• Skip to main content
  • Skip to header right navigation
  • Skip to site footer
iGuRu

iGuRu

Real-time Technology News. Opinions & Tweaks

  • / news
  • / infosec
  • / tools
  • / tweaks
  • / dummies
  • / opinions
  • / support
home / tools / reconftw: Automated recon of a target

reconftw: Automated recon of a target

16/02/2021 19:17 by Anastasis Vasileiadis

ReconFTW is a tool designed to perform automated identification on a target, performing one of the best toolkits for scanning and finding vulnerabilities.

banner - reconftw: Automated recon of a target

Installation instructions

  • Installation Guide ????
  • Required Golang > 1,14 installed and the routes must be set correctly ( $ GOPATH , $ GOROOT )
 git clone https://github.com/six2dez/reconftw
 <span class="pl-c1">cd</chip> reconftw
 chmod +x <span class="pl-k">*</chip>.sh
 ./install.sh
 ./reconftw.sh -d target.com -a
  • It is highly recommended, and in some cases necessary, to define the API keys or the env variables:
    • amass config file (~ / .config / amass / config.ini)
    • config subfinder file (~ / .config / subfinder / config.yaml)
    • GitHub Badge File (~ / Tools / .github_tokens) Recommended> 5, see how to create here
    • API favup (shodan init )
    • SSRF Server var (COLLAB_SERVER env var)
    • Blind XSS Server var (XSS_SERVER env var)
    • Configure file notification (~ / .config / notify / notify.conf)

Use

TARGET OPTIONS

FlagsDescription
-dTargeting area (example.com)
-lGoal list (one per line)
-xExclude subdomain list (Out of range)

OPERATION OPTIONS

FlagsDescription
-aPerform full recognition
-sFull subdomain scan (Subs, tko and probe)
-wPerform web checks (-l required)
-iCheck if the required tools are available or not
-vVerbose / debugging
-hShow help section

GENERAL OPTIONS

FlagsDescription
–DeepDeep Scan (Enable some slow options for deeper scan)
- fsFull range (Enable wider field * .domain. * Choices)
-oOutput directory

Run ReconFTW

To perform full recognition on a single target (may take significant time)

 ./reconftw.sh -d example.com -a

Perform full recognition with more intensive work (intended for VPS)

 ./reconftw.sh -d example.com -a --deep -o /output /directory /

Check if all the required tools are available or not

 ./reconftw.sh -i

Show help section

 ./reconftw.sh -h

Video example

Video - reconftw: Automated recon of a target

 Character

  • Google Dorks (degoogle_hunter)
  • Multiple subdomain enumeration techniques (passive, bruteforce, permutations and scraping)
    • Passive (subfinder, assetfinder, amass, findomain, crobat, waybackurls)
    • Certificate of transparency (crtfinder and bufferover)
    • Bruteforce (shuffledns)
    • Permutations (dnsgen)
    • Subdomain JS Scraping (JSFinder)
  • Sub TKO (subzy and nuclei)
  • Web Prober (httpx)
  • Web screenshot (webscreenshot)
  • Template scanner (nuclei)
  • Port Scanner (naabu)
  • Url extraction (waybackurls, left, gospider, github-endpoints)
  • Pattern Search (gf and gf-patterns)
  • Param discovery (paramspider and arjun)
  • XSS (XSStrike)
  • Open redirect (Openredirex)
  • SSRF (asyncio_ssrf.py)
  • CRLF (crlfuzz)
  • Github (GitDorker)
  • Favicon Real IP (fav-up)
  • Javascript analysis (LinkFinder, scripts from JSFScan)
  • Fuzzing (ffuf)
  • Cors (Corsy)
  • SSL tests (testssl)
  • Multithread in some steps (Interlace)
  • Custom output folder (default under Recon / target.tld /)
  • Run standalone steps (subdomains, subtko, web, gdorks…)
  • Polished installer compatible with most distros
  • Verbose mode
  • Update tools script
  • Raspberry Pi support
  • Docker support
  • CMS Scanner (CMSeeK)
  • Out of Scope Support
  • LFI Checks
  • Notification support for Slack, Discord and Telegram (notify)

Mindmap / Workflow

mindmap - reconftw: Automated recon of a target

Information on installing and using the program, you will find here.

reconftw: Automated recon of a target was last modified: 16 February, 2021, 7: 17 pm by Anastasis Vasileiadis

Subscribe to our newsletter

no spam

spread the news

  • Facebook
  • Twitter
  • Reddit
  • Printing
  • Email

Read them Technology News from all over the world, with the validity of iGuRu.gr

Follow us on Google News


Competition: toolsDay: Recon

You May Also Like

reconftw: Simple and easy to use Recon script
Wprecon: Discover Vulnerabilities in WordPress CMS
Wprecon: Discover Vulnerabilities in WordPress CMS

About Us Anastasis Vasileiadis

Translations are like women. When they are beautiful they are not faithful and when they are faithful they are not beautiful.

Previous Post: « KB4601319 Yes it causes problems. We will fix them
Next Post: Q4OS 3.14 for tired Windows users »

Reader Interactions

Comment Policy:

IGuRu.gr does not publish the comments immediately. Malicious comments, comments that include ads, or comments that are offensive are deleted without notice. We do not adopt the opinions expressed by our readers.
Your comments will be displayed after approval by the administrators


Leave your comment
Ακύρωση απάντησης

Your email address is not published. Τα υποχρεωτικά πεδία σημειώνονται με *

 

 © 2021 · iGuRu.gr · ☢ · Keep It Simple Stupid Genesis theme

about  ·   get in touch  ·  rss  ·  sitemap  ·  cough

loadingCancel
Could not post post - check your email address!
Email verification failed, please try again
Your blog can not post posts via email.