ReconDrop 作者: Faizad Khan
A passive client-side recon tool for security professionals. Scans web pages for exposed API endpoints, secrets, DOM sinks, inline events, and framework fingerprints.
实验性实验性
扩展元数据
关于此扩展
ReconDrop is a browser-based passive reconnaissance extension designed for penetration testers and security researchers.
Features:
- 🔍 Framework fingerprinting (48 frameworks detected)
- 🔑 Secret detection — AWS keys, JWTs, API tokens
- 🌐 URL & endpoint collection (4-layer deep scan)
- ⚠️ DOM sink detection — innerHTML, eval, document.write
- 🎯 Inline event handler mapping
- 📥 Export all findings as JSON
ReconDrop runs entirely in the page context — no data is sent externally. All results are displayed locally and can be exported for reporting.
Built for use during authorized penetration testing engagements only.
Features:
- 🔍 Framework fingerprinting (48 frameworks detected)
- 🔑 Secret detection — AWS keys, JWTs, API tokens
- 🌐 URL & endpoint collection (4-layer deep scan)
- ⚠️ DOM sink detection — innerHTML, eval, document.write
- 🎯 Inline event handler mapping
- 📥 Export all findings as JSON
ReconDrop runs entirely in the page context — no data is sent externally. All results are displayed locally and can be exported for reporting.
Built for use during authorized penetration testing engagements only.
评分 5(1 位用户)
权限与数据
更多信息