OWASP Amass Alternatives

OWASP Amass is described as 'The OWASP Amass Project has developed a tool to help information security professionals perform network mapping of attack surfaces and perform external asset discovery using open source information gathering and active reconnaissance techniques' and is an app. There are eight alternatives to OWASP Amass for a variety of platforms, including Linux, Web-based, Self-Hosted, SaaS and BSD apps. The best OWASP Amass alternative is sn0int, which is both free and Open Source. Other great apps like OWASP Amass are Subfinder, BitNinja Server Security, Dnscan and Sublist3r.

Copy a direct link to this comment to your clipboard
OWASP Amass alternatives page was last updated

Alternatives list

  1. sn0int icon
     13 likes
    Copy a direct link to this comment to your clipboard

    sn0int is a semi-automatic OSINT framework and package manager. It was built for IT security professionals and bug hunters to gather intelligence about a given target or about yourself. sn0int is enumerating attack surface by semi-automatically processing public information and...

    Cost / License

    Platforms

    • Mac
    • Windows
    • Linux
    • BSD
     
    • sn0int is the most popular Windows, Mac & Linux alternative to OWASP Amass.

    • sn0int is the most popular Open Source & free alternative to OWASP Amass.

    • sn0int is Free and Open SourceOWASP Amass is also Free and Open Source
  2. Subfinder icon
     2 likes
    Copy a direct link to this comment to your clipboard

    Subfinder is a subdomain discovery tool that discovers valid subdomains for websites by using passive online sources. It has a simple modular architecture and is optimized for speed. subfinder is built for doing one thing only - passive subdomain enumeration, and it does that...

    Cost / License

    • Free
    • Open Source (MIT)

    Platforms

    • Linux
     
  3. Copy a direct link to this comment to your clipboard

    BitNinja provides 3E Linux server protection for large hosting providers and small businesses equally. The three E stands for: effective, effortless, and enjoyable.

    Cost / License

    • Subscription
    • Proprietary

    Application type

    Platforms

    • Linux
    • Software as a Service (SaaS)
     
    • BitNinja Server Security is the most popular SaaS alternative to OWASP Amass.

    • BitNinja Server Security is the most popular commercial alternative to OWASP Amass.

    • BitNinja Server Security is Paid and ProprietaryOWASP Amass is Free and Open Source
  4. Dnscan icon
     1 like
    Copy a direct link to this comment to your clipboard

    Dnscan is a python wordlist-based DNS subdomain scanner. The script will first try to perform a zone transfer using each of the target domain's nameservers. If this fails, it will lookup TXT and MX records for the domain.

    Cost / License

    • Free
    • Open Source (MIT)

    Platforms

    • Linux
    • Online
     
    • Dnscan is the most popular Web-based alternative to OWASP Amass.

    • Dnscan is Free and Open SourceOWASP Amass is also Free and Open Source
  5. Sublist3r icon
     3 likes
    Copy a direct link to this comment to your clipboard

    Sublist3r is a python tool designed to enumerate subdomains of websites using OSINT. It helps penetration testers and bug hunters collect and gather subdomains for the domain they are targeting.

    Cost / License

    Platforms

    • Linux
    • Online
    • Self-Hosted
     
    • Sublist3r is the most popular Self-Hosted alternative to OWASP Amass.

    • Sublist3r is Free and Open SourceOWASP Amass is also Free and Open Source
  6. Copy a direct link to this comment to your clipboard

    Discover hidden subdomains with unparalleled speed and precision. SubDomainRadar.io is the ultimate subdomain finder and lookup tool for cybersecurity professionals, bug hunters, and pentesters, offering advanced enumeration through exclusive data sources and real-time search capabilities.

    Cost / License

    • Freemium (Subscription)
    • Proprietary

    Platforms

    • Online
     
  7. Copy a direct link to this comment to your clipboard

    Anubis is a subdomain enumeration and information gathering tool. Anubis collates data from a variety of sources, including HackerTarget, DNSDumpster, x509 certs, VirusTotal, Google, Pkey, and NetCraft.

    Cost / License

    • Free
    • Open Source (MIT)

    Platforms

    • Linux
    • Online
    • Self-Hosted
     
  8. Copy a direct link to this comment to your clipboard

    Lepus is a utility for identifying and collecting subdomains for a given domain. Subdomain discovery is a crucial part during the reconnaissance phase.

    6 Lepus Subdomain finder alternatives

    Cost / License

    Platforms

    • Linux
    • Online
    • Self-Hosted
     
8 of 8 OWASP Amass alternatives