Footprinting Flashcards
Common tools used in Footprinting
Censys - gives you port detials and server information based on an IP Address Google Advance Search - inurl: site: filetype: Shodan - Shows weakness on Ports Netcraft - port information and banner grabbing WEbiste mirroring tools - HTTrack, Burpsuite, Firefly - Linux command for website mirror - wget Lightbeam - shows you who your information is being sent to (cookies) Mirroring toold - reamweaver, websie ripper, teleport pro, n collector, gnu wget Extract Metadat - Metagoofil, FOCA Dirbuster - for email address indexing Competitive intelligence - EDGAR Database, Hoovers - LexisNexis - Business Wire Copernic Tracker - for advanced search DNS zone file, wnat to know where DNS is located use these. - APNIC - RIPE AfriNic, Arin Use SPADE for GUI whois or DNS info including MX records, NS records
Ping, DIg, NS Lookup, WHOIS
Firewalker - used for tool used for reading ACL and for enemurating network
Maltego - tool used to gather full network mao and all device information
Recon-ng - used to get info on target
OSFRframework - gets infomraiton about who is linked to whatever website you search against.
Sni1per
TTL - operating system names
64 - Linuxe
54 - Mac or linux
128 - Windows
DNS information
page 69