Osint tool that finds exposed files on domains
Details
- External ID
- 48797656
- Source
- HN
- Company
- —
- Product
- Osint tool that finds exposed files on domains
- Website domain
- cerast-intelligence.com
- Launched
- July 5, 2026
- Cohort
- —
- Upvotes
- 58
- Upvotes percentile
- 0.8626045400238949
- Tags
- —
- Fetched at
- Sept. 7, 2026, 9:26 p.m.
- Updated at
- Sept. 7, 2026, 9:26 p.m.
Description
hey guys, wanted to show one of my side projects i just made public.the idea is basically another osint tool for pentesters and bug bounty hunters. it watches certificate transparency logs and checks newly-seen domains for exposed stuff like .env files, open .git dirs, config files, db dumps and so on, and puts whatever it finds into a searchable db. you just search a domain (or part of one) and see what's exposed.it's read-only and free. one thing i've been thinking about adding is a way to register for certain keywords and get notified when something new shows up for that search.would love to hear if you have other ideas for useful features, and also ideas for how to reduce abuse of the data, since that's the part i'm least sure about.https://search.cerast-intelligence.com/
Enrichment
- Theme
- developer infrastructure and monitoring utilities
- Vertical
- Security
- Function
- Search & retrieval
- Audience
- Developer
- AI stance
- Not AI
- Project type
- Commercial product
- Normalized one-liner
- exposed file finder for domains
- Manually corrected
- False
Could you build this?
Partial The UI and basic HTTP scanner are trivial, but continuously consuming the massive real-time stream of Certificate Transparency logs and scanning millions of targets without getting IP-banned requires serious pipeline infra.
What it would actually take: Building a live CT log monitor requires ingesting and parsing Certificate Transparency streams (e.g., via Certstream or RFC 6962 APIs) handling tens of millions of certs daily. It demands a distributed async worker pool (Go/Rust, Redis/Kafka) with proxy rotation, rate-limiting, and error-handling to probe HTTP endpoints (.env, .git/HEAD) without triggering abuse blocks.
Discussion
20 comments analyzed.
Competitors mentioned: Leakix.net, Shodan
Concerns raised: Crawling sites without consent is abusive and malicious, Server hammering from constant scanning requests, Potential legal trouble with government sites, Exposes sensitive information like credentials and proprietary data
Feature requests: Opt-in scanning model instead of proactive crawling, Better visibility into which businesses use the tool
Competitors
Other products that read as similar to this one — 126 launches clear the similarity bar, closest 8 shown.
Attention rank: #19 of 127 (itself plus its competitors, highest first — normalized so YC and Product Hunt are compared fairly).
Launched 246 days after the earliest competitor.
- footprint-osint · github · 2026-09-20 · 18 upvotes · similarity 0.56
- I built a search engine for all domains on the internet · hn · 2025-11-07 · 5 upvotes · similarity 0.54
- Roso.info · ph · 2026-09-19 · 2 upvotes · similarity 0.46
- D.NIX. · ph · 2026-09-20 · 2 upvotes · similarity 0.43
- SearchIn · ph · 2026-09-23 · 1 upvotes · similarity 0.42
- My OSINT dashboard with 60+ feeds now has a pseudonymous P2P comms · hn · 2026-05-03 · 5 upvotes · similarity 0.42
- better-env · hn · 2025-11-23 · 6 upvotes · similarity 0.42
- Open database tracking 77K public DNS servers every 10 minutes · hn · 2025-12-18 · 7 upvotes · similarity 0.40
Other launches for this product
- No other launches for this product.