TGViewer
#bugbountytips #bugbountytips @bughuntertips · 3.07K subscribers
Post #555 1.99K
Frogy 2.0 is an automated external reconnaissance and Attack Surface Management (ASM) toolkit designed to map an organization's entire internet presence. It identifies assets, IP addresses, web applications, and other metadata across the public internet, then smartly prioritizes them from an attacker's perspective.

Key Features:

1. Aggregates subdomains using multiple tools (CHAOS, Subfinder, Assetfinder, crt.sh) to map an organization's entire digital footprint.

2. Validates assets with live DNS resolution and port scanning (using DNSX and Naabu) to confirm what is publicly reachable.

3. Collects detailed HTTP response data (via HTTPX) including metadata, technology stack, status codes, content lengths, and more.

4. Uses a composite scoring system that considers homepage status, login identification, technology stack, and DNS data to generate a risk score for each asset.

5. Generates a dynamic HTML report with a modern design.

https://github.com/iamthefrogy/frogy2.0

#bugbountytips
  • ❤ 9
  • 👍 1
More from @bughuntertips
  1. Jan 7, 2026🔍 SwaggerSpy: Automated OSINT for API Intelligence Looking for exposed secrets in API doc…
  2. Dec 23, 2025🔍 Quick Win: Git Exposure → Secret Hunting 🔥 Step 1: Mass Git Config Hunt nuclei -l aliv…
  3. Dec 16, 2025Want to report a scanner finding, but feel like writing it up is too tedious? 😅 Install t…
  4. Dec 5, 2025If you need to generate a target-specific wordlist, make sure to check out GAP extension.…
  5. Dec 4, 2025Cloudflare has recently started blocking proxy tools such as Burp Suite by detecting their…
  6. Nov 9, 2025If you found a package.json file in the wild, you might find some internal packages vulner…
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →