10.3. 信息收集

10.3.3. CDN查询

10.3.4. 子域爆破

10.3.5. 域名获取

10.3.6. 弱密码爆破

10.3.7. Git信息泄漏

10.3.8. Github监控

10.3.9. 路径及文件扫描

10.3.10. 路径爬虫

  • crawlergo A powerful dynamic crawler for web vulnerability scanners

10.3.11. 指纹识别

10.3.12. Waf指纹

10.3.13. 端口扫描

  • nmap
  • zmap
  • masscan
  • ShodanHat
  • lzr LZR quickly detects and fingerprints unexpected services running on unexpected ports
  • ZGrab2 Fast Go Application Scanner
  • RustScan The Modern Port Scanner
  • DNS dnsenum nslookup dig fierce
  • SNMP snmpwalk

10.3.14. DNS数据查询

10.3.18. Password

10.3.19. CI信息泄露

  • secretz minimizing the large attack surface of Travis CI

10.3.20. 个人数据画像

  • GHunt Investigate Google Accounts with emails

10.3.21. 邮箱收集

10.3.22. 其他