Item logo image for Recon Buddy

Recon Buddy

5.0(

4 ratings

)
Item media 3 (screenshot) for Recon Buddy
Item video thumbnail
Item media 2 (screenshot) for Recon Buddy
Item media 3 (screenshot) for Recon Buddy
Item video thumbnail
Item video thumbnail
Item media 2 (screenshot) for Recon Buddy
Item media 3 (screenshot) for Recon Buddy

Overview

Extract recon data like JWTs, API keys, parameters, and endpoints from visited pages.

Recon-Buddy is a powerful Chrome extension designed for bug bounty hunters, penetration testers, and security researchers. It streamlines passive reconnaissance by automatically extracting sensitive data and valuable recon artifacts from every page you visit. From hidden endpoints and API keys to misconfigured secrets, Recon-Buddy gives you the edge in uncovering potential attack surfaces with speed and precision. Follow our updates: 🐦 Twitter: https://x.com/choudhary_1337 📷 Instagram: https://instagram.com/m.r_choudhary_69

5 out of 54 ratings

Google doesn't verify reviews. Learn more about results and reviews.

Details

  • Version
    1.0
  • Updated
    April 24, 2025
  • Offered by
    Kishan Lal Choudhary
  • Size
    110KiB
  • Languages
    English
  • Developer
    Email
    kishanchoudharyrajasthan@gmail.com
  • Non-trader
    This developer has not identified itself as a trader. For consumers in the European Union, please note that consumer rights do not apply to contracts between you and this developer.

Privacy

The developer has disclosed that it will not collect or use your data.

This developer declares that your data is

  • Not being sold to third parties, outside of the approved use cases
  • Not being used or transferred for purposes that are unrelated to the item's core functionality
  • Not being used or transferred to determine creditworthiness or for lending purposes

Support

Related

Trufflehog

4.6(9)

Sniffing out credentials

HackBar

4.2(54)

A browser extension for Penetration Testing

retire.js

4.9(10)

Scanning website for vulnerable js libraries

Shodan

4.5(137)

The Shodan plugin tells you where the website is hosted (country, city), who owns the IP and what other services/ ports are open.

Hack-Tools

4.6(29)

The all in one Red team extension for web pentester

Endpoint Extractor

5.0(1)

Extracts endpoints from the current page.

DIRFOX - Endpoint Fuzzer for Pentesters

0.0(0)

Fuzz endpoints using custom or GitHub-hosted wordlists. Built for security researchers and pentesters.

Vulners Web Scanner

4.6(20)

Tiny vulnerability scanner based on vulners.com vulnerability database. Passively scan websites while you surf internet!

FoxyProxy

3.8(781)

Easy to use advanced Proxy Management tool for everyone

OWASP Penetration Testing Kit

4.9(42)

OWASP Penetration Testing Kit

DotGit

4.8(12)

An extension for checking if .git is exposed in visited websites

FindSomething

4.9(36)

在网页的源代码或js中找到一些有趣的东西

Trufflehog

4.6(9)

Sniffing out credentials

HackBar

4.2(54)

A browser extension for Penetration Testing

retire.js

4.9(10)

Scanning website for vulnerable js libraries

Shodan

4.5(137)

The Shodan plugin tells you where the website is hosted (country, city), who owns the IP and what other services/ ports are open.

Hack-Tools

4.6(29)

The all in one Red team extension for web pentester

Endpoint Extractor

5.0(1)

Extracts endpoints from the current page.

DIRFOX - Endpoint Fuzzer for Pentesters

0.0(0)

Fuzz endpoints using custom or GitHub-hosted wordlists. Built for security researchers and pentesters.

Vulners Web Scanner

4.6(20)

Tiny vulnerability scanner based on vulners.com vulnerability database. Passively scan websites while you surf internet!

Google apps