RECON-NG{
全特性的 web 侦查框架;
基于 python 开发;
命令格式与 msf 一致;
使用方法{
模块;
数据库;
报告;
}
recon-ng -w 生成不同工作区;
help 显示帮助;
add Adds records to the database
back Exits the current context
delete Deletes records from the database
exit Exits the framework
help Displays this menu
keys Manages framework API keys
load Loads specified module
pdb Starts a Python Debugger session
query Queries the database
record Records commands to a resource file
reload Reloads all modules
resource Executes commands from a resource file
search Searches available modules
set Sets module options
shell Executes shell commands
show Shows various framework items
snapshots Manages workspace snapshots
spool Spools output to a file
unset Unsets module options
use Loads specified module
workspaces Manages workspaces
使用搜索引擎模块{
use recon/domains-hosts/google_site_web
show info
set SOURCE sina.com
run
show hosts ;;查看结果
query select * from hosts
query select * from hosts where host like '%www%'
爆破: ;;使用前可以回去把线程调到50以上,加快爆破速度
use recon/domains-hosts/brute_hosts
域名解析为ip:
use recon/hosts-hosts/resolve
set SOURCE query select host from hosts where host like '%ass%'
}
}