Skip to content

Latest commit

ย 

History

4 Commits

Folders and files

NameName
Last commit message
Last commit date
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 

Repository files navigation

๐Ÿ›ก๏ธ RECON2EXPLOIT: Next-Gen Automated Threat Intelligence & Security Framework

โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•— โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•— โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•— โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•— โ–ˆโ–ˆโ–ˆโ•—   โ–ˆโ–ˆโ•—โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•— โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•—โ–ˆโ–ˆโ•—  โ–ˆโ–ˆโ•—โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•— โ–ˆโ–ˆโ•—      โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•— โ–ˆโ–ˆโ•—โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•—
โ–ˆโ–ˆโ•”โ•โ•โ–ˆโ–ˆโ•—โ–ˆโ–ˆโ•”โ•โ•โ•โ•โ•โ–ˆโ–ˆโ•”โ•โ•โ•โ•โ•โ–ˆโ–ˆโ•”โ•โ•โ•โ–ˆโ–ˆโ•—โ–ˆโ–ˆโ–ˆโ–ˆโ•—  โ–ˆโ–ˆโ•‘โ•šโ•โ•โ•โ•โ–ˆโ–ˆโ•—โ–ˆโ–ˆโ•”โ•โ•โ•โ•โ•โ•šโ–ˆโ–ˆโ•—โ–ˆโ–ˆโ•”โ•โ–ˆโ–ˆโ•”โ•โ•โ–ˆโ–ˆโ•—โ–ˆโ–ˆโ•‘     โ–ˆโ–ˆโ•”โ•โ•โ•โ–ˆโ–ˆโ•—โ–ˆโ–ˆโ•‘โ•šโ•โ•โ–ˆโ–ˆโ•”โ•โ•โ•
โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•”โ•โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•—  โ–ˆโ–ˆโ•‘     โ–ˆโ–ˆโ•‘   โ–ˆโ–ˆโ•‘โ–ˆโ–ˆโ•”โ–ˆโ–ˆโ•— โ–ˆโ–ˆโ•‘ โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•”โ•โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•—   โ•šโ–ˆโ–ˆโ–ˆโ•”โ• โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•”โ•โ–ˆโ–ˆโ•‘     โ–ˆโ–ˆโ•‘   โ–ˆโ–ˆโ•‘โ–ˆโ–ˆโ•‘   โ–ˆโ–ˆโ•‘   
โ–ˆโ–ˆโ•”โ•โ•โ–ˆโ–ˆโ•—โ–ˆโ–ˆโ•”โ•โ•โ•  โ–ˆโ–ˆโ•‘     โ–ˆโ–ˆโ•‘   โ–ˆโ–ˆโ•‘โ–ˆโ–ˆโ•‘โ•šโ–ˆโ–ˆโ•—โ–ˆโ–ˆโ•‘โ–ˆโ–ˆโ•”โ•โ•โ•โ• โ–ˆโ–ˆโ•”โ•โ•โ•   โ–ˆโ–ˆโ•”โ–ˆโ–ˆโ•— โ–ˆโ–ˆโ•”โ•โ•โ•โ• โ–ˆโ–ˆโ•‘     โ–ˆโ–ˆโ•‘   โ–ˆโ–ˆโ•‘โ–ˆโ–ˆโ•‘   โ–ˆโ–ˆโ•‘   
โ–ˆโ–ˆโ•‘  โ–ˆโ–ˆโ•‘โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•—โ•šโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•—โ•šโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•”โ•โ–ˆโ–ˆโ•‘ โ•šโ–ˆโ–ˆโ–ˆโ–ˆโ•‘โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•—โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•—โ–ˆโ–ˆโ•”โ• โ–ˆโ–ˆโ•—โ–ˆโ–ˆโ•‘     โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•—โ•šโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ•”โ•โ–ˆโ–ˆโ•‘   โ–ˆโ–ˆโ•‘   
โ•šโ•โ•  โ•šโ•โ•โ•šโ•โ•โ•โ•โ•โ•โ• โ•šโ•โ•โ•โ•โ•โ• โ•šโ•โ•โ•โ•โ•โ• โ•šโ•โ•  โ•šโ•โ•โ•โ•โ•šโ•โ•โ•โ•โ•โ•โ•โ•šโ•โ•โ•โ•โ•โ•โ•โ•šโ•โ•  โ•šโ•โ•โ•šโ•โ•     โ•šโ•โ•โ•โ•โ•โ•โ• โ•šโ•โ•โ•โ•โ•โ• โ•šโ•โ•   โ•šโ•โ•   

