Exposor is a tool using internet search engines to detect exposed technologies with a unified syntax.
-
Updated
Nov 12, 2025 - Python
Exposor is a tool using internet search engines to detect exposed technologies with a unified syntax.
Passive recon & attack surface mapper — zero requests sent
Evidence-first AI OSINT casefile with 40 passive modules, live recon streaming, provenance-led reports, and an entity graph.
Grassmarlin replacement. Open-source multi-user ICS/SCADA passive network discovery and topology platform. Upload PCAPs, visualize OT networks, generate assessment reports. Flask + Docker. The open-source engine behind Fathom.
Passive Attack Surface Toolkit: Module-based passive OSINT recon for web domains. Runs non-destructive subdomain/DNS/WHOIS/SSL/header/wayback/tech discovery, maps depth‑1 surface, computes a 0–100 exposure score, and emits presentation-ready HTML, JSON, Markdown and an interactive graph.
OSINT Exposure Toolkit: A modular, passive reconnaissance CLI that inspects emails, domains, and usernames for leaks and misconfigurations. Generates interactive HTML, JSON and Markdown reports and a visual exposure graph. Includes GitHub secret scans, HIBP/LeakCheck support, Shodan, Google dorks, JS and metadata scanning.
Passive attack-surface scanner: turn a domain into a risk grade, copy-paste fixes, and a client-ready report. Safe DNS, HTTP, TLS, email, and certificate-transparency checks.
Passive Reconnaissance Techniques Approach helps for penetration testing and bug bounty hunting by gathering information about a target system or network.
Instagram information gathering
Phone number osint
A lightweight Python tool for passive reconnaissance, including subdomain, email, and S3 bucket extraction, with AI-powered scanner for sensitive infrastructure mentions.
Recon-Scan: open‑source passive reconnaissance with AI‑powered security analysis. Zero‑touch, developer‑first, and privacy‑focused.
This is a Python script that provides the ability to perform: Check all NS Records for Zone Transfers. Enumerate General DNS Records for a given Domain (MX, SOA, NS, A, AAAA, SPF and TXT). Perform common SRV Record Enumeration. Top Level Domain (TLD) Expansion.
Passive subdomain enumeration tool in Python. Collects subdomains, resolves DNS, and optionally checks HTTP/HTTPS status.
⚡ Passive OSINT reconnaissance tool — subdomains, GitHub leaks, Shodan, Wayback Machine
An intelligent, Human-in-the-Loop OSINT framework.
Origin IP discovery & recon tool — free replacement for CrimeFlare
🕵️ Purely passive OSINT/EASM/CTEM platform — 15+ data sources, zero-touch asset discovery, risk detection
Passive hybrid fingerprinting engine — identify hosts without sending a single packet
A basic passive reconnaissance tool made using Python. It checks tech stacks, security headers and hidden directories in a website.
Add a description, image, and links to the passive-recon topic page so that developers can more easily learn about it.
To associate your repository with the passive-recon topic, visit your repo's landing page and select "manage topics."