Show Menu
Cheatography

sud-domain enumeration Cheat Sheet by

A cheat sheet on sub-domain enumeration techniques

 

Zone walking - NSEC

ldns-walk @<n­ame­ser­ver> <do­mai­n>
ldns-walk @ns1.i­nse­cur­edn­s.com insecu­red­ns.com
Installing ldns utilities
sudo apt-get install ldnsutils # On Ubuntu­/Debian

yum install ldns # On Redhat­/CentOS

Zone transfer

dig AXFR @<n­ame­ser­ver> <do­mai­n>
dig AXFR @ns1.i­nse­cur­edn­s.com insecu­red­ns.com
 

Zone walking - NSEC3 - nsec3w­alker

./collect insecu­red­ns.com > insecu­red­ns.c­om.co­llect
./unhash < insecu­red­ns.c­om.co­llect > insecu­red­ns.c­om.unhash
Installing nsec3w­alker on Ubuntu 16.04:
wget https:­//d­nsc­urv­e.o­rg/­nse­c3w­alk­er-­201­012­23.t­ar.gz`
tar -xzf nsec3w­alk­er-­201­012­23.t­ar.gz

cd nsec3w­alk­er-­201­01223

sudo apt-get install build-­ess­ential

make

Calcul­ating NSEC3 hash for a domain

ldns-n­sec­3-hash -t <it­era­tio­ns> -s <sa­lt> <do­mai­n>
ldns-n­sec­3-hash -t 10 -s 1A2B3C­4D5E6F  myzone.ex­amp­le.com
 

Comments

No comments yet. Add yours below!

Add a Comment

Your Comment

Please enter your name.

    Please enter your email address

      Please enter your Comment.

          Related Cheat Sheets