FavFreak on offsec.tools


Making favicon.ico based recon great again.

The tool takes a list of urls (with https or http protocol) from stdin, then it fetches favicon.ico and calculates its hash value. It sorts the domains/subdomains/IPs according to their favicon hashes and the most interesting part is , It matches calculated favicon hashes with the favicon hashes present in the fingerprint dictionary. If matched then it will show you the results in the output, there is option to generate shodan dorks as well.