Automated Passive Reconnaissance โ€ข Live CIRCL CVE Database Fusion โ€ข Executive PDF & Interactive HTML Reports

License Python Cross-Platform Security Live CVE API


๐Ÿ“– Table of Contents


๐ŸŽฏ Executive Overview

RECON2EXPLOIT is an enterprise-grade, cross-platform threat intelligence and security audit framework. Engineered for CISOs, SOC analysts, and security researchers, it aggregates passive intelligence from DNS records, WHOIS domain data, SSL/TLS certificates, multi-threaded port scans, HTTP security headers, and brand spoofing heuristics.

The framework correlates telemetry in real-time with official CIRCL CVE REST APIs to identify active vulnerability vectors, passing all data through a Multi-Factor Threat Risk Fusion Engine. Results are exported simultaneously as structured JSON telemetry, a Dark-Themed Executive PDF Report, and a Futuristic Interactive HTML Dashboard.


โœจ Key Features Matrix

Module Core Functionality Primary Metrics / Outputs
๐Ÿท๏ธ Real-Time CVE/CWE Intelligence Live REST API integration (CIRCL CVE threat engine) querying active service banners and versions dynamically Real-time CVE identifiers, CVSS v3 ratings, official vulnerability summaries, and remediation guides
โšก Multi-Threaded Port Scanner High-performance TCP socket scanner checking key service ports (80, 443, 22, 21, 25, 3389, 3306, etc.) Open service ports, protocols, socket banners, exposure alerts
๐Ÿ” SSL/TLS Security Auditor Cryptographic certificate inspection, issuer validation, and expiration countdown Expiration status, days remaining, CA Issuer, TLS version, Subject Alternative Names (SANs)
๐ŸŒ DNS & Mail Security Queries A, AAAA, MX, NS, TXT, and _dmarc SPF/DMARC records Mail server configuration, IP resolution, email spoofing risk indicators
๐Ÿ“œ WHOIS Intelligence Registrar identification, ICANN EPP status parsing, abuse contacts, creation dates Domain age (years/days), domain lifecycle phase, registrar details
๐Ÿ›ก๏ธ Web Security Audit Web server header inspections (HSTS, CSP, X-Frame-Options, X-Content-Type-Options, Referrer-Policy) Missing security headers, clickjacking vulnerability vector, banner disclosures
๐Ÿ”— Web Link & Form Scraper DOM structure parsing harvesting endpoints, input forms, and password fields External links, exposed login interfaces over unencrypted HTTP
๐ŸŽฏ Phishing Heuristics Domain string analytics checking brand squatting, IP targets, shorteners, typosquatting Phishing heuristic score, threat indicators, targeted brand detection
๐Ÿงฎ Threat Risk Fusion Engine Mathematical risk aggregation combining domain freshness, header gaps, and phishing indicators Composite threat score (0-10), SOC Severity Verdict (CRITICAL, HIGH, MEDIUM, LOW)
๐Ÿ’ป Cross-Platform Engine 100% Pure Python implementation compliant with Windows, Linux (Kali/Ubuntu/Debian), and macOS Universal path handling, platform-independent socket & HTTP concurrency
๐Ÿ“Š Executive PDF Generator ReportLab dark-themed document generator with two-pass dynamic page numbering (Page X of Y) Dynamic scorecards, structured security tables, prioritized P1-P4 remediation checklist
๐ŸŒ Interactive HTML Dashboard Single-file futuristic cyber security HTML report with live tabs, risk score gauges & print exports Interactive dark dashboard matching executive SOC layout, filterable tables & export actions

