<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Darknet - The Darkside &#187; information gathering</title>
	<atom:link href="http://www.darknet.org.uk/tag/information-gathering/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.darknet.org.uk</link>
	<description>Ethical Hacking, Penetration Testing &#38; Computer Security</description>
	<lastBuildDate>Tue, 07 Feb 2012 18:34:17 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>theHarvester &#8211; Gather E-mail Accounts, Subdomains, Hosts, Employee Names &#8211; Information Gathering Tool</title>
		<link>http://www.darknet.org.uk/2012/01/theharvester-gather-e-mail-accounts-subdomains-hosts-employee-names-information-gathering-tool/</link>
		<comments>http://www.darknet.org.uk/2012/01/theharvester-gather-e-mail-accounts-subdomains-hosts-employee-names-information-gathering-tool/#comments</comments>
		<pubDate>Tue, 31 Jan 2012 15:29:43 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Web Hacking]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[hacking tool]]></category>
		<category><![CDATA[info gathering]]></category>
		<category><![CDATA[info gathering tool]]></category>
		<category><![CDATA[information gathering]]></category>
		<category><![CDATA[information gathering tool]]></category>
		<category><![CDATA[pen-testing]]></category>
		<category><![CDATA[penetration-testing]]></category>
		<category><![CDATA[shodan]]></category>
		<category><![CDATA[snooping]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=3253</guid>
		<description><![CDATA[theHarvester is a tool to gather emails, subdomains, hosts, employee names, open ports and banners from different public sources like search engines, PGP key servers and SHODAN computer database. This tools is intended to help Penetration testers in the early stages of the project It&#8217;s a really simple tool, but very effective. The sources supported [...]]]></description>
			<content:encoded><![CDATA[<p>theHarvester is a tool to gather emails, subdomains, hosts, employee names, open ports and banners from different public sources like search engines, PGP key servers and SHODAN computer database. </p>
<p>This tools is intended to help Penetration testers in the early stages of the project It&#8217;s a really simple tool, but very effective.</p>
<p>The sources supported are:</p>
<ul>
<li>    Google &#8211; emails,subdomains/hostnames</li>
<li>    Google profiles &#8211; Employee names</li>
<li>    Bing search &#8211; emails, subdomains/hostnames,virtual hosts</li>
<li>    Pgp servers &#8211; emails, subdomains/hostnames</li>
<li>    Linkedin &#8211; Employee names</li>
<li>    Exalead &#8211; emails,subdomain/hostnames</li>
</ul>
<p><strong>New Features</strong></p>
<ul>
<li>    Time delays between requests</li>
<li>    XML and HTML results export</li>
<li>    Search a domain in all sources</li>
<li>    Virtual host verifier</li>
<li>    Shodan computer database integration</li>
<li>    Active enumeration (DNS enumeration,DNS reverse lookups, DNS TLD expansion)</li>
<li>    Basic graph with stats</li>
</ul>
<p><strong>Examples</strong></p>
<p><div align="center"><script type="text/javascript"><!--
google_ad_client = "pub-3033787195489589";
/* Darknet-Body468 */
google_ad_slot = "1341243171";
google_ad_width = 468;
google_ad_height = 60;
//-->
</script>
<script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></div><br /></p>
<p>Searching emails accounts for the domain microsoft.com, it will work with the first 500 google results:</p>
<pre><code>./theharvester.py -d microsoft.com -l 500 -b google</code></pre>
<p>Searching emails accounts for the domain microsoft.com in a PGP server, here it&#8217;s not necessary to specify the limit.</p>
<pre><code>./theharvester.py -d microsoft.com -b pgp</code></pre>
<p>Searching for user names that works in the company microsoft, we use google as search engine, so we need to specify the limit of results we want to use:</p>
<pre><code>./theharvester.py -d microsoft.com -l 200 -b linkedin</code></pre>
<p>Searching in all sources at the same time, with a limit of 200 results:</p>
<pre><code>./theHarvester.py -d microsoft.com -l 200 -b all</code></pre>
<p>You can download theHarvester here:</p>
<p><a href="https://theharvester.googlecode.com/files/theHarvester-2.1_BH2011_Arsenal.tar">theHarvester-2.1_BH2011_Arsenal.tar</a></p>
<p>Or read more <a href="http://www.edge-security.com/theHarvester.php">here</a>.</p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=theHarvester+%E2%80%93+Gather+E-mail+Accounts%2C+Subdomains%2C+Hosts%2C+Employee+Names+%E2%80%93+Information+Gathering+To...+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D3253+from+%40THEdark..." title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2012/01/theharvester-gather-e-mail-accounts-subdomains-hosts-employee-names-information-gathering-tool/&amp;t=theHarvester+%E2%80%93+Gather+E-mail+Accounts%2C+Subdomains%2C+Hosts%2C+Employee+Names+%E2%80%93+Information+Gathering+Tool" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2012/01/theharvester-gather-e-mail-accounts-subdomains-hosts-employee-names-information-gathering-tool/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2012/01/theharvester-gather-e-mail-accounts-subdomains-hosts-employee-names-information-gathering-tool/&amp;title=theHarvester+%E2%80%93+Gather+E-mail+Accounts%2C+Subdomains%2C+Hosts%2C+Employee+Names+%E2%80%93+Information+Gathering+Tool" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2012/01/theharvester-gather-e-mail-accounts-subdomains-hosts-employee-names-information-gathering-tool/&amp;title=theHarvester+%E2%80%93+Gather+E-mail+Accounts%2C+Subdomains%2C+Hosts%2C+Employee+Names+%E2%80%93+Information+Gathering+Tool" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2012/01/theharvester-gather-e-mail-accounts-subdomains-hosts-employee-names-information-gathering-tool/&amp;title=theHarvester+%E2%80%93+Gather+E-mail+Accounts%2C+Subdomains%2C+Hosts%2C+Employee+Names+%E2%80%93+Information+Gathering+Tool" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2012/01/theharvester-gather-e-mail-accounts-subdomains-hosts-employee-names-information-gathering-tool/&amp;title=theHarvester+%E2%80%93+Gather+E-mail+Accounts%2C+Subdomains%2C+Hosts%2C+Employee+Names+%E2%80%93+Information+Gathering+Tool" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2012%2F01%2Ftheharvester-gather-e-mail-accounts-subdomains-hosts-employee-names-information-gathering-tool%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2012/01/theharvester-gather-e-mail-accounts-subdomains-hosts-employee-names-information-gathering-tool/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>SearchDiggity &#8211; GUI Front-End For GoogleDiggity &amp; BingDiggity</title>
		<link>http://www.darknet.org.uk/2011/04/searchdiggity-gui-front-end-for-googlediggity-bingdiggity/</link>
		<comments>http://www.darknet.org.uk/2011/04/searchdiggity-gui-front-end-for-googlediggity-bingdiggity/#comments</comments>
		<pubDate>Thu, 21 Apr 2011 13:54:07 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Web Hacking]]></category>
		<category><![CDATA[bing hacking]]></category>
		<category><![CDATA[bing hacking tool]]></category>
		<category><![CDATA[bingdiggity]]></category>
		<category><![CDATA[google ajax api]]></category>
		<category><![CDATA[google hacking diggity project]]></category>
		<category><![CDATA[google hacking tool]]></category>
		<category><![CDATA[google-hacking]]></category>
		<category><![CDATA[googlediggity]]></category>
		<category><![CDATA[googledorks]]></category>
		<category><![CDATA[information gathering]]></category>
		<category><![CDATA[penetration-testing]]></category>
		<category><![CDATA[searchdiggity]]></category>
		<category><![CDATA[stach and liu]]></category>
		<category><![CDATA[stachliu]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=3100</guid>
		<description><![CDATA[The Google Hacking Diggity Project is a research and development initiative dedicated to investigating the latest techniques that leverage search engines, such as Google and Bing, to quickly identify vulnerable systems and sensitive data in corporate networks. SearchDiggity is a new GUI application that serves as a front-end to both GoogleDiggity and BingDiggity. GoogleDiggity With [...]]]></description>
			<content:encoded><![CDATA[<p>The Google Hacking Diggity Project is a research and development initiative dedicated to investigating the latest techniques that leverage search engines, such as Google and Bing, to quickly identify vulnerable systems and sensitive data in corporate networks.</p>
<p>SearchDiggity is a new GUI application that serves as a front-end to both GoogleDiggity and BingDiggity.</p>
<p><strong>GoogleDiggity</strong></p>
<p>With the retirement of Google’s SOAP Search API on September 7, 2009, most of the security utilities available for Google Hacking cease to function, leaving the security industry with a need for new and innovative tools. GoogleDiggity is a new MS Windows command line utility designed to help fill that need. GoogleDiggity leverages the Google AJAX API, so it will not get you blocked by Google bot detection while scanning. Also, unlike other Google Hacking tools available, GoogleDiggity actually allows you to specify a <a href="http://www.google.com/cse/">Google Custom Search Engine (CSE)</a> id to run Google Hacking vulnerability checks against a customized version of Google that will only return results tailored to your organization.</p>
<p><div align="center"><script type="text/javascript"><!--
google_ad_client = "pub-3033787195489589";
/* Darknet-Body468 */
google_ad_slot = "1341243171";
google_ad_width = 468;
google_ad_height = 60;
//-->
</script>
<script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></div><br /></p>
<p><strong>BingDiggity</strong></p>
<p>BingDiggity is a new command line utility that leverages the new Bing 2.0 API and a newly developed Bing Hacking Database (BHDB) to find vulnerabilities and sensitive information disclosures related to your organization that are exposed via Microsoft’s Bing search engine. This utility also provides footprinting functionality that allows you to enumerate URLS, hosts, domains, IP-to-virtual host mappings, etc. for target companies.</p>
<p>You can download SearchDiggity v1.0 here:</p>
<p>MSI Installer &#8211; <a href="http://www.stachliu.com/tools/searchdiggity.msi">searchdiggity.msi</a><br />
ZIP File &#8211; <a href="http://www.stachliu.com/tools/searchdiggity.zip">searchdiggity.zip</a></p>
<p>Or read more <a href="http://www.stachliu.com/resources/tools/google-hacking-diggity-project/">here</a>.</p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=SearchDiggity+%E2%80%93+GUI+Front-End+For+GoogleDiggity+%26+BingDiggity+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D3100+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2011/04/searchdiggity-gui-front-end-for-googlediggity-bingdiggity/&amp;t=SearchDiggity+%E2%80%93+GUI+Front-End+For+GoogleDiggity+%26+BingDiggity" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2011/04/searchdiggity-gui-front-end-for-googlediggity-bingdiggity/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2011/04/searchdiggity-gui-front-end-for-googlediggity-bingdiggity/&amp;title=SearchDiggity+%E2%80%93+GUI+Front-End+For+GoogleDiggity+%26+BingDiggity" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2011/04/searchdiggity-gui-front-end-for-googlediggity-bingdiggity/&amp;title=SearchDiggity+%E2%80%93+GUI+Front-End+For+GoogleDiggity+%26+BingDiggity" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2011/04/searchdiggity-gui-front-end-for-googlediggity-bingdiggity/&amp;title=SearchDiggity+%E2%80%93+GUI+Front-End+For+GoogleDiggity+%26+BingDiggity" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2011/04/searchdiggity-gui-front-end-for-googlediggity-bingdiggity/&amp;title=SearchDiggity+%E2%80%93+GUI+Front-End+For+GoogleDiggity+%26+BingDiggity" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2011%2F04%2Fsearchdiggity-gui-front-end-for-googlediggity-bingdiggity%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2011/04/searchdiggity-gui-front-end-for-googlediggity-bingdiggity/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>FindDomains v0.1.1 Released &#8211; Discover Domains/Sites/Hosts</title>
		<link>http://www.darknet.org.uk/2009/12/finddomains-v0-1-1-released-discover-domainssiteshosts/</link>
		<comments>http://www.darknet.org.uk/2009/12/finddomains-v0-1-1-released-discover-domainssiteshosts/#comments</comments>
		<pubDate>Wed, 30 Dec 2009 09:17:18 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Web Hacking]]></category>
		<category><![CDATA[domain-scanner]]></category>
		<category><![CDATA[find domains]]></category>
		<category><![CDATA[find domains by ip address]]></category>
		<category><![CDATA[find domains from ip address]]></category>
		<category><![CDATA[finddomains]]></category>
		<category><![CDATA[hacking tool]]></category>
		<category><![CDATA[information gathering]]></category>
		<category><![CDATA[penetration-testing]]></category>
		<category><![CDATA[reverse domain lookup]]></category>
