OWASP Amass Alternatives

OWASP Amass is described as 'The OWASP Amass Project has developed a tool to help information security professionals perform network mapping of attack surfaces and perform external asset discovery using open source information gathering and active reconnaissance techniques' and is an app. There are eight alternatives to OWASP Amass for a variety of platforms, including Linux, Web-based, Self-Hosted, SaaS and BSD apps. The best OWASP Amass alternative is sn0int, which is both free and Open Source. Other great apps like OWASP Amass are Subfinder, BitNinja Server Security, Dnscan and Sublist3r.

Copy a direct link to this comment to your clipboard
OWASP Amass alternatives page was last updated

Alternatives list

  1. sn0int icon
     13 likes

    sn0int is a semi-automatic OSINT framework and package manager. It was built for IT security professionals and bug hunters to gather intelligence about a given target or about yourself. sn0int is enumerating attack surface by semi-automatically processing public information and...

    Cost / License

    Platforms

    • Mac
    • Windows
    • Linux
    • BSD
     
  2. Subfinder icon
     2 likes

    Subfinder is a subdomain discovery tool that discovers valid subdomains for websites by using passive online sources. It has a simple modular architecture and is optimized for speed. subfinder is built for doing one thing only - passive subdomain enumeration, and it does that...

    5 Subfinder alternatives

    Cost / License

    • Free
    • Open Source (MIT)

    Platforms

    • Linux
     
  3. BitNinja provides 3E Linux server protection for large hosting providers and small businesses equally. The three E stands for: effective, effortless, and enjoyable.

    Cost / License

    • Paid
    • Proprietary

    Application type

    Platforms

    • Linux
    • Software as a Service (SaaS)
     
  4. Dnscan icon
     1 like

    Dnscan is a python wordlist-based DNS subdomain scanner. The script will first try to perform a zone transfer using each of the target domain's nameservers. If this fails, it will lookup TXT and MX records for the domain.

    Cost / License

    • Free
    • Open Source (MIT)

    Platforms

    • Linux
    • Online
     
  5. Sublist3r icon
     3 likes

    Sublist3r is a python tool designed to enumerate subdomains of websites using OSINT. It helps penetration testers and bug hunters collect and gather subdomains for the domain they are targeting.

    Cost / License

    Platforms

    • Linux
    • Online
    • Self-Hosted
     
  6. Discover hidden subdomains with unparalleled speed and precision. SubDomainRadar.io is the ultimate subdomain finder and lookup tool for cybersecurity professionals, bug hunters, and pentesters, offering advanced enumeration through exclusive data sources and real-time search capabilities.

    Cost / License

    • Freemium
    • Proprietary

    Platforms

    • Online
     
  7. Anubis is a subdomain enumeration and information gathering tool. Anubis collates data from a variety of sources, including HackerTarget, DNSDumpster, x509 certs, VirusTotal, Google, Pkey, and NetCraft.

    Cost / License

    • Free
    • Open Source (MIT)

    Platforms

    • Linux
    • Online
    • Self-Hosted
     
  8. Lepus is a utility for identifying and collecting subdomains for a given domain. Subdomain discovery is a crucial part during the reconnaissance phase.

    Cost / License

    Platforms

    • Linux
    • Online
    • Self-Hosted
     
8 of 8 OWASP Amass alternatives