One tool, multiple recon paths.
From WHOIS and DNS to subdomains, ports, metadata, and breach checks – ShadowTrace brings everything under a single command-line interface.
ShadowTrace is a modular reconnaissance toolkit developed by Mohd Anam during a hands-on internship at OffSecDiary. It automates domain recon, subdomain discovery, metadata analysis, breach checks and generates clean PDF-style reports.
Developer: Mohd Anam · Email: anaamshaikhm@gmail.com · Phone: 9449369861 / 8310481908
ShadowTrace is a focused recon suite designed to help you practice real-world offensive security. Instead of manually repeating the same OSINT steps, you trigger an automated pipeline that collects the data and lets you think like a hacker.
From WHOIS and DNS to subdomains, ports, metadata, and breach checks – ShadowTrace brings everything under a single command-line interface.
Designed and implemented under OffSecDiary as a cybersecurity internship project to showcase practical tool building and reporting skills.
Every recon run can be exported to a client-style report so you can present your findings in interviews, submissions, or portfolio reviews.
Each module focuses on a specific piece of the attack surface. You can run them individually or chain them together.
Gather registrar info, expiry date, name servers, IPs and key DNS records to understand the base layer of the target.
Enumerates subdomains using multiple sources, filters live hosts and highlights endpoints worth exploring.
Detects open ports and banners so you can quickly see what services are exposed to the internet.
Checks whether domains or emails appear in known breach datasets (using appropriate APIs and public sources).
Reads metadata from PDF and image files to reveal creator, timestamps, software, and potential internal paths.
Converts raw recon output into structured PDF-style reports, ready to share with mentors or interviewers.
Below is a generic installation guide. Adjust the GitHub URL and paths according to your actual repository.
Replace <your-username> with your real GitHub username.
.env or config file, never hard-coded.ShadowTrace was developed as part of a cybersecurity internship at OffSecDiary. If you want to build tools like this and get real guidance, you can contact them directly.
OffSecDiary focuses on offensive security, OSINT, recon and practical hacking workflows. The goal is to move you away from only watching theory and push you towards building tools, doing labs, and creating real projects.
Beginner plan: 1-month cybersecurity foundation course – ₹2,000 (for beginners).
Recording sessions are not provided. Confirm latest structure, timing and fees directly on WhatsApp.
For courses, internships, or guidance, message the team directly. A pre-typed message will open; you can edit it before sending.
Message text: “I want the cyber security course” (auto-typed on click).
Use this section for demo requests, collaboration, feedback on ShadowTrace or general cybersecurity questions. Your message is sent directly to anaamshaikhm@gmail.com using a secure form service – no email app opens.
Developer: Mohd Anam
Email: anaamshaikhm@gmail.com
Phone: 9449369861 / 8310481908
You can write about: