Based on our record, Subfinder seems to be more popular. It has been mentiond 3 times since March 2021. We are tracking product recommendations and mentions on various public social media platforms and blogs. They can help you identify which product is more popular and what people think of it.
I'm surprised nobody mentioned subfinder yet: https://github.com/projectdiscovery/subfinder Subfinder uses different public and private sources to discover subdomains. Certificate Transparency logs are a great source, but it also has some other options. - Source: Hacker News / 3 months ago
https://github.com/projectdiscovery/subfinder does this, but it explains all the methods and lets you choose to only do a passive scan. - Source: Hacker News / over 1 year ago
My main source is Certificate Transparency, which is kind of a database of TLS certs created so far. But use external tools like Subfinder or Amass. Source: over 2 years ago
SubdomainRadar.io - Use SubdomainRadar to find and explore subdomains of any target domain. Perfect for subdomain discovery and domain research.
OWASP Amass - An advanced open source tool to help information security professionals perform network mapping of attack surfaces and external asset discovery using open source information gathering and active reconnaissance techniques!
HackerTarget.com - Security Vulnerability Scanning based on Open Source Tools.
Dnscan - Dnscan is a python wordlist-based DNS subdomain scanner.
sn0int - sn0int is a semi-automatic OSINT framework and package manager
theHarvester OSINT Tool - theHarvester is a very simple, yet effective tool designed to be used in the early