		<category><![CDATA[search engine discovery tool]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=2370</guid>
		<description><![CDATA[FindDomains is a multithreaded search engine discovery tool that will be very useful for penetration testers dealing with discovering domain names/web sites/virtual hosts which are located on too many IP addresses. Provides a console interface so you can easily integrate this tool to your pentest automation system. It retrieves domain names/web sites which are located [...]]]></description>
			<content:encoded><![CDATA[<p></p>
<p>FindDomains is a multithreaded search engine discovery tool that will be very useful for penetration testers dealing with discovering domain names/web sites/virtual hosts which are located on too many IP addresses. Provides a console interface so you can easily integrate this tool to your pentest automation system.</p>
<p>It retrieves domain names/web sites which are located on specified ip address/hostname.</p>
<p>In order to use FindDomains you need to:</p>
<ol>
<li>Create an appid from &#8220;Bing Developers&#8221; at <a href="http://www.bing.com/developers/createapp.aspx">this link</a>.</li>
<li>It&#8217;ll be like that : 32AFB589D1C8B4FEC73D4BCB6EA0AD810E0FA2C7</li>
<li>When you have registered an appid, enter it to the &#8220;appid.txt&#8221; which is in the program directory. </li>
</ol>
<p><strong>Features</strong></p>
<ul>
<li>Uses Bing search engine. Works with first 1000 records.</li>
<li>Multithreaded on crawling and DNS resolution.</li>
<li>Performs DNS resolution for extracted domains to eleminate cached/old records.</li>
<li>Has a console interface so it can be very useful with some command-line foo.</li>
<li>Works with Mono. But running under Windows is more efficient. </li>
</ul>
<p><strong>Sample usage</strong></p>
<pre><code>FindDomains.exe 1.2.3.4</code></pre>
<pre><code>FindDomains.exe www.hotmail.com </code></pre>
<p><strong>Requirements</strong></p>
<ul>
<li>.NET Framework 3.5. Also working with Mono. </li>
</ul>
<p>You can dowload FindDomains v.0.1.1 here:</p>
<p><a href="http://finddomains.googlecode.com/files/FindDomainsv0.1.1.rar">FindDomainsv0.1.1.rar</a></p>
<p></p>
<p>Or read more <a href="http://code.google.com/p/finddomains/">here</a>.</p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=FindDomains+v0.1.1+Released+%E2%80%93+Discover+Domains%2FSites%2FHosts+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D2370+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2009/12/finddomains-v0-1-1-released-discover-domainssiteshosts/&amp;t=FindDomains+v0.1.1+Released+%E2%80%93+Discover+Domains%2FSites%2FHosts" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2009/12/finddomains-v0-1-1-released-discover-domainssiteshosts/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2009/12/finddomains-v0-1-1-released-discover-domainssiteshosts/&amp;title=FindDomains+v0.1.1+Released+%E2%80%93+Discover+Domains%2FSites%2FHosts" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2009/12/finddomains-v0-1-1-released-discover-domainssiteshosts/&amp;title=FindDomains+v0.1.1+Released+%E2%80%93+Discover+Domains%2FSites%2FHosts" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2009/12/finddomains-v0-1-1-released-discover-domainssiteshosts/&amp;title=FindDomains+v0.1.1+Released+%E2%80%93+Discover+Domains%2FSites%2FHosts" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2009/12/finddomains-v0-1-1-released-discover-domainssiteshosts/&amp;title=FindDomains+v0.1.1+Released+%E2%80%93+Discover+Domains%2FSites%2FHosts" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2009%2F12%2Ffinddomains-v0-1-1-released-discover-domainssiteshosts%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2009/12/finddomains-v0-1-1-released-discover-domainssiteshosts/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>hostmap 0.2 &#8211; Automatic Hostname &amp; Virtual Hosts Discovery Tool</title>
		<link>http://www.darknet.org.uk/2009/12/hostmap-0-2-automatic-hostname-virtual-hosts-discovery-tool/</link>
		<comments>http://www.darknet.org.uk/2009/12/hostmap-0-2-automatic-hostname-virtual-hosts-discovery-tool/#comments</comments>
		<pubDate>Wed, 23 Dec 2009 10:44:51 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Network Hacking]]></category>
		<category><![CDATA[Web Hacking]]></category>
		<category><![CDATA[automatic hostname discovery]]></category>
		<category><![CDATA[hacking tool]]></category>
