Recon-ng - Information gathering

  • 0 Respuestas
  • 4671 Vistas

0 Usuarios y 1 Visitante están viendo este tema.

Desconectado HATI

  • *
  • Ex-Staff
  • *****
  • Mensajes: 453
  • Actividad:
    0%
  • Reputación 13
    • Ver Perfil

Recon-ng - Information gathering

  • en: Abril 17, 2016, 06:54:10 pm

# RECON-NG #

You can read this post on Spanish language:Recon-ng - Recopilación de información
Recon-ng is a Python framework focused on gathering information, it can obtain a lot of data from a target and his environment. It have differente and independent modules, and you can combine the results obtained for more efficiency. Definetly, Recon-ng is a powerful tool for gathering information fast on the web.

Basics uses and modules:


# Start menu:
Código: [Seleccionar]
recon-ng


# Help
Código: [Seleccionar]
help


Recon-ng lets you create profiles for analyze different objectives without mixing information, that is stored for later reference, something very useful.
# Create profile
Código: [Seleccionar]
workspaces add <perfil>
Código: [Seleccionar]
add domains <domain>
Código: [Seleccionar]
show domains


We can see the different modules of Recon-ng, the modules are clasiffied in different sections (Discovery, Exploitation, Import, Recon y Reporting).
# Show modules
Código: [Seleccionar]
show modulesWe can search modules by name:
Código: [Seleccionar]
SEARCH <module>


When we know which module we will use, we must load it (i will use netcraft for the example). There are two commands for do this:
# Select module
Código: [Seleccionar]
use <module>
load <module>
With the module loaded, we can see information abaut it and his options.
Código: [Seleccionar]
show infoIf we have not created a profile, we can select our "target"
Código: [Seleccionar]
set SOURCE <domain>


# Start module
Código: [Seleccionar]
run


There are a lot of different modules, they bring us great variety of ways to find information of a specific target, we can even use social networks like Twitter or analyze domains looking for ssl vulnerabilities. The results can be displayed in different tables, as "contacts", "companies", "hosts" ...
Código: [Seleccionar]
show <lista>



Spanish post:Recon-ng - Recopilación de información
Official web: Recon-ng


Regards, hati  ;D
« Última modificación: Febrero 03, 2020, 04:35:56 pm por HATI »


Jugar o perder