Google Blogoscoped

Forum

Subdomain bruteforcer for stealth enumeration developed

Juha-Matti Laurio [PersonRank 10]

Monday, September 18, 2006
17 years ago2,427 views

Information about so-called DNSMAP experiments with the following details has been released:
[it will allow] "obtain *all* IP addresses (A records) associated to each
successfully bruteforced subdomain, rather than just one IP address
per subdomain"

More at
http://lists.grok.org.uk/pipermail/full-disclosure/2006-September/049528.html

The following statement is part of the posting:
"remember all this tool does is resolve subdomains. *No*
packets are sent to the bruteforced subdomains."

Tony Ruscoe [PersonRank 10]

17 years ago #

Very interesting. Thanks for the info.

Maybe I should run it against my word lists and update this:

http://ruscoe.net/google/google-subdomains/

Tony Ruscoe [PersonRank 10]

17 years ago #

BTW, for anyone trying to run this, the dictionary file you provide needs to be in UNIX format rather than DOS format even if you're running the win32 version, otherwise the linebreaks (i.e. CR+LF) will break it.

Forum home

Advertisement

 
Blog  |  Forum     more >> Archive | Feed | Google's blogs | About
Advertisement

 

This site unofficially covers Google™ and more with some rights reserved. Join our forum!