		<category><![CDATA[host mapping]]></category>
		<category><![CDATA[hostmap]]></category>
		<category><![CDATA[hostname discovery tool]]></category>
		<category><![CDATA[information gathering]]></category>
		<category><![CDATA[network-security]]></category>
		<category><![CDATA[penetration-testing]]></category>
		<category><![CDATA[vhost discovery]]></category>
		<category><![CDATA[vhost discovery tool]]></category>
		<category><![CDATA[virtual host discovery]]></category>
		<category><![CDATA[virtual host discovery tool]]></category>
		<category><![CDATA[web-hacking-tool]]></category>
		<category><![CDATA[web-security]]></category>
		<category><![CDATA[web-server-hacking]]></category>
		<category><![CDATA[web-server-security]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=2371</guid>
		<description><![CDATA[hostmap is a free, automatic, hostnames and virtual hosts discovery tool written in Ruby, licensed under GNU General Public License version 3 (GPLv3). Its goal is to enumerate all hostnames and configured virtual hosts on an IP address. The primary users of hostmap are professionals performing vulnerability assessments and penetration tests. hostmap helps you using [...]]]></description>
			<content:encoded><![CDATA[<p></p>
<p>hostmap is a free, automatic, hostnames and virtual hosts discovery tool written in Ruby, licensed under GNU General Public License version 3 (GPLv3). Its goal is to enumerate all hostnames and configured virtual hosts on an IP address. The primary users of hostmap are professionals performing vulnerability assessments and penetration tests.</p>
<p>hostmap helps you using several techniques to enumerate all the hostnames associated with an IP address.</p>
<p><strong>Features</strong></p>
<ul>
<li>DNS names and virtual hosts enumeration</li>
<li>Multiple discovery techniques, to read more see documentation.</li>
<li>Results correlation, aggregation and normalization</li>
<li>Multithreaded and event based engine</li>
<li>Platform independent</li>
</ul>
<p><strong>Changes/New Features in v0.2</strong></p>
<ul>
<li>Fully refactored and rewritten in Ruby.</li>
<li>User requested interrupt (CTRL+C) now is handled.</li>
<li>Added Rakefile to automatize task. For example readme and API documentation rebuilding.</li>
<li>Changed info gathering plugin architecture. Now using PlugMan library.</li>
<li>Added some host names to brute forcing dictionaries.</li>
<li>Added parsing of alternate subject (subjectAltName) from X.509 certificates.</li>
<li>Added info gathering plugin using dnshistory.org.</li>
<li>Added wildcard domains detection.</li>
<li>Added wildcard X.509 certificate detection.</li>
<li>Added -d option to use a user supplied list of DNS servers</li>
<li>Added blacklist for second level TLD (for example co.uk) detection.</li>
<li>Added an enumeration plugin to use Microsoft Bing via API. API key must be provided in configuration file.</li>
<li>Added a configuration file (hostmap.conf) to keep user settings.</li>
<li>Added option &#8211;http-ports to specify the ports to check for an HTTP/HTTPS service.</li>
</ul>
<p>You can see the complete list of changes <a href="http://hostmap.sourceforge.net/doc/Changelog.txt">here</a>.</p>
<p>The user manual is available here &#8211; <a href="http://hostmap.sourceforge.net/doc/README.pdf">README.pdf</a> [PDF]</p>
<p>You can download hostmap 0.2 here:</p>
<p><a href="https://sourceforge.net/projects/hostmap/files/hostmap/hostmap-0.2/hostmap-0.2.tar.gz/download">hostmap-0.2.tar.gz</a></p>
<p></p>
<p>Or read more <a href="http://hostmap.sourceforge.net/">here</a>.</p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=hostmap+0.2+%E2%80%93+Automatic+Hostname+%26+Virtual+Hosts+Discovery+Tool+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D2371+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2009/12/hostmap-0-2-automatic-hostname-virtual-hosts-discovery-tool/&amp;t=hostmap+0.2+%E2%80%93+Automatic+Hostname+%26+Virtual+Hosts+Discovery+Tool" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2009/12/hostmap-0-2-automatic-hostname-virtual-hosts-discovery-tool/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2009/12/hostmap-0-2-automatic-hostname-virtual-hosts-discovery-tool/&amp;title=hostmap+0.2+%E2%80%93+Automatic+Hostname+%26+Virtual+Hosts+Discovery+Tool" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2009/12/hostmap-0-2-automatic-hostname-virtual-hosts-discovery-tool/&amp;title=hostmap+0.2+%E2%80%93+Automatic+Hostname+%26+Virtual+Hosts+Discovery+Tool" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2009/12/hostmap-0-2-automatic-hostname-virtual-hosts-discovery-tool/&amp;title=hostmap+0.2+%E2%80%93+Automatic+Hostname+%26+Virtual+Hosts+Discovery+Tool" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2009/12/hostmap-0-2-automatic-hostname-virtual-hosts-discovery-tool/&amp;title=hostmap+0.2+%E2%80%93+Automatic+Hostname+%26+Virtual+Hosts+Discovery+Tool" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2009%2F12%2Fhostmap-0-2-automatic-hostname-virtual-hosts-discovery-tool%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2009/12/hostmap-0-2-automatic-hostname-virtual-hosts-discovery-tool/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Binging (BETA) &#8211; Footprinting &amp; Discovery Tool (Google Hacking)</title>
		<link>http://www.darknet.org.uk/2009/11/binging-beta-footprinting-discovery-tool-google-hacking/</link>
		<comments>http://www.darknet.org.uk/2009/11/binging-beta-footprinting-discovery-tool-google-hacking/#comments</comments>
		<pubDate>Fri, 06 Nov 2009 07:51:23 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Web Hacking]]></category>
		<category><![CDATA[bing]]></category>
		<category><![CDATA[binging]]></category>
		<category><![CDATA[domain enumeration]]></category>
		<category><![CDATA[domain footprinting]]></category>
		<category><![CDATA[google-hacking]]></category>
		<category><![CDATA[host enumeration]]></category>
		<category><![CDATA[information gathering]]></category>
		<category><![CDATA[information-leak]]></category>
		<category><![CDATA[Information-Security]]></category>
		<category><![CDATA[microsoft bing]]></category>
		<category><![CDATA[penetration-testing]]></category>
		<category><![CDATA[reverse lookup]]></category>
		<category><![CDATA[site discovery]]></category>
		<category><![CDATA[web-application-security]]></category>
		<category><![CDATA[web-applications]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=2230</guid>
		<description><![CDATA[It&#8217;s been a while since I&#8217;ve seen a tool of this type, back in the heydays of Google Hacking (which became the generic term for information gathering via search engines) there were multiple tools such as Gooscan and Goolag. Binging is a simple tool to query Bing search engine. It will use your Bing API [...]]]></description>
			<content:encoded><![CDATA[<p></p>
<p>It&#8217;s been a while since I&#8217;ve seen a tool of this type, back in the heydays of <a href="http://www.darknet.org.uk/tag/google-hacking/">Google Hacking</a> (which became the generic term for information gathering via search engines) there were multiple tools such as <a href="http://www.darknet.org.uk/2008/11/gooscan-automated-google-hacking-tool/">Gooscan</a> and <a href="http://www.darknet.org.uk/2008/03/goolag-gui-tool-for-google-hacking/">Goolag</a>.</p>
<p>Binging is a simple tool to query Bing search engine. It will use your Bing API key and fetch multiple results. This particular tool can be used for cross domain footprinting for Web 2.0 applications, site discovery, reverse lookup, host enumeration etc. One can use various different directives like site, ip etc. and run queries against the engine. On top of it tool provides filtering capabilities so you can ask for unique URLs or hosts. It is also possible to filter results by applying power of regular expression. Get your Bing API key and use this tool for your audit, assessment and research.</p>
<p>You can download Binging here:</p>
<p><a href="http://www.blueinfy.com/Binging.zip">Binging.zip</a></p>
<p></p>
<p>Or read more <a href="http://www.blueinfy.com/tools.html">here</a>.</p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=Binging+%28BETA%29+%E2%80%93+Footprinting+%26+Discovery+Tool+%28Google+Hacking%29+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D2230+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2009/11/binging-beta-footprinting-discovery-tool-google-hacking/&amp;t=Binging+%28BETA%29+%E2%80%93+Footprinting+%26+Discovery+Tool+%28Google+Hacking%29" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2009/11/binging-beta-footprinting-discovery-tool-google-hacking/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2009/11/binging-beta-footprinting-discovery-tool-google-hacking/&amp;title=Binging+%28BETA%29+%