pentest-osint-recon
Compare original and translation side by side
🇺🇸
Original
English🇨🇳
Translation
ChinesePentest OSINT Recon
渗透测试OSINT侦察
Purpose
目的
Gather publicly available information about a target organization to map its external attack surface, including subdomains, emails, and exposed assets.
收集目标组织的公开可用信息,以绘制其外部攻击面,包括子域名、邮箱和暴露的资产。
Core Workflow
核心工作流程
- Domain Enumeration: Discover subdomains and related assets using and
amass.subfinder - Tech Profiling: Identify technologies used on discovered assets using and
httpx.whatweb - Information Gathering: Search for emails, leaks, and social media presence using and search engines.
theharvester - Asset Correlation: Correlate IP addresses, domains, and technologies to find weak spots.
- Vulnerability Intel: Check discovered software versions against CVE databases.
- 域名枚举:使用和
amass发现子域名及相关资产。subfinder - 技术分析:使用和
httpx识别已发现资产所使用的技术。whatweb - 信息收集:使用和搜索引擎搜索邮箱、数据泄露信息和社交媒体踪迹。
theharvester - 资产关联:关联IP地址、域名和技术以找出薄弱点。
- 漏洞情报:对照CVE数据库检查已发现软件的版本。
References
参考资料
references/tools.mdreferences/workflows.md
references/tools.mdreferences/workflows.md