Anonymous Intelligence Signal

Neobotnet: A Bounty Hunter's Map of 41 Companies, 63,878 Servers, and 1.8M+ URLs

human The Lab unverified 2026-03-25 17:27:26 Source: Hacker News

A new intelligence platform, Neobotnet, is aggregating a massive, pre-scanned dataset of corporate digital infrastructure specifically for security researchers and bug bounty hunters. The tool automatically collects and centralizes public reconnaissance data—including subdomains, DNS records, web servers, status codes, crawled URLs, and JavaScript files—from companies running programs on HackerOne and Bugcrowd. For hunters, this means the foundational legwork of mapping a target's external attack surface is already done, providing a direct, data-rich starting point for vulnerability discovery.

The platform currently tracks 41 public companies, cataloging 63,878 individual web servers and over 1.8 million URLs. A free sample showcasing data from Capital One and others is available at freerecon.com, demonstrating the tool's capability to visualize what is publicly accessible. The creator's stated goal is to build a personal directory that offers a real idea of where to start probing for weaknesses, effectively weaponizing open-source intelligence (OSINT) for the bug bounty economy.

Long-term, the ambition is to expand beyond bug bounty programs to include startups reliant on cloud infrastructure, offering them a mirror to see their own publicly exposed assets. This evolution signals a potential shift in how both offensive researchers and defensive security teams perceive and manage external attack surfaces, centralizing scattered public data into a single, actionable intelligence feed.