Turning OSINT into Actionable Intel
A fast, modular recon and threat-intel framework you run from a terminal - not a dashboard you have to babysit.
Zero to Scanning in 2 Commands
pip install farsight-recon
farsight scan example.comRequires Python 3.10+. Prefer to run from source? See the README.
Features
Organization Discovery
WHOIS. Certificate transparency. Passive DNS. Related domains.
Recon & Asset Discovery
DNS enumeration. Subdomain discovery. Async port scanning.
Extended Attack Surface
ASN/netblock discovery. Cloud-IP tagging. Exposed bucket search. Org/keyword search across Shodan and more.
Threat Intelligence
Leak detection. Credential exposure. Dark web mentions. Email reputation.
Typosquatting Detection
Domain permutation. Content similarity. Risk scoring.
News Monitoring
Relevance-scored news tracking across multiple sources.
Reporting
Markdown and PDF output with executive summaries.
Web Dashboard
Local-only browser UI. Live scan progress. Attack-surface graph. In-browser Markdown/PDF report.
How It Works
See It In Action

Web Dashboard




Roadmap
- Core framework and all 6 modules shipped (Org Discovery, Recon, Threat Intel, Typosquatting, News Monitoring, Reporting)
- v1.0.0 release
- pytest suite and CI pipeline, including Windows CI coverage
- Presented at BlackHat Arsenal 2025 (Toronto)
- v2.0.0 stable release - local-first web UI, PyPI publishing (farsight-recon), masscan-backed port discovery
- Extended Attack Surface module shipped - ASN/netblock discovery, cloud-IP tagging, exposed bucket search
- Speaking at DEFCON 34 AppSec Village (upcoming - Aug 6-9, 2026, Las Vegas)
Talks
Contributors


Mohd. Arif
Senior Security Engineer, Poshmark
5+ years in application security spanning penetration testing, cloud security, and threat modeling. Previously improved risk detection by 40% through threat modeling work. Active in the security community through workshops, CTF organization, and conference speaking.

Sai Vernekar
Senior Security Engineer, Kohl's
10+ years in application security covering secure code review, DAST, DevSecOps, penetration testing, and threat modeling, with a focus on cloud security and secure CI/CD.

Prashant KV
Product Security Leader
20+ years in information security. Active in the InfoSec conference community (Nullcon, c0c0n), OWASP Bay Area chapter leadership, and co-founder of Seasides Conference.


