Skip to content
 
 

Latest commit

 

History

4 Commits

Folders and files

NameName
Last commit message
Last commit date
 
 
 
 

Repository files navigation

Free online reconnaissance & bug bounty toolkit — in your browser, no install required.

Live Author License

Try it live →


What is RECOX?

RECOX is a free, browser-based reconnaissance toolkit for bug bounty hunters, penetration testers, and security researchers. It runs entirely in the browser — no CLI, no Docker, no setup — and chains together the core recon tasks you'd normally stitch together manually with five separate tools.

Built by zack0x01 as part of hackerz.space to give students and new hunters a zero-friction way to practice real-world reconnaissance from any device.


Features

  • 🔍 Subdomain Enumeration — multi-source passive discovery (crt.sh, CertSpotter, HackerTarget, OTX, Wayback) with automatic deduplication
  • 🌐 DNS Analysis — A, AAAA, MX, NS, TXT, CNAME, SOA, CAA records in one query
  • 🛰️ Port Discovery — identify exposed services on target hosts
  • 🪪 WHOIS Lookup — registrant info, name servers, creation/expiry dates
  • 📡 HTTP Header Analysis — inspect response headers, detect tech stack, spot missing security headers
  • 📋 One-click Copy/Export — results ready to pipe into your next tool
  • 📱 Mobile-friendly — full recon pipeline from your phone
  • 🔒 Zero install, zero signup, zero tracking

Live Demo

👉 recox.hackerz.space

No account needed. Paste a domain, hit enter, done.


Why RECOX?

Most recon tools are CLI-only (Subfinder, Amass, httpx, naabu) — powerful, but a barrier for anyone on a locked-down laptop, a Chromebook, a phone, or just starting out. RECOX puts the same recon primitives behind a browser UI, so you can:

  • Run a quick lookup from any device during an engagement
  • Teach reconnaissance workflows visually (used in the Bug Bounty Mastery course)
  • Validate findings on the go without spinning up a VM
  • Share results with a teammate via a copy-paste click

It's not a replacement for a full CLI stack during a serious engagement — it's a fast, zero-install companion.


Quick Start

  1. Open recox.hackerz.space
  2. Paste a target domain (e.g. example.com)
  3. Pick a recon module (subdomains, DNS, ports, WHOIS, headers)
  4. Click Run
  5. Copy, export, or chain into your next step

No registration. No API keys needed. Results appear live.


Integration with Sectiv AI

RECOX is the free companion to Sectiv AI — an AI-powered vulnerability scanner that picks up where RECOX leaves off. Use RECOX to map the target surface in seconds, then pass the findings into Sectiv AI for automated vulnerability scanning and AI-validated reporting.

Buy Me A Coffee

About

No description, website, or topics provided.

Resources

Stars

1 star

Watchers

0 watching

Forks

Releases

Packages

Contributors

Languages