Recon Automation with Sub Num Num

I'd like to start things off with I am NOT a coder...

 .. but I wrote a very simple script to help automate some of my Recon for Sub-domains. Doing this manually is a huge under taking and of course time consuming. This is just the beginning of the horribly named script "Sub Num Num"








But what's it do?
This script reaches out to cert.sh and certspotter checking for valid sub-domains - next it runs a quick  probe on (80,443) We are then left with valid targets to begin a deeper dive.(Directory brute forcing etc..)

You can access the current code here.. https://github.com/atomixgray/subnumnum

Installation (note GoLang is needed for the httprobe)
If you have git installed
1.) sudo git clone https://github.com/atomixgray/subnumnum.git
2.) chmod +x subnumnum.sh

Lets do a quick hunt on gemini.yahoo.com (There is currently a public bounty on this Sub)


























Comments and suggestions are more than welcome!


Comments

  1. 188bet.com: online casino for sports betting & eSports betting
    Bet on esports, eSports, Baccarat and all your favourite sports william hill in one app. We have a huge selection of online casinos & live 188bet casino games! Rating: 4.3 · ‎Review by ThTopBet

    ReplyDelete

Post a Comment

Popular posts from this blog

Anomali STAXX and Hail a Taxii

CyberArk Automation