Reconnaissance is the process of gathering information about targets through passive and active techniques, often as the first phase of an assessment. This category includes subdomain enumeration, asset discovery, ASN/IP lookups, crawling, and other data-gathering tools used across bug bounty hunting, red teaming, and pentesting.

A recursive internet scanner for hackers, designed to automate Recon, Bug Bounties, and ASM with a focus on comprehensive subdomain enumeration.

Hunt for AI coding artifacts containing secrets by scanning public GitHub repositories for leaked credentials in AI coding tool configuration files.

ffuf is a fast web fuzzer written in Go, designed for content discovery and web application security testing.

httpx is a fast and multi-purpose HTTP toolkit for reconnaissance, probing, and information gathering with retries and backoffs.

reNgine is an automated web reconnaissance framework streamlining the recon process for security professionals and bug bounty hunters.

reconFTW automates reconnaissance, subdomain enumeration, and vulnerability checks, providing comprehensive target information.