๐Ÿ—๏ธ System Architecture

recon_2_exploit/
โ”œโ”€โ”€ core/
โ”‚   โ”œโ”€โ”€ main.py              # Central orchestrator & ANSI banner execution engine
โ”‚   โ”œโ”€โ”€ vuln_db.py           # Real-time CIRCL CVE REST API query & CWE mapping engine
โ”‚   โ”œโ”€โ”€ report_html.py       # Interactive Cyber Dashboard HTML report generator
โ”‚   โ”œโ”€โ”€ md_to_pdf.py         # ReportLab executive PDF generator with NumberedCanvas
โ”‚   โ”œโ”€โ”€ dns_enum.py          # DNS record resolution & DMARC audit engine
โ”‚   โ”œโ”€โ”€ port_scan.py         # Multi-threaded TCP socket scanner with banner grabbing
โ”‚   โ”œโ”€โ”€ ssl_audit.py         # Cryptographic SSL/TLS certificate inspector
โ”‚   โ”œโ”€โ”€ whois_enum.py        # Domain WHOIS parser & age calculator
โ”‚   โ”œโ”€โ”€ web_enum.py          # HTTP header & web server security auditor
โ”‚   โ”œโ”€โ”€ parser.py            # BeautifulSoup DOM link & form interface parser
โ”‚   โ”œโ”€โ”€ phishing_runner.py   # Brand impersonation & URL heuristic analyzer
โ”‚   โ””โ”€โ”€ risk_fusion.py       # Multi-factor threat risk fusion scoring engine
โ”œโ”€โ”€ reports/                 # Auto-generated per-domain target audit workspaces
โ”‚   โ””โ”€โ”€ <target_domain>/
โ”‚       โ”œโ”€โ”€ output/          # Telemetry JSON datastores (dns, ports, ssl, whois, etc.)
โ”‚       โ”œโ”€โ”€ *.pdf            # Standalone Executive PDF Report
โ”‚       โ””โ”€โ”€ *.html           # Standalone Interactive Cyber Dashboard HTML Report
โ”œโ”€โ”€ requirements.txt         # Python dependency manifest
โ”œโ”€โ”€ .gitignore               # Configured git exclusion rules
โ””โ”€โ”€ README.md                # Framework documentation

๐Ÿ› ๏ธ Installation & Setup

Prerequisites

  • Python 3.8+
  • pip package manager

Quick Installation

  1. Clone the Repository:

    git clone https://github.com/Bhuvaneshkumar1/Recon_2_Exploit.git
    cd Recon_2_Exploit
  2. Set Up Virtual Environment (Recommended):

    python -m venv reconvenv
    # Windows PowerShell:
    .\reconvenv\Scripts\Activate.ps1
    # Linux/macOS:
    source reconvenv/bin/activate
  3. Install Dependencies:

    pip install -r requirements.txt

๐Ÿš€ Usage & Execution

Launch the interactive reconnaissance pipeline:

python -m core.main

Execution Flow:

  1. Terminal ASCII Banner: Displays the colorized ANSI terminal header banner.
  2. Target Selection: Input the target domain (e.g., example.com).
  3. Auto Scheme Resolution: Resolves HTTPS/HTTP protocol access automatically.
  4. Passive Recon & Audit: Executes DNS, WHOIS, Port Banner Scans, SSL Certificate Inspection, Web Header Matrix, and Phishing Analysis.
  5. Real-Time Live CVE API Query: Connects to the CIRCL CVE REST API to fetch live vulnerability IDs, CVSS scores, and summaries for detected service banners.
  6. Risk Fusion Computation: Merges telemetry into an overall SOC severity score.
  7. Report Generation: Automatically outputs dashboard_report.html and prompts for generating full_report.pdf.

