List of Recon methodology,Recon tools and Bug Bounty writeups.

Des outils pour faire une cartographie d'un site

🛠 Total Recon will install all the recon tools you need https://github.com/vitalysim/totalrecon/blob/master/README.md

🛠 Identify technologies used on websites. https://www.shielder.it/ https://github.com/ShielderSec/webtech

🛠 A high performance offensive security tool for reconnaissance and vulnerability scanning https://github.com/evyatarmeged/Raccoon

🛠 WAFW00F allows one to identify and fingerprint Web Application Firewall (WAF) products protecting a website. https://github.com/EnableSecurity/wafw00f

🛠 Wappalyzer is a cross-platform utility that uncovers the technologies used on websites. It detects content management systems, ecommerce platforms, web frameworks, server software, analytics tools and many more. https://www.wappalyzer.com/

🛠 WhatWeb identifies websites. Its goal is to answer the question, “What is that Website?”. WhatWeb recognises web technologies including content management systems (CMS), blogging platforms, statistic/analytics packages, JavaScript libraries, web servers, and embedded devices. WhatWeb has over 1800 plugins, each to recognise something different. WhatWeb also identifies version numbers, email addresses, account IDs, web framework modules, SQL errors, and more. https://github.com/urbanadventurer/WhatWeb

Aquatone is a tool for visual inspection of websites across a large amount of hosts and is convenient for quickly gaining an overview of HTTP-based attack surface. https://github.com/michenriksen/aquatone

pdlist. A passive subdomain finder https://github.com/gnebbia/pdlist

Pyfiscan is free web-application vulnerability and version scanner and can be used to locate out-dated versions of common web-applications in Linux-servers https://github.com/fgeek/pyfiscan

My Recon Automation https://github.com/Mad-robot/Spartan

