Homebrew
AlternativeHomebrewbrew install theharvester
Collect public contact and host data for a domain
theHarvester queries a set of public sources — search engines, certificate transparency, and services whose APIs you configure — for email addresses, subdomains, hosts and employee names tied to a domain you are researching.
Its output is a starting list, not a conclusion. Sources differ in coverage and freshness, so record which source produced which record and re-verify anything you rely on.
Supported platforms
7
Documented install or usage guidance
Learning curve
beginner
Difficulty of becoming productive, not of the underlying theory
Tags
osint, domain, email, subdomains, cert transparency
Dataset entry
theharvester.ts
Reviewed 2026-01-02
Grouped by platform. Elevation requirements are marked per method.
brew install theharvester
Needs elevated privileges (sudo / Administrator).
sudo apt install theharvester
pipx install theHarvester
theHarvester -h
Package availability follows your distribution and enabled repositories. Entry revised 2 Jan 2026 — confirm the current release on the project's own download page.
Every command carries its purpose, an example where useful, and the limitations that change how you should read the output.
Queries the enabled sources and prints the deduplicated lists.
theHarvester -d example.org -b all -l 200
Notes
Named sources behave predictably and are faster than 'all'.
theHarvester -d example.org -b virustotal,certspotter,github -l 100
Notes
Writes a file whose extension determines the format.
theHarvester -d example.org -b all -f reports/example.org
Notes
Adds a resolution pass so the host list reflects live names rather than historic records.
theHarvester -d example.org -b certspotter -c
Notes
Symptoms you will actually hit, with the cause and the legitimate fix.
Possible causes
Usual fix
Run with `-v` to see per-source failures, add keys where a source needs them, and space out repeat runs.
Possible causes
Usual fix
Use pipx or a venv, or install the distribution package instead of a global pip install.
Not documented yet: amass. Request an entry and it will link up automatically.Request a tool
Side-by-side
Where to verify anything on this page. External links open in a new tab.
SpiderFoot, Subfinder cover adjacent parts of the same job.