Skip to content

Latest commit

 

History

History
39 lines (24 loc) · 960 Bytes

passive-information-gathering.md

File metadata and controls

39 lines (24 loc) · 960 Bytes

Passive information gathering

Whois enumeration

whois megacorpone.com -h 192.168.50.251
whois 38.100.193.70 -h 192.168.50.251

Google hacking

Netcraft

https://searchdns.netcraft.com

Open-source code

Searching online source code repositories like Github, GutHub Gist, GitLab and SourceForge.

Searching on a github repo

For larger repos we can use tools to automate some of the searching: Gitrob and Gitleaks

Example Gitleaks output

Shodan

hostname: megacorpone.com
domain: megacorpone.com

Security Headers and SSL/TLS

{% embed url="https://securityheaders.com/" %}

{% embed url="https://www.ssllabs.com/ssltest/" %}