Given an email or username, socialscan returns whether it is available, taken or invalid on online platforms.