OWASP Amass Alternatives

    OWASP Amass is described as 'The OWASP Amass Project has developed a tool to help information security professionals perform network mapping of attack surfaces and perform external asset discovery using open source information gathering and active reconnaissance techniques'. There are six alternatives to OWASP Amass for a variety of platforms, including Linux, Online / Web-based, Self-Hosted solutions, SaaS and BSD. The best alternative is sn0int, which is both free and Open Source. Other great apps like OWASP Amass are BitNinja.io (Paid), Sublist3r (Free, Open Source), Anubis Subdomain enumeration (Free, Open Source) and Lepus Subdomain finder (Free, Open Source).

    This page was last updated Jun 10, 2020

    1. sn0int is a semi-automatic OSINT framework and package manager. It was built for IT security professionals and bug hunters to gather intelligence about a given target or about yourself.
      No screenshots yet
    2. BitNinja is a multi-layered security system to block server attacks at any threat level automatically and make the troubleshooting of all security incidents easier via a self-service console.
      No screenshots yet


      • FreeOpen Source
      • Linux
      • Online
      • Self-Hosted
      Sublist3r is a python tool designed to enumerate subdomains of websites using OSINT. It helps penetration testers and bug hunters collect and gather subdomains for the domain they are targeting.
    3. Anubis is a subdomain enumeration and information gathering tool. Anubis collates data from a variety of sources, including HackerTarget, DNSDumpster, x509 certs, VirusTotal, Google, Pkey, and NetCraft.
      No screenshots yet
      • FreeOpen Source
      • Linux
      • Online
      • Self-Hosted
      Online Subdomain finder and subdomain Enumerating tools using Sublist3r, DNscan, Nmap, Anubis and Amass. Discover subdomains of target domain. 8 subdomain tools hosted online.
      No screenshots yet


      • FreeOpen Source
      • Linux
      • Online
      Dnscan is a python wordlist-based DNS subdomain scanner. The script will first try to perform a zone transfer using each of the target domain's nameservers. If this fails, it will lookup TXT and MX records for the domain.
      No screenshots yet
    Showing 6 of 6 alternatives