![]() |
Subdomains are a mysterious part of the attack surface, as they represent additional entry points or potential targets that can be exploited to gain access to a network or system. https://txgate.io/images/smilies/read.gif Why look for subdomains? - They are often not as heavily guarded or protected. - They effectively expand the attack surface. - They can serve multiple functions, services, etc. - They are unknown Tools? Source: https://securitycipher.com/docs/subdomain-enumeration-tools/ <ul><li>subfinder</li> <li>amass</li> <li>Sublist3r</li> <li>chaos</li> <li>findomain</li> <li>etc...</li> </ul> Some extra options: +knock.py -> installation is simple: https://github.com/guelfoweb/knock Options without installation, which are publicly available on the internet: +subdomainfinder.c99 +securitytrails Specifically on this last point, do you know any other similar tool? </img> |
All times are GMT. The time now is 09:40 PM. |
Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2025, vBulletin Solutions, Inc.