Recons101x 是一款便携式被动侦察工具,无需 API 密钥或第三方包,即可从 Shodan 的 ctl 端点枚举主机名。

Stars

9

7 天增长

暂无数据

Fork 数

0

开放 Issue

2

开源协议

MIT

最近更新

2026-07-29

AI 仓库情报摘要
FR-AI / ANALYSIS

为什么值得关注

无需依赖项、跨平台,利用 Shodan 数据实现快速被动主机名枚举,极大降低了侦察工具的部署门槛。

适合谁使用

  • 渗透测试人员与安全研究人员
  • 漏洞赏金猎人
  • 系统管理员(资产发现)
  • 红队成员(授权评估)

典型使用场景

  • 针对目标域发现面向 Web 的主机名,用于前期的信息收集
  • 批量枚举多个域,构建资产映射
  • 生成子域名列表,供后续被动或主动分析使用
  • 快速检查域的暴露情况,无需安装复杂工具

项目优势

  • 无需 API 密钥或第三方依赖,仅需 Python 3.10+
  • 在 Linux、Termux 和 Windows 上功能完全一致
  • 支持批量输入、JSON 输出以及可选的 DNS 解析
  • 输出到标准输出(stdout),格式为 域<TAB>主机名,便于管道和重定向

使用前须知

  • 数据仅来自 Shodan 的 ctl 端点,覆盖范围有限
  • 只能进行被动主机名发现,无法主动扫描或端口枚举
  • 需要能访问 ctl.shodan.io,且依赖该服务的可用性

README 快速开始

Installation

项目描述

Portable passive hostname reconnaissance through Shodan CTL

相关仓库与替代方案

根据分类、Topic 和编程语言匹配的相似项目。

m-novotny
精选
m-novotny GitHub avatar

memguard-rs

A Rust library that provides secure memory handling primitives including zeroization on drop, memory locking, constant-time comparison, and compile-time guarded regions, with zero dependencies and no_std support.

嵌入式与物联网安全
131
lopopolo
精选
lopopolo GitHub avatar

harness-engineering

Harness Engineering is a methodology for improving coding agent outputs by carefully crafting the environment around them—providing curated context, tools, and executable constraints that encode an organization’s nonfunctional requirements and cumulative lessons.

AI 与机器学习AI 智能体
2,390
slvDev
精选
slvDev GitHub avatar

esp32-ai

A 28.9 million parameter language model runs on an $8 ESP32-S3 microcontroller entirely on-device, generating simple stories at about 9.5 tokens per second.

AI 与机器学习大语言模型
1,960