One-click Recon
Extension Actions
Automated passive reconnaissance for bug bounty and security research.
One-click Recon is a fast, automated passive reconnaissance assistant designed for security researchers, bug bounty hunters, and web developers. With a single click, instantly analyze any active browser tab and gather crucial open-source intelligence (OSINT) about the target domain in under 10 seconds—completely passively, without sending any active scans to the host.
Features:
• DNS Records Recon: Queries live A, AAAA, MX, TXT, and NS records.
• ASN & Network Intel: Maps the hosting provider, ASN, network scope, and registered country code via RDAP.
• WHOIS Lookup: Fetches registrar details, creation dates, expiration schedules, and nameservers.
• Passive Subdomain Enumeration: Discovers active subdomains concurrently using Certificate Transparency logs (crt.sh) and public APIs.
• Technology & Stack Fingerprinting: Uses built-in technology parsing to detect CMSs, web frameworks, servers, and scripting libraries.
• HTTP Footprinting: Parses Content-Security-Policy (CSP) headers, fetches robots.txt, sitemap.xml, and calculates favicon hashes.
• Passive Threat Intel (Shodan): Queries passive internet databases to return open ports and registered CVEs without touching the target server.
• Historical Web Archives: Fetches historical URL CDX indexes from the Internet Archive Wayback Machine to discover hidden paths and public resources.
Designed to streamline the initial reconnaissance phase of penetration testing and security audits, One-click Recon bundles a clean, tabbed, modern dashboard directly into your browser popup.
Support & Open Source:
This tool is open-source. For issues, feature requests, or local installation guides, visit the official repository: https://github.com/aadityabhatnagar372-lgtm/recon-chrome-extension