information gathering footprints



Information gathering footprints is first step of ethical hacking or pen testing (pentest) process. Any hacker or white hat hacker spends more time in this step because, all collected information is used to next steps/process.

What is footprinting (footprints)?

Footprints is process of collecting information about target(s). Also called footprinting and reconnaissance. This is information gathering step.




Types of footprinting 

We can collect information using two this types of footprints.

Active 

In active footprints hacker interact with target and collect information. Like social engineering  

Passive

In passive footprints hacker collect publicly available information without interacting with target.
e.g.: using social networking sites, google groups, company posters, job sites etc.
Many free information gathering tools (footprint tools) is available that I will discuss you.

Whois lookup

This is domain and networks services provide, using this whois service we can collect this types of information about target whois domain owner, ip lookup, whois ip, dns lookup, whois lookup, who is owners, domain and website ip, domain check, hosting country, sub domain name(s), web hosting service provider etc.

ICANN whois

This is passive information gathering technique, Click here for go to this 


information gathering footprints
Information Gathering using ICANN whois

whois command

This command preinstalled in kali Linux operating system. Use following command for use whois commands.


Above commands give you full information about domain.

dnsenum command

dnsenum provide you full dns enumeration for your pen testing. 

maltego tool:

maltego is my best pen testing tools, this is automated information gathering tool.it is provide you full enumeration like domain ips,emails,location, nameserver in graphical format. 
For more ethical hacking and penetration testing (cyber security), I started my YouTube Channel. Please check this channel, I uploads all practical lab demonstration videos of ethical hacking (cissp,ceh) course and owasp pen testing.
Choose best penetration testing software for your fast and best penetration testing service.please visit my YoutTube channel.

Thanks for visiting.




Share this:

CONVERSATION

0 comments:

Post a Comment