Go Bugbounty

Open-source Go projects categorized as Bugbounty

Top 23 Go Bugbounty Projects

  1. subfinder

    Fast passive subdomain enumeration tool.

    Project mention: Ask HN: How did internet discover my subdomain? | news.ycombinator.com | 2025-03-06

    I'm surprised nobody mentioned subfinder yet: https://github.com/projectdiscovery/subfinder

    Subfinder uses different public and private sources to discover subdomains. Certificate Transparency logs are a great source, but it also has some other options.

  2. InfluxDB

    InfluxDB – Built for High-Performance Time Series Workloads. InfluxDB 3 OSS is now GA. Transform, enrich, and act on time series data directly in the database. Automate critical tasks and eliminate the need to move data externally. Download now.

    InfluxDB logo
  3. httpx

    httpx is a fast and multi-purpose HTTP toolkit that allows running multiple probes using the retryablehttp library. (by projectdiscovery)

  4. hetty

    An HTTP toolkit for security research.

  5. scan4all

    Official repository vuls Scan: 15000+PoCs; 23 kinds of application password crack; 7000+Web fingerprints; 146 protocols and 90000+ rules Port scanning; Fuzz, HW, awesome BugBounty( ͡° ͜ʖ ͡°)...

  6. osmedeus

    A Workflow Engine for Offensive Security

  7. hakrawler

    Simple, fast web crawler designed for easy, quick discovery of endpoints and assets within a web application

  8. dalfox

    🌙🦊 Dalfox is a powerful open-source XSS scanner and utility focused on automation.

  9. SaaSHub

    SaaSHub - Software Alternatives and Reviews. SaaSHub helps you find the best software and product alternatives

    SaaSHub logo
  10. interactsh

    An OOB interaction gathering server and client library

  11. S3Scanner

    Scan for misconfigured S3 buckets across S3-compatible APIs!

    Project mention: Hacking misconfigured AWS S3 buckets: A complete guide | news.ycombinator.com | 2024-09-09
  12. uncover

    Quickly discover exposed hosts on the internet using multiple search engines.

  13. jaeles

    The Swiss Army knife for automated Web Application Testing

  14. puredns

    Puredns is a fast domain resolver and subdomain bruteforcing tool that can accurately filter out wildcard subdomains and DNS poisoned entries.

    Project mention: Recon v2: Um curto update sobre como estou mudando meu processo de recon | dev.to | 2025-02-09
  15. cariddi

    Take a list of domains, crawl urls and scan for endpoints, secrets, api keys, file extensions, tokens and more

  16. gotestwaf

    An open-source project in Golang to asess different API Security tools and WAF for detection logic and bypasses

  17. urlhunter

    a recon tool that allows searching on URLs that are exposed via shortener services

  18. metabigor

    OSINT tools and more but without API key

  19. git-hound

    Recon tool leveraging GitHub Code Search API. Scans for exposed API keys across all of GitHub, not just known repos and orgs.

  20. nomore403

    🚫 Advanced tool for security researchers to bypass 403/40X restrictions through smart techniques and adaptive request manipulation. Fast. Precise. Effective.

  21. go-dork

    The fastest dork scanner written in Go.

  22. scilla

    Information Gathering tool - DNS / Subdomains / Ports / Directories enumeration

  23. CloudBrute

    Awesome cloud enumerator

    Project mention: ⛈️ Cloud Penetration Testing: A Practical Guide to Securing Your Cloud Infrastructure | dev.to | 2024-12-03

    # Clone and setup CloudBrute git clone https://github.com/0xsha/CloudBrute cd CloudBrute # Run a scan against a target domain ./CloudBrute -d target.com -k wordlist.txt -m storage -t 80

  24. cent

    Community edition nuclei templates, a simple tool that allows you to organize all the Nuclei templates offered by the community in one place (by xm1k3)

  25. shortscan

    An IIS short filename enumeration tool

  26. SaaSHub

    SaaSHub - Software Alternatives and Reviews. SaaSHub helps you find the best software and product alternatives

    SaaSHub logo
NOTE: The open source projects on this list are ordered by number of github stars. The number of mentions indicates repo mentiontions in the last 12 Months or since we started tracking (Dec 2020).

Go Bugbounty discussion

Log in or Post with

Go Bugbounty related posts

Index

What are some of the best open-source Bugbounty projects in Go? This list will help you:

# Project Stars
1 subfinder 11,647
2 httpx 8,483
3 hetty 6,888
4 scan4all 5,667
5 osmedeus 5,582
6 hakrawler 4,701
7 dalfox 4,251
8 interactsh 3,746
9 S3Scanner 2,754
10 uncover 2,598
11 jaeles 2,231
12 puredns 1,864
13 cariddi 1,668
14 gotestwaf 1,658
15 urlhunter 1,587
16 metabigor 1,322
17 git-hound 1,293
18 nomore403 1,243
19 go-dork 1,196
20 scilla 1,007
21 CloudBrute 1,004
22 cent 970
23 shortscan 929

Sponsored
InfluxDB – Built for High-Performance Time Series Workloads
InfluxDB 3 OSS is now GA. Transform, enrich, and act on time series data directly in the database. Automate critical tasks and eliminate the need to move data externally. Download now.
www.influxdata.com