Recon-ng-hackertarget: Unterschied zwischen den Versionen

Aus Xinux Wiki
Zur Navigation springen Zur Suche springen
 
(9 dazwischenliegende Versionen desselben Benutzers werden nicht angezeigt)
Zeile 1: Zeile 1:
=after start recon-ng=
 
*[recon-ng][default] > show
 
Shows various framework items
 
 
Usage: show [banner|companies|contacts|credentials|dashboard|domains|hosts|keys|leaks|locations|modules|netblocks|options|ports|profiles|pushpins|repositories|schema|vulnerabilities|workspaces]
 
  
 
+
=hackertarget=
 
+
*[recon-ng][xinux-wb] > use recon/domains-hosts/hackertarget
 
+
*[recon-ng][xinux-wb][hackertarget] > set SOURCE xxx.de
*[recon-ng][default] > use recon/domains-hosts/hackertarget
+
  SOURCE => xxx.de
<pre>
+
*[recon-ng][xinux-wb][hackertarget] > run
[recon-ng][default][hackertarget] >  show info
 
 
 
      Name: HackerTarget Lookup
 
      Path: modules/recon/domains-hosts/hackertarget.py
 
    Author: Michael Henriksen (@michenriksen)
 
 
 
Description:
 
  Uses the HackerTarget.com API to find host names. Updates the 'hosts' table with the results.
 
 
 
Options:
 
  Name    Current Value  Required  Description
 
  ------  -------------  --------  -----------
 
  SOURCE  default        yes      source of input (see 'show info' for details)
 
 
 
Source Options:
 
  default        SELECT DISTINCT domain FROM domains WHERE domain IS NOT NULL
 
  <string>      string representing a single input
 
  <path>        path to a file containing a list of inputs
 
  query <sql>    database query returning one column of inputs
 
</pre>
 
 
 
 
 
 
 
*[recon-ng][default][hackertarget] > set SOURCE suse.de
 
  SOURCE => tuxmen.de
 
*[recon-ng][default][hackertarget] > run
 
<pre>
 
 
 
-------
 
SUSE.DE
 
-------
 
[*] [host] suse.de (130.57.5.70)
 
[*] [host] cc-s390x-kvm1.suse.de (195.135.221.74)
 
[*] [host] smtp1.suse.de (195.135.220.23)
 
[*] [host] director1.suse.de (195.135.220.21)
 
[*] [host] cloud-dev1.suse.de (195.135.221.78)
 
[*] [host] mx1.suse.de (195.135.220.2)
 
[*] [host] mail2.suse.de (195.135.221.8)
 
[*] [host] cc-s390x-kvm2.suse.de (195.135.221.79)
 
[*] [host] smtp2.suse.de (195.135.220.24)
 
[*] [host] director2.suse.de (195.135.220.22)
 
[*] [host] mx2.suse.de (195.135.220.15)
 
[*] [host] cantor3.suse.de (195.135.220.16)
 
[*] [host] mx3.suse.de (143.186.213.3)
 
[*] [host] mx4.suse.de (143.186.213.4)
 
[*] [host] hydra.suse.de (195.135.221.167)
 
[*] [host] opentc.suse.de (195.135.221.137)
 
[*] [host] freeipa-opensuse.suse.de (149.44.161.62)
 
[*] [host] gate.suse.de (195.135.221.12)
 
[*] [host] turing.suse.de (195.135.220.3)
 
[*] [host] storage-ci.suse.de (158.69.69.166)
 
[*] [host] practicum.suse.de (130.57.14.222)
 
[*] [host] imap.suse.de (195.135.220.8)
 
[*] [host] aruba-rap.suse.de (195.135.221.3)
 
[*] [host] ftp.suse.de (195.135.221.132)
 
[*] [host] skylla-router.suse.de (195.135.221.1)
 
[*] [host] soliddriver.suse.de (149.44.170.31)
 
[*] [host] director.suse.de (195.135.220.20)
 
[*] [host] visit.suse.de (195.135.221.17)
 
[*] [host] munin-ext.suse.de (195.135.221.11)
 
[*] [host] charybdis-ext.suse.de (195.135.221.2)
 
[*] [host] relay-ext.suse.de (195.135.221.8)
 
</pre>
 
 
 
*[recon-ng][default][hackertarget] > show keys
 
<pre>
 
  +--------------------------+
 
  |      Name      | Value |
 
  +--------------------------+
 
  | bing_api        |      |
 
  | builtwith_api    |      |
 
  | censysio_id      |      |
 
  | censysio_secret  |      |
 
  | flickr_api      |      |
 
  | fullcontact_api  |      |
 
  | github_api      |      |
 
  | google_api      |      |
 
  | google_cse      |      |
 
  | hashes_api      |      |
 
  | ipinfodb_api    |      |
 
  | jigsaw_api      |      |
 
  | jigsaw_password  |      |
 
  | jigsaw_username  |      |
 
  | pwnedlist_api    |      |
 
  | pwnedlist_iv    |      |
 
  | pwnedlist_secret |      |
 
  | shodan_api      |      |
 
  | twitter_api      |      |
 
  | twitter_secret  |      |
 
  +--------------------------+
 
</pre>
 
 
 
