Use TheHarvester.py to gather information about targets

Mossé Cyber Security Institute
Mossé Cyber Security Institute
1.2 هزار بار بازدید - 4 سال پیش - Solution by Mads Frandsen.MCSI's Online
Solution by Mads Frandsen.

MCSI's Online Learning Platform provides uniquely designed exercises for you to acquire in-depth domain specialist knowledge to achieve highly-regarded industry certifications that stand to advance your career.

#Theharvester.py #OSINT #Information-Gathering

Theharvester.py is a tool used to collect email addresses and user names from publicly available sources. It can be used to gather information about an individual or a company. The information gathered can be used for marketing or research purposes.

Subdomains are a way of organizing a website into distinct sections. For example, on a website for a school, there might be a subdomain for each department (e.g. English, Math, Science, etc.), or for each grade level (e.g. Freshmen, Sophomores, Juniors, Seniors). Subdomains can also be used to create separate websites for different countries or languages. By creating subdomains, website owners can make it easier for visitors to find the information they are looking for

Shodan is a search engine that lets you find specific types of devices connected to the internet, using a variety of filters. You can search for devices by country, city, hostname, OS, and more. Shodan also has a vulnerability search feature, which lets you find devices with known vulnerabilities.

DNS is the network protocol that allows computers to name and locate each other on the Internet. When you type a web address into your browser, DNS is what converts that name into the numerical IP address that identifies that computer on the network. DNS servers maintain a directory of domain names and translate them to IP addresses. This makes it possible for you to surf the web without having to remember a list of numbers.

When theharvester.py is used to perform a DNS brute force attack, it sends a DNS request for each word in a specified dictionary file. If the DNS server responds with a "no such host" error message, the script assumes that the hostname does not exist. If the DNS server responds with a "non-authoritative answer" message, the script assumes that the hostname exists. By comparing the responses from the DNS server, the script can determine which hostnames are valid.

DNS reverse lookup is a process of resolving an IP address to its associated domain name. It is the opposite of forward DNS lookup, which resolves domain names to IP addresses. In most cases, DNS reverse lookup is used to find the domain name associated with a particular IP address, but it can also be used to find the IP address of a domain name.

For more information on related cyber security topics visit our blog:

► Penetration Testing: https://blog.mosse-institute.com/pene...
► Red Teaming: https://blog.mosse-institute.com/red-...

If you are interested in improving your education and advancing your career in the cyber security industry, why not take a look at our Bootcamps, certifications, and career pathways blog:

► Bootcamps: https://www.mosse-institute.com/bootc...  
► Certifications: https://www.mosse-institute.com/certi...
► Career pathways: https://blog.mosse-institute.com/care...

► Reviews and Testimonials: https://blog.mosse-institute.com/revi...
4 سال پیش در تاریخ 1399/07/15 منتشر شده است.
1,211 بـار بازدید شده
... بیشتر