Skip to content

Instantly share code, notes, and snippets.

@AHewitt
Created September 11, 2022 07:27
Show Gist options
  • Select an option

  • Save AHewitt/b1c1f4cb1d7add01cc98cbca94fa6066 to your computer and use it in GitHub Desktop.

Select an option

Save AHewitt/b1c1f4cb1d7add01cc98cbca94fa6066 to your computer and use it in GitHub Desktop.
jhaddix nahamsec recon discussion
https://www.youtube.com/watch?v=8MhoDQqcJSc
starts 31:35
ends 37:45
known root domains
amass
subfinder
massdns (concurrent brutefroce with large list…)
githhub dorking
crunchbase acquisitions
mindmap tracking
httprobe for http links
feed those to aquatone for screenshots & port scan
masscan for more port scanning of entire range
open port -> nmap with version scan & nmap script
build report, organize by virtual host
open live sites in browser + burp
crawl sites
link discovery (crawl sites for more sites)
burp recursive crawl
content discovery / directory bruteforcing
reverse dns
cloud scraping
favico searching
google dorking for trademarks
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment