Sublist3r
GPL-2.0๐ Subdomain Enumeration ยท Python
Sublist3r is a fast Python-based subdomain enumeration tool that discovers valid subdomains using passive OSINT sources including search engines, certificate transparency logs, DNS aggregation services, and threat intelligence feeds. It queries Google, Bing, Yahoo, Baidu, Virustotal, ThreatCrowd, DNSdumpster, and other data sources to compile a comprehensive list of subdomains without sending any traffic directly to the target. Penetration testers and bug bounty hunters use Sublist3r during the reconnaissance phase to map an organization's external attack surface and identify forgotten or misconfigured subdomains that may be vulnerable to takeover or exploitation. While newer tools like Subfinder and Amass have expanded on its approach, Sublist3r remains widely used for its simplicity, speed, and reliability as a lightweight subdomain discovery utility.
Tags
Details
- Category
- ๐ Subdomain Enumeration
- Language
- Python
- Repository
- aboul3la/Sublist3r
- License
- GPL-2.0
- Platforms
- ๐งlinux๐macos๐ชwindows
Links
Community Reviews
No reviews yet. Be the first to review Sublist3r.
More in Subdomain Enumeration
Subfinder
GoFast passive subdomain enumeration tool. Uses multiple sources including certificate transparency logs.
Amass
GoIn-depth attack surface mapping and asset discovery. DNS enumeration, network mapping, OSINT data sources.
dnsx
GoFast multi-purpose DNS toolkit. Retries, wildcard filtering, and multiple resolver support.
Knock
PythonSubdomain enumeration tool using wordlist and DNS resolution. Supports VirusTotal and zone transfers.
Assetfinder
GoFind domains and subdomains potentially related to a given domain. Pulls from multiple passive sources.
Subjack
GoSubdomain takeover tool. Checks if CNAME records point to deprovisioned cloud services.