OSInt, Cyberstalking, Footprinting and Recon: Getting to know you
irongeek.com | May 21st 2011The following are videos from the Footprinting/OSInt/Recon/Cyberstalking class I did up in Fort Wayne Indiana for the . I've split the class into three videos by subtopic, and included the text from the presentation for quick linking.
About Adrian Class Structure * Feel free to ask questions at any time * There will (hopefully) be many long breaks to play with the tools mentioned * I'll try not to drop anyone's docs but my own, but volunteers for "victims" will help So, what info is out there? * Finding general Information about an * Anti-social networks * Google Hacking * Metadata * Other odds and ends Why? Dropping Docs DNS, Whois and Domain Tools DNS * Reverse lookup: Getting a list of host names * Bruteforcing from a dictionary * Nmap -sL | DIGing for data dig @ns1.dreamhost.com irongeek.com any > set type=ns Non-authoritative answer: > ls irongeek.com Zone Transfer: Can you DIG it? Zone Transfer: Others * ServerSniff: * GUI Dig for Windows Nmap Demo Whois: Whooo, are you* Who-who-who-who. * Who is by proxy? Whois Tools Nirsoft's Pretty much any network tools collection Whois and domain tools sites * ServerSniff Traceroute * *nix (UDP by default, change with -I or -T): * Just for fun: Finding general Information about an organization via the web
|
Part 2:
Anti-social networks
Google Hacking
Ok, I had some epic fail here using some of the "people searches". I should have tested better with the names I planed to use. I think I somewhat made up for it while "Google Hacking" people later in the class. Goes to show results vary from search provider to search provider, and who you are looking up.
Part 3:
Metadata
Other odds and ends
I think the class had a lot of fun with FOCA. Good stuff.
Metadata Pwned by Metadata Examples of file types that contain metadata Metadata Tools * FOCA (use compatibility mode if needed) * Metagoofil * EXIF Tool * EXIF Viewer Plugin * Jeffrey's Exif Viewer Metadata Tools * Flickramio * Cree.py * Pauldotcom http://www.google.com/search?hl=en&q=metadata+site%3Apauldotcom.com&btnG=Search | Other odds and ends Off with their Headers * PTES Technical Guidelines * VulnerabilityAssessment.co.uk - An information portal for Vulnerability Analysts and Penetration Testers Videos/Talks/Presentations * Satan is on my Friends List - Shawn Moyer and Nathan Hamiel * Using Social Networks To Profile, Find and 0wn Your Victims - Dave Marcus Events Questions? |
Original Page: http://www.irongeek.com/i.php?page=videos/osint-cyberstalking-footprinting-recon&mode=print
Shared from Read It Later
No comments:
Post a Comment