6 min read
|
Saved February 14, 2026
|
Copied!
Do you care about this?
God's Eye is a security tool for subdomain enumeration and reconnaissance, combining passive sources, DNS brute-forcing, and security checks. It offers AI-powered analysis for detecting vulnerabilities and generating reports, but is only for authorized testing.
If you do, here's more
God's Eye is a comprehensive tool for subdomain enumeration and reconnaissance, blending passive data sources with active techniques like DNS brute-forcing and security checks. Itβs designed for authorized security testing and emphasizes compliance with laws. Users must have permission to scan domains, and misuse may lead to liability issues.
The tool integrates a local AI model, Ollama, for advanced vulnerability analysis, including real-time CVE detection and JavaScript secret extraction. It supports a range of security checks, from identifying cloud providers and exposed S3 buckets to detecting misconfigurations in security headers. Godβs Eye can perform up to 1000 concurrent operations, making it efficient for large-scale scans.
Setup involves cloning the repository and building the tool with Go. Users need to install Ollama and pull specific AI models to enable enhanced features. The AI component aims to reduce false positives and generate executive reports automatically, making it useful for both security researchers and bug bounty hunters. It also includes an offline CVE database with over 1,400 actively exploited vulnerabilities, ensuring that users have access to critical information without latency issues.
Questions about this article
No questions yet.