Recon my way -- tools and setting up Guide.
This repository contains the tools and scripts, I added in my recent blog post Recon-My way
https://medium.com/ehsahil/recon-my-way-82b7e5f62e21
I created this because there are many tools available these days and new users are confused about which tools to use and which are not much useful.
Anyone can contribute to this repository If they think they have a useful tool.
I have also added my two simple scripts.
subdomain.rb & recon.rb
Standard machine to use. - Debian- 9.4 4 GB RAM on DigitalOcean (You can use according to your requirements.)
Installation instructions.
- Git Installation
root@recon-my-way:~ sudo apt-get update root@recon-my-way:~ sudo apt-get upgrade root@recon-my-way:~ sudo apt-get install git
2.Go language installation.
root@recon-my-way:~ curl -O https://dl.google.com/go/go1.10.2.linux-amd64.tar.gz root@recon-my-way:~ sha256sum go1.10.2-linux-amd64.tar.gz root@recon-my-way:~ tar xvf go1.10.2.linux-amd64.tar.gz root@recon-my-way:~ sudo chown -R root:root ./go root@recon-my-way:~ sudo mv go /usr/local root@recon-my-way:~ vi ~/.profile and add export GOPATH=$HOME/work export PATH=$PATH:/usr/local/go/bin:$GOPATH/bin source ~/.profile
Cleaing Up- root@recon-my-way:~ rm -rf go1.10.1.linux-amd64.tar.gz root@recon-my-way:~ rm -rf work
- Ruby Language installation.
root@recon-my-way:~ apt-get install ruby-full
- Curl Language installation.
root@recon-my-way:~ apt install curl
- Pip & pip3 install.
root@recon-my-way:~ apt install python-pip root@recon-my-way:~ apt install python3-pip #python 3
Setting up tools for subdomain.rb & recon.rb.
for subdomain.rb
-
Amass root@recon-my-way:~ cd /usr/local/go root@recon-my-way:/usr/local/go# go get -u github.com/caffix/amass root@recon-my-way:/usr/local/go# amass
-
Aquatone
root@recon-my-way:~# gem install aquatone
-
Knockpy
-
Subfinder
-
Sublist3r (Optional)
for recon.rb
- host
- nmap
- AWS CLI
- Dirsearch/Gobuster.
Tools installation.
-
JSParser
-
LinkFinder
-
VHost Scan
-
AltDNS
-
Amass
-
Aquatone
-
Bucket Finder.
-
Censys Enumeration.
-
Censys subdomain finder.
-
Dirsearch
-
Domain Profiler
-
Domains from CSP
-
Knock
-
Lazy Recon.
-
LazyS3
-
Lazy Shot
-
Mass Scan
-
S3 Bucket Finder
-
Sub Resolve.
-
WebScreenshot
-
recon.rb
-
subdomain.rb
-
waybackurl.py