E2%80%93+Footprinting+%26+Discovery+Tool+%28Google+Hacking%29" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2009/11/binging-beta-footprinting-discovery-tool-google-hacking/&amp;title=Binging+%28BETA%29+%E2%80%93+Footprinting+%26+Discovery+Tool+%28Google+Hacking%29" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2009/11/binging-beta-footprinting-discovery-tool-google-hacking/&amp;title=Binging+%28BETA%29+%E2%80%93+Footprinting+%26+Discovery+Tool+%28Google+Hacking%29" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2009/11/binging-beta-footprinting-discovery-tool-google-hacking/&amp;title=Binging+%28BETA%29+%E2%80%93+Footprinting+%26+Discovery+Tool+%28Google+Hacking%29" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2009%2F11%2Fbinging-beta-footprinting-discovery-tool-google-hacking%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2009/11/binging-beta-footprinting-discovery-tool-google-hacking/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Origami &#8211; Parse, Analyze &amp; Forge PDF Documents</title>
		<link>http://www.darknet.org.uk/2009/10/origami-parse-analyze-forge-pdf-documents/</link>
		<comments>http://www.darknet.org.uk/2009/10/origami-parse-analyze-forge-pdf-documents/#comments</comments>
		<pubDate>Tue, 20 Oct 2009 09:18:47 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Forensics]]></category>
		<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[analyze pdf]]></category>
		<category><![CDATA[document forensics]]></category>
		<category><![CDATA[forging pdf]]></category>
		<category><![CDATA[hacking pdf]]></category>
		<category><![CDATA[information gathering]]></category>
		<category><![CDATA[information-leak]]></category>
		<category><![CDATA[origami]]></category>
		<category><![CDATA[parse pdf]]></category>
		<category><![CDATA[pdf forensics]]></category>
		<category><![CDATA[pdf security]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=2169</guid>
		<description><![CDATA[origami is a Ruby framework designed to parse, analyze, and forge PDF documents. This is NOT a PDF rendering library. It aims at providing a scripting tool to generate and analyze malicious PDF files. As well, it can be used to create on-the-fly customized PDFs, or to inject (evil) code into already existing documents. Features [...]]]></description>
			<content:encoded><![CDATA[<p></p>
<p>origami is a Ruby framework designed to parse, analyze, and forge PDF documents. This is NOT a PDF rendering library. It aims at providing a scripting tool to generate and analyze malicious PDF files. As well, it can be used to create on-the-fly customized PDFs, or to inject (evil) code into already existing documents.</p>
<p><strong>Features</strong></p>
<ul>
<li>Create PDF documents from scratch.</li>
<li>Parse existing documents, modify them and recompile them.</li>
<li>Explore documents at the object level, going deep into the document structure, uncompressing PDF object streams and desobfuscating names and strings.</li>
<li>High-level operations, such as encryption/decryption, signature, file attachments&#8230;</li>
<li>A GTK interface to quickly browse into the document contents.</li>
</ul>
<p><strong>Full Scripts</strong></p>
<p>Some scripts are provided to help in performing common actions on PDF files. You can contribute more by sending your own scripts to origami(at)security-labs.org.</p>
<ul>
<li>detectjs.rb: search for all JavaScript objects.</li>
<li>embed.rb: add an attachment to a PDF file.</li>
<li>create-jspdf.rb: add a JavaScript to a PDF file, executed when the document is opened.</li>
<li>moebius.rb: transform a PDF to a moebius strip.</li>
<li>encrypt.rb: encrypt a PDF file.</li>
</ul>
<p>You can download Origami here:</p>
<p><a href="http://security-labs.org/origami/files/origami-1.0.0-beta1.tar.gz">origami-1.0.0-beta1.tar.gz</a></p>
<p></p>
