# owasp-amass/amass > OWASP tool for attack surface mapping and external asset discovery using OSINT and active reconnaissance. Used by pentesters and security teams to enumerate subdomains, DNS records and related assets. - Magnitude: 1.6 out of 10 — Steady - Stars: 15,295 total · +1 star measured 2026-10-06, 11:46–14:21 UTC, ≈ 4 by evening - Star trust: star growth looks organic - Category: Security · Language: Go · Created: 2018-07-10 · Last push: 2026-07-19 - GitHub: https://github.com/owasp-amass/amass · Homepage: https://owasp.org/www-project-amass/ · Page: https://gitnova.dev/en/r/owasp-amass/amass ## Useful for - Enumerate subdomains of a target domain for a pentest - Map an organization's external attack surface via OSINT - Discover related DNS records and assets before scanning ## Why it’s here - Star-counter measurements on 2026-10-06 (UTC), 11:46–14:21: 15294 → 15295 stars (+1). This is the change over that interval. - Estimated end-of-day forecast: about +4 stars, using observed gains and the previous day. - Over the last two days the pace is 1.8× that of the previous week and a half. - Elevated gains were measured on the last 2 completed UTC days in a row. Continued growth is not guaranteed. - GitHub Trending Go today: #10, +17 stars. ## Star trust Star growth looks organic. Star-trust labels are heuristics based on the repository’s behavior, not a check of every stargazer. ## Numbers - Forks: 2,194 - Issues and pull requests: 1,135 - Watchers: 225 - Average over the last week: 9 per day - Usual pace: 6 per day - Stars in the last hour (measured): 1 - Latest release: v5.1.1 (2026-04-07) ## Stars per day, last 30 days (oldest → newest, today is partial) 2026-09-07 … 2026-10-06: 8, 3, 9, 8, 6, 6, 5, 5, 8, 5, 7, 13, 4, 5, 5, 6, 7, 5, 7, 4, 6, 6, 2, 3, 3, 8, 12, 17, 17, 1 ## Spotted in now - GitHub Trending Go today: #10, +17 stars ## Similar by description 1. **smicallef/spiderfoot** — 2.2 · Steady · Security · Python · +16 stars measured 2026-10-06, 00:20–14:18 UTC, ≈ 27 by evening Python OSINT automation tool that gathers data about a target from 200+ modules (DNS, breaches, social media, threat intel) via web UI or CLI. Used for reconnaissance in pentests and for assessing your own attack surface. Full card: https://gitnova.dev/en/r/smicallef/spiderfoot.md 2. **0x4m4/hexstrike-ai** — 3.1 · Breakout · Security · Python · +25 stars measured 2026-10-06, 00:19–14:13 UTC, ≈ 46 by evening An MCP server that connects AI agents (Claude, GPT, Copilot) to 150+ cybersecurity tools for autonomous pentesting, vulnerability discovery, and bug bounty. Aimed at pentesters and security researchers. Full card: https://gitnova.dev/en/r/0x4m4/hexstrike-ai.md 3. **bettercap/bettercap** — 1.7 · Steady · Security · Go · +5 stars measured 2026-10-06, 00:21–14:20 UTC, ≈ 8 by evening A Go framework for reconnaissance and MITM attacks on WiFi, BLE, HID, CAN-bus and IP networks: scanning, spoofing, sniffing and proxying. Aimed at pentesters, red teams and security researchers. Full card: https://gitnova.dev/en/r/bettercap/bettercap.md --- Magnitude (0–10) measures how fast and how unusually interest in a repository is growing right now. It is not a quality score. Days are UTC. “So far today” is a fact; “expected by the end of the day” is a forecast. Summaries and use cases are written by an LLM (DeepSeek V4.1 Flash) from the README and may be inaccurate: verify specific claims (benchmarks, speed, hardware) in the repository itself. Data as of 2026-10-06 14:31 UTC, updated every 30 minutes.