Recon-ng

Recon-ng

Recon-ng is an open source web reconnaissance framework written in Python. It can be used to gather information, find relationships and map networks during penetration tests.
Recon-ng image
information-gathering penetration-testing web-reconnaissance network-mapping

Recon-ng: Open Source Web Reconnaissance Frameworks

An open source web reconnaissance framework written in Python for gathering information, finding relationships and mapping networks during penetration tests

What is Recon-ng?

Recon-ng is an open source web reconnaissance framework written in Python. It provides a powerful environment for web-based open source intelligence (OSINT) and security reconnaissance operations.

Some key features of Recon-ng include:

  • Modular design allowing extensions of functionality
  • Easy to use CLI interface
  • Handy utilities for managing workspaces, data, and modules
  • Powerful functionality for gathering information, finding relationships, and mapping networks

Recon-ng can gather publicly available information about hosts, domains, companies, people, and more from a variety of open data sources. It can also utilize APIs where available. The information gathered can be used to expand the attack surface and aid in penetration testing engagements.

With a strong community behind it providing updates and additional modules, Recon-ng continues to be one of the most popular reconnaissance tools used by security professionals and open source intelligence analysts.

Recon-ng Features

Features

  1. Passive reconnaissance through search engines
  2. Active reconnaissance through site scraping and service enumeration
  3. Resource manipulation through hosts and records database
  4. Data visualization through workspace reporting

Pricing

  • Open Source

Pros

Powerful web reconnaissance capabilities

Open source and free

Easy to use with Python framework

Extensible through modules and APIs

Cons

Steep learning curve

Potential legal issues with active reconnaissance

Requires technical knowledge to fully utilize

Not beginner friendly


The Best Recon-ng Alternatives

Top Security & Privacy and Web Reconnaissance and other similar apps like Recon-ng


WhatsMyName icon

WhatsMyName

WhatsMyName is a user-friendly software application developed to assist anyone who wants to learn more about names. It contains an extensive database of first names from around the world along with details on the history, etymology, stats, and trivia related to each name.Users simply enter any first name they choose...
WhatsMyName image
SpiderFoot icon

SpiderFoot

SpiderFoot is an open source intelligence (OSINT) automation tool used for gathering information from public sources. It helps collect data about IP addresses, domains, e-mail addresses, names, affiliations and more. SpiderFoot automates searches through over 100 data sources including search engines, PGP key servers, SHODAN, DNS records, subnets, ports, etc.Some...
SpiderFoot image
Prying Deep icon

Prying Deep

Prying Deep is an open-source forensic analysis and reverse engineering tool specifically designed for Android applications (APKs). It enables security testers, researchers, and Android developers to statically analyze Android packages to gain a deep understanding of what's happening under the hood.Some key features and capabilities of Prying Deep include:Decompiling and...
Prying Deep image
OSINTBuddy icon

OSINTBuddy

OSINTBuddy is an open source intelligence (OSINT) and public records search tool for gathering information from public sources online. It brings together various OSINT techniques and modules into one platform to help users efficiently search through social networks, public records databases, news articles, domain lookups, image searches, and other open...
OSINT-tool icon

OSINT-tool

OSINT-tool is an open-source intelligence (OSINT) gathering and analysis software application designed to help investigators, researchers, journalists, and analysts search, collect, analyze, visualize, and export publicly available data. It integrates various OSINT techniques and sources into one platform to streamline online investigations.Some key features of OSINT-tool include the ability to...
OSINT-tool image
Blackbird OSINT icon

Blackbird OSINT

Blackbird OSINT is an open-source intelligence and reconnaissance platform used for legally and ethically gathering information from public sources online. It brings together various tools and techniques for data collection, correlation, and analysis under one interface.Some of the key features of Blackbird OSINT include:Automated searches and scraping of data from...
Blackbird OSINT image
LinkScope Client icon

LinkScope Client

LinkScope Client is a powerful yet easy-to-use network topology mapping and visualization software. It automatically discovers all active devices on both wired and wireless networks, including routers, switches, servers, access points and more. It maps the connections between devices to provide an accurate, up-to-date view of your network infrastructure and...
LinkScope Client image