Refer to Simple WebPentest Checklist
Subdomain Enumeration
git clone https://github.com/TheRook/subbrute.git
python subbrute.py domain.com > subdomains.txt
git clone https://github.com/infosec-au/altdns.git
altdns -i subdomains.txt -o data_output -w words.txt -r -s results_output.txt
#paste the list into Bulk URL HTTP Status Code, Header & Redirect Checker | httpstatus.io
# this will give live hosts status
make sure to check subdomain of the sub-domains
or Better use https://github.com/smicallef/spiderfoot
- this automates most of the basic tasks
Comments
Post a Comment