Skip to content

NullSec recon security toolkit - discord.gg/killers

Notifications You must be signed in to change notification settings

bad-antics/nullsec-recon

Folders and files

NameName
Last commit message
Last commit date

Latest commit

Β 

History

2 Commits
Β 
Β 
Β 
Β 

Repository files navigation

πŸ” NullSec Recon

Advanced Reconnaissance & OSINT Toolkit

Discord GitHub License

Go Python TypeScript

    β–ˆβ–ˆβ–ˆβ–„    β–ˆ  β–ˆ    β–ˆβ–ˆ  β–ˆβ–ˆβ–“     β–ˆβ–ˆβ–“      β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆ β–“β–ˆβ–ˆβ–ˆβ–ˆβ–ˆ  β–„β–ˆβ–ˆβ–ˆβ–ˆβ–„  
    β–ˆβ–ˆ β–€β–ˆ   β–ˆ  β–ˆβ–ˆ  β–“β–ˆβ–ˆβ–’β–“β–ˆβ–ˆβ–’    β–“β–ˆβ–ˆβ–’    β–’β–ˆβ–ˆ    β–’ β–“β–ˆ   β–€ β–’β–ˆβ–ˆβ–€ β–€β–ˆ  
   β–“β–ˆβ–ˆ  β–€β–ˆ β–ˆβ–ˆβ–’β–“β–ˆβ–ˆ  β–’β–ˆβ–ˆβ–‘β–’β–ˆβ–ˆβ–‘    β–’β–ˆβ–ˆβ–‘    β–‘ β–“β–ˆβ–ˆβ–„   β–’β–ˆβ–ˆβ–ˆ   β–’β–“β–ˆ    β–„ 
   β–“β–ˆβ–ˆβ–’  β–β–Œβ–ˆβ–ˆβ–’β–“β–“β–ˆ  β–‘β–ˆβ–ˆβ–‘β–’β–ˆβ–ˆβ–‘    β–’β–ˆβ–ˆβ–‘      β–’   β–ˆβ–ˆβ–’β–’β–“β–ˆ  β–„ β–’β–“β–“β–„ β–„β–ˆβ–ˆβ–’
   β–’β–ˆβ–ˆβ–‘   β–“β–ˆβ–ˆβ–‘β–’β–’β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–“ β–‘β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–’β–‘β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–’β–’β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–’β–’β–‘β–’β–ˆβ–ˆβ–ˆβ–ˆβ–’β–’ β–“β–ˆβ–ˆβ–ˆβ–€ β–‘
   β–‘ β–’β–‘   β–’ β–’ β–‘β–’β–“β–’ β–’ β–’ β–‘ β–’β–‘β–“  β–‘β–‘ β–’β–‘β–“  β–‘β–’ β–’β–“β–’ β–’ β–‘β–‘β–‘ β–’β–‘ β–‘β–‘ β–‘β–’ β–’  β–‘
     β–‘    β–‘    β–‘   β–‘   β–‘         β–‘            β–‘   β–‘   β–‘        
   β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„β–„
   β–ˆβ–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘ R E C O N β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–ˆ
   β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€β–€
                       bad-antics

πŸ”“ Join discord.gg/killers for premium features!


🎯 Features

Tool Language Description Free Premium
subfinder Go Fast subdomain discovery βœ… πŸ”₯
dnsrecon Go DNS enumeration & zone transfer βœ… πŸ”₯
wayback Python Wayback Machine scraper βœ… πŸ”₯
gitscan Go GitHub/GitLab secret scanner ❌ πŸ”₯
emailhunter Python Email address harvester βœ… πŸ”₯
techdetect Go Technology stack detector βœ… πŸ”₯

πŸ“ Structure

nullsec-recon/
β”œβ”€β”€ go/
β”‚   β”œβ”€β”€ subfinder/       # Subdomain enumeration
β”‚   β”œβ”€β”€ dnsrecon/        # DNS reconnaissance
β”‚   β”œβ”€β”€ techdetect/      # Tech stack detection
β”‚   └── gitscan/         # Git repository scanner
β”œβ”€β”€ python/
β”‚   β”œβ”€β”€ wayback.py       # Wayback Machine scraper
β”‚   β”œβ”€β”€ emailhunter.py   # Email harvester
β”‚   β”œβ”€β”€ whois_lookup.py  # WHOIS information
β”‚   └── shodan_search.py # Shodan integration
└── scripts/
    β”œβ”€β”€ full_recon.sh    # Complete recon automation
    └── report_gen.py    # Report generator

πŸš€ Quick Start

# Subdomain enumeration
./subfinder -d example.com -o subdomains.txt

# DNS reconnaissance
./dnsrecon -d example.com --all

# Wayback URLs
python3 wayback.py -d example.com -o urls.txt

# Full automated recon
./scripts/full_recon.sh example.com

πŸ”§ Tool Details

subfinder (Go) - Subdomain Discovery

Sources:

  • Certificate Transparency (crt.sh)
  • DNS bruteforce
  • Search engines (Google, Bing, Yahoo)
  • VirusTotal, SecurityTrails
  • Web archives
# Basic enumeration
./subfinder -d target.com

# With custom wordlist
./subfinder -d target.com -w subdomains.txt

# Multiple sources
./subfinder -d target.com --all -o results.txt

# JSON output
./subfinder -d target.com -json | jq

techdetect (Go) - Technology Detection

Detects:

  • Web frameworks (React, Angular, Vue)
  • CMS (WordPress, Drupal, Joomla)
  • Web servers (nginx, Apache, IIS)
  • Programming languages
  • CDN providers
  • Analytics/tracking
# Scan single URL
./techdetect -u https://example.com

# Scan list of URLs
./techdetect -l urls.txt -o tech_report.json

⚠️ Legal Disclaimer

For authorized security testing only. Only perform reconnaissance on systems you have permission to test.


NullSec Framework | GitHub | Discord