Jump to content

SpiderFoot- An Open Source Intelligence (OSINT) Automation Tool


Disco Bob

Recommended Posts

SpiderFoot- An Open Source Intelligence (OSINT) Automation Tool

 

Its goal is to automate the process of gathering intelligence about a given target, which may be an IP address, domain name, hostname, network subnet, ASN or person's name.

 

Spiderfoot.png

 

SpiderFoot can be used offensively, i.e. as part of a black-box penetration test to gather information about the target or defensively to identify what information your organisation is freely providing for attackers to use against you.
 

What is SpiderFoot?

SpiderFoot is a reconnaissance tool that automatically queries over 100 public data sources (OSINT) to gather intelligence on IP addresses, domain names, e-mail addresses, names and more. You simply specify the target you want to investigate, pick which modules to enable and then SpiderFoot will collect data to build up an understanding of all the entities and how they relate to each other.
 
 

What is OSINT?

OSINT (Open Source Intelligence) is data available in the public domain which might reveal interesting information about your target. This includes DNS, Whois, Web pages, passive DNS, spam blacklists, file meta data, threat intelligence lists as well as services like SHODAN, HaveIBeenPwned? and more. See the full list of data sources SpiderFoot utilises.
 

What can I do with SpiderFoot?

The data returned from a SpiderFoot scan will reveal a lot of information about your target, providing insight into possible data leaks, vulnerabilities or other sensitive information that can be leveraged during a penetration test, red team exercise or for threat intelligence. Try it out against your own network to see what you might have exposed.

Download SpiderFoot

 

https://blog.hackersonlineclub.com/2018/12/spiderfoot-open-source-intelligence.html

Link to comment
Share on other sites


  • Replies 1
  • Views 587
  • Created
  • Last Reply

probably a lot of people will try this on there own stuff, thus collecting an abundant amount of info for this guy..

 

"" Try it out against your own network to see what you might have exposed. ""

 

Link to comment
Share on other sites


Archived

This topic is now archived and is closed to further replies.

  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...