๐Ÿ“Š Output Telemetry & Reports

All reconnaissance results are saved in reports/<domain>/:

  • ๐ŸŒ dashboard_report.html - Interactive Cyber Dashboard HTML Report
  • ๐Ÿ“„ <report_name>_<timestamp>.pdf - Executive Dark PDF Security Audit Report
  • ๐Ÿ“ output/vulnerabilities.json - Matched live CVE/CWE entries & CVSS ratings
  • ๐Ÿ“ output/dns.json - Complete DNS & DMARC records
  • ๐Ÿ“ output/ports.json - Open ports & service socket banners
  • ๐Ÿ“ output/ssl_audit.json - Cryptographic certificate details & expiration status
  • ๐Ÿ“ output/whois.json - WHOIS domain registration metadata
  • ๐Ÿ“ output/web.json - Web server headers & security matrix
  • ๐Ÿ“ output/links.json - Discovered web endpoints & sensitive form targets
  • ๐Ÿ“ output/phishing.json - Heuristic threat analysis indicators
  • ๐Ÿ“ output/risk_analysis.json - Aggregated threat scores & SOC verdict

๐Ÿ“„ Executive PDF & Interactive HTML Dashboard

๐ŸŒ Interactive HTML Dashboard (dashboard_report.html)

  • Cyber Aesthetic: Styled with Orbitron & Rajdhani Google Fonts, glassmorphism card containers, glowing risk score gauges, and dark cyan/emerald/red color palettes.
  • Overall Risk Gauge: Circular risk score gauge (0.0 to 10.0) with CRITICAL, HIGH, MEDIUM, or LOW risk severity badges.
  • Interactive Tabs: Allows seamless switching between:
    • Open Ports & Banners: Active service ports, protocols, and socket banners.
    • CVE & CWE Database: Real-time matched vulnerability IDs, CVSS scores, and remediation guides.
    • Web Security Headers Matrix: Audit table for HSTS, CSP, X-Frame-Options, X-Content-Type-Options, and Referrer-Policy.
    • DNS & Email Audit: Record queries (A, AAAA, MX, NS, TXT, _dmarc).
    • SSL/TLS Audit: Certificate issuer chain, validity countdown, status, and SANs.
  • Browser Export: Includes a ๐Ÿ–จ๏ธ EXPORT DASHBOARD action for printing or exporting directly from any browser.

๐Ÿ›ก๏ธ Remediation Framework

RECON2EXPLOIT automatically prescribes remediations based on discovered vulnerabilities:

  • P1 Critical: Enforce HTTP Security Headers (HSTS, CSP, X-Frame-Options), renew expiring SSL certificates immediately.
  • P2 High: Configure strict DMARC policies (p=reject), restrict open administrative service ports (SSH, RDP, MySQL, Database).
  • P3 Medium: Add missing anti-clickjacking X-Frame-Options headers, patch services matched in live CVE queries.
  • P4 Low / Info: Suppress detailed server version banner disclosures (Server, X-Powered-By).

โš ๏ธ Legal Disclaimer & Ethics

IMPORTANT: RECON2EXPLOIT is designed solely for legal security assessments, authorized penetration testing, and academic research. Unauthorized scanning of third-party domains without prior explicit consent is illegal. The developers assume no liability for misuse or damage caused by this software. Always operate within legal and ethical boundaries.


๐Ÿ“œ License

Distributed under the MIT License. See LICENSE for more information.

Made with โค๏ธ for Security Researchers & Penetration Testers

About

Cross-platform Python framework for automated reconnaissance, attack-surface mapping, security auditing, threat-risk analysis, CVE intelligence, and executive PDF reporting.

Topics

Resources

Stars

1 star

Watchers

0 watching

Forks

Releases

Packages

Contributors

Languages