Nicheloom

Market intelligence for builders — see what's gaining traction before it's crowded.

Osint tool that finds exposed files on domains

Details

External ID
48797656
Source
HN
Company
—
Product
Osint tool that finds exposed files on domains
Website domain
cerast-intelligence.com
Launched
July 5, 2026
Cohort
—
Upvotes
58
Upvotes percentile
0.8626045400238949
Tags
—
Fetched at
Sept. 7, 2026, 9:26 p.m.
Updated at
Sept. 7, 2026, 9:26 p.m.

Description

hey guys, wanted to show one of my side projects i just made public.the idea is basically another osint tool for pentesters and bug bounty hunters. it watches certificate transparency logs and checks newly-seen domains for exposed stuff like .env files, open .git dirs, config files, db dumps and so on, and puts whatever it finds into a searchable db. you just search a domain (or part of one) and see what's exposed.it's read-only and free. one thing i've been thinking about adding is a way to register for certain keywords and get notified when something new shows up for that search.would love to hear if you have other ideas for useful features, and also ideas for how to reduce abuse of the data, since that's the part i'm least sure about.https://search.cerast-intelligence.com/

Enrichment

Theme
developer infrastructure and monitoring utilities
Vertical
Security
Function
Search & retrieval
Audience
Developer
AI stance
Not AI
Project type
Commercial product
Normalized one-liner
exposed file finder for domains
Manually corrected
False

Could you build this?

Partial The UI and basic HTTP scanner are trivial, but continuously consuming the massive real-time stream of Certificate Transparency logs and scanning millions of targets without getting IP-banned requires serious pipeline infra.

What it would actually take: Building a live CT log monitor requires ingesting and parsing Certificate Transparency streams (e.g., via Certstream or RFC 6962 APIs) handling tens of millions of certs daily. It demands a distributed async worker pool (Go/Rust, Redis/Kafka) with proxy rotation, rate-limiting, and error-handling to probe HTTP endpoints (.env, .git/HEAD) without triggering abuse blocks.

Discussion

20 comments analyzed.

Competitors mentioned: Leakix.net, Shodan

Concerns raised: Crawling sites without consent is abusive and malicious, Server hammering from constant scanning requests, Potential legal trouble with government sites, Exposes sensitive information like credentials and proprietary data

Feature requests: Opt-in scanning model instead of proactive crawling, Better visibility into which businesses use the tool

Competitors

Other products that read as similar to this one — 126 launches clear the similarity bar, closest 8 shown.

Attention rank: #19 of 127 (itself plus its competitors, highest first — normalized so YC and Product Hunt are compared fairly).

Launched 246 days after the earliest competitor.

Other launches for this product