*[recon-ng][default][hackertarget] > keys add shodan_api xxxxxxxxxxxxxxxxxxxxx
 
 
 
*[recon-ng][default][hackertarget] > show keys
 
 
<pre>
 
<pre>
  +-----------------------------------------------------+
+
---------
  |      Name      |              Value              |
+
XXX.DE
  +-----------------------------------------------------+
+
---------
  | bing_api        |                                  |
+
[*] [host] sheba.xxx.de (134.76.9.151)
  | builtwith_api    |                                  |
+
[*] [host] waka.xxx.de (97.128.32.65)
  | censysio_id      |                                  |
+
[*] [host] kara.xxx.de (134.76.9.151)
  | censysio_secret  |                                  |
+
[*] [host] cloud.xxx.de (63.130.249.212)
  | flickr_api      |                                  |
+
[*] [host] sophie.xxx.de (63.130.249.213)
  | fullcontact_api  |                                  |
+
[*] [host] graphite.xxx.de (63.130.249.210)
  | github_api      |                                  |
+
[*] [host] worf.xxx.de (97.128.32.65)
  | google_api      |                                  |
+
[*] [host] nog.xxx.de (97.128.32.65)
  | google_cse      |                                  |
+
[*] [host] tigh.xxx.de (134.76.16.166)
  | hashes_api      |                                  |
+
[*] [host] geordi.xxx.de (136.233.197.68)
  | ipinfodb_api    |                                  |
+
[*] [host] mail.xxx.de (63.130.249.212)
  | jigsaw_api      |                                  |
+
[*] [host] kitan.xxx.de (63.130.206.42)
  | jigsaw_password  |                                  |
+
[*] [host] loren.xxx.de (63.130.249.222)
  | jigsaw_username  |                                  |
+
[*] [host] rin.xxx.de (136.233.197.65)
  | pwnedlist_api    |                                  |
+
[*] [host] sun.xxx.de (23.134.2.5)
  | pwnedlist_iv    |                                  |
+
[*] [host] baltar.xxx.de (63.130.249.211)
  | pwnedlist_secret |                                  |
+
[*] [host] watcher.xxx.de (63.130.249.210)
  | shodan_api      | xxxxxxxxxxxxxxxxxxxxx            |
+
[*] [host] docker.xxx.de (136.233.197.68)
  | twitter_api      |                                  |
+
[*] [host] thor.xxx.de (63.130.249.212)
  | twitter_secret  |                                  |
+
[*] [host] lamarr.xxx.de (63.130.249.218)
  +-----------------------------------------------------+
+
[*] [host] nagus.xxx.de (23.134.2.5)
 +
[*] [host] gaius.xxx.de (79.37.133.164)
 +
[*] [host] nautilus.xxx.de (134.76.9.156)
 +
[*] [host] bortus.xxx.de (63.130.249.217)
 +
[*] [host] yaphit.xxx.de (63.130.249.214)
 +
[*] [host] malloy.xxx.de (63.130.249.216)
 
</pre>
 
</pre>

Aktuelle Version vom 10. November 2018, 17:53 Uhr

hackertarget

  • [recon-ng][xinux-wb] > use recon/domains-hosts/hackertarget
  • [recon-ng][xinux-wb][hackertarget] > set SOURCE xxx.de
SOURCE => xxx.de
  • [recon-ng][xinux-wb][hackertarget] > run
---------
XXX.DE
---------
[*] [host] sheba.xxx.de (134.76.9.151)
[*] [host] waka.xxx.de (97.128.32.65)
[*] [host] kara.xxx.de (134.76.9.151)
[*] [host] cloud.xxx.de (63.130.249.212)
[*] [host] sophie.xxx.de (63.130.249.213)
[*] [host] graphite.xxx.de (63.130.249.210)
[*] [host] worf.xxx.de (97.128.32.65)
[*] [host] nog.xxx.de (97.128.32.65)
[*] [host] tigh.xxx.de (134.76.16.166)
[*] [host] geordi.xxx.de (136.233.197.68)
[*] [host] mail.xxx.de (63.130.249.212)
[*] [host] kitan.xxx.de (63.130.206.42)
[*] [host] loren.xxx.de (63.130.249.222)
[*] [host] rin.xxx.de (136.233.197.65)
[*] [host] sun.xxx.de (23.134.2.5)
[*] [host] baltar.xxx.de (63.130.249.211)
[*] [host] watcher.xxx.de (63.130.249.210)
[*] [host] docker.xxx.de (136.233.197.68)
[*] [host] thor.xxx.de (63.130.249.212)
[*] [host] lamarr.xxx.de (63.130.249.218)
[*] [host] nagus.xxx.de (23.134.2.5)
[*] [host] gaius.xxx.de (79.37.133.164)
[*] [host] nautilus.xxx.de (134.76.9.156)
[*] [host] bortus.xxx.de (63.130.249.217)
[*] [host] yaphit.xxx.de (63.130.249.214)
[*] [host] malloy.xxx.de (63.130.249.216)