subfinder
keystore-explorer
subfinder | keystore-explorer | |
---|---|---|
8 | 2 | |
9,381 | 1,581 | |
1.6% | - | |
9.4 | 8.3 | |
3 days ago | 9 days ago | |
Go | Java | |
MIT License | GNU General Public License v3.0 only |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
subfinder
-
Subdomain.center – discover all subdomains for a domain
https://github.com/projectdiscovery/subfinder does this, but it explains all the methods and lets you choose to only do a passive scan.
-
Introducing Goctopus: open-source, state-of-the-art GraphQL endpoint discovery & fingerprinting tool.
Subdomain Enumeration: Goctopus uses DNS records APIs via subfinder to enumerate subdomains.
-
Subdomain enumeration.
Subfinder
-
Can authenticated internet-facing web app be discovered if not indexed by search engines?
My main source is Certificate Transparency, which is kind of a database of TLS certs created so far. But use external tools like Subfinder or Amass.
- Como saber todos os domínios que uma empresa tem?
- How to find out domain names registered by a particular domain registrar?
-
Intellingence-Resources
Subfinder - https://github.com/projectdiscovery/subfinder
-
Subdomain Enumeration
The best CLI tool for finding subdomains is subfinder. It is made by ProjectDiscovery who creates really powerful tools. They recently got funded $1.7 million so that the devs could work full time on developing and maintaining these tools.
keystore-explorer
-
[How-To] Convert your old keystore for RVX-Builder and CLI v4
Install KeyStore Explorer - LINK
-
Subdomain.center – discover all subdomains for a domain
> Guess I'll be looking to spin up my own CA now!
I was looking for a lazy/easy way to do this manually and settled on KeyStore Explorer, which is a GUI tool that lets you work with various keystores and do everything from making your own CA, to signing and exporting certificates in various formats: https://github.com/kaikramer/keystore-explorer (to me it feels easier than working with OpenSSL directly, provided I trust the tool)
In addition, I also setup mTLS or even basicauth at the web server (reverse proxy) level for some of my sites, which seems to help that little bit more, given that some automated attacks might choose to ignore TLS errors, but won't be able to provide my client certs or the username/password.
What are some alternatives?
amass - In-depth attack surface mapping and asset discovery
Sublist3r - Fast subdomains enumeration tool for penetration testers
assetfinder - Find domains and subdomains related to a given domain
acme-dns - Limited DNS server with RESTful HTTP API to handle ACME DNS challenges easily and securely.
httprobe - Take a list of domains and probe for working HTTP and HTTPS servers
breach-parse - A tool for parsing breached passwords
gowitness - 🔍 gowitness - a golang, web screenshot utility using Chrome Headless
subby - An uber fast and simple subdomain enumeration tool using DNS and web requests with support for detecting wildcard DNS records.
certificate-transparency - Auditing for TLS certificates.
RickNMortyCompose - A Jetpack compose android app based on Rick and Morty Graphql