<p>Or read more <a href="http://security-labs.org/origami/">here</a>.</p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=Origami+%E2%80%93+Parse%2C+Analyze+%26+Forge+PDF+Documents+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D2169+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2009/10/origami-parse-analyze-forge-pdf-documents/&amp;t=Origami+%E2%80%93+Parse%2C+Analyze+%26+Forge+PDF+Documents" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2009/10/origami-parse-analyze-forge-pdf-documents/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2009/10/origami-parse-analyze-forge-pdf-documents/&amp;title=Origami+%E2%80%93+Parse%2C+Analyze+%26+Forge+PDF+Documents" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2009/10/origami-parse-analyze-forge-pdf-documents/&amp;title=Origami+%E2%80%93+Parse%2C+Analyze+%26+Forge+PDF+Documents" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2009/10/origami-parse-analyze-forge-pdf-documents/&amp;title=Origami+%E2%80%93+Parse%2C+Analyze+%26+Forge+PDF+Documents" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2009/10/origami-parse-analyze-forge-pdf-documents/&amp;title=Origami+%E2%80%93+Parse%2C+Analyze+%26+Forge+PDF+Documents" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2009%2F10%2Forigami-parse-analyze-forge-pdf-documents%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2009/10/origami-parse-analyze-forge-pdf-documents/feed/</wfw:commentRss>
		<slash:comments>7</slash:comments>
		</item>
		<item>
		<title>dnsmap 0.22 Released &#8211; Subdomain Bruteforcing Tool</title>
		<link>http://www.darknet.org.uk/2009/03/dnsmap-022-released-subdomain-bruteforcing-tool/</link>
		<comments>http://www.darknet.org.uk/2009/03/dnsmap-022-released-subdomain-bruteforcing-tool/#comments</comments>
		<pubDate>Tue, 17 Mar 2009 09:28:35 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Network Hacking]]></category>
		<category><![CDATA[dns enumeration]]></category>
		<category><![CDATA[dns mapping]]></category>
		<category><![CDATA[dns subdomain bruteforcer]]></category>
		<category><![CDATA[dnsmap]]></category>
		<category><![CDATA[information gathering]]></category>
		<category><![CDATA[security assessment]]></category>
		<category><![CDATA[stealth enumeration]]></category>
		<category><![CDATA[subdomain bruteforcer]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=1544</guid>
		<description><![CDATA[dnsmap is a subdomain bruteforcer for stealth enumeration, you could say something similar to Reverse Raider or DNSenum. Originally released in 2006, dnsmap is mainly meant to be used by pentesters during the information gathering/enumeration phase of infrastructure security assessments. During the enumeration stage, the security consultant would typically discover the target company’s IP netblocks, [...]]]></description>
			<content:encoded><![CDATA[<p></p>
<p>dnsmap is a subdomain bruteforcer for stealth enumeration, you could say something similar to <a href="http://www.darknet.org.uk/2009/01/complemento-v06-letdown-tcp-flooder-reverseraider-subdomain-scanner-httsquash-http-server-scanner-tool/">Reverse Raider</a> or <a href="http://www.darknet.org.uk/2008/07/dnsenum-domain-information-gathering-tool/">DNSenum</a>.</p>
<p>Originally released in 2006, dnsmap is mainly meant to be used by pentesters during the information gathering/enumeration phase of infrastructure security assessments. During the enumeration stage, the security consultant would typically discover the target company’s IP netblocks, domain names, phone numbers, etc. dnsmap was included in <a href="http://www.darknet.org.uk/tag/backtrack/">Backtrack</a> 2 and 3, although the version included is the now dated version 0.1.</p>
<p>Subdomain brute-forcing is another technique that should be used in the enumeration stage, as it’s especially useful when other domain enumeration techniques such as zone transfers don’t work (public zone transfers rarely work nowadays).</p>
<p><strong>Original Features of Version 0.1</strong></p>
<ul>
<li>obtain all IP addresses (A records) associated to each successfully bruteforced subdomain, rather than just one IP address per subdomain</li>
<li>abort the bruteforcing process in case the target domain uses wildcards</li>
<li>ability to be able to run the tool without providing a wordlist by using a built-in list of keywords</li>
<li>bruteforcing by using a user-supplied wordlist (as opposed to the built-in wordlist)</li>
</ul>
<p><strong>New Improvements in Version 0.22</strong></p>
<ul>
<li>saving the results in human-readable and CSV format for easy processing</li>
<li>fixed bug that disallowed reading wordlists with DOS CRLF format</li>
<li>improved built-in subdomains wordlist</li>
<li>new bash script (dnsmap-bulk.sh) included which allows running dnsmap against a list of domains from a user-supplied file.</li>
<li>bypassing of signature-based dnsmap detection by generating a proper pseudo-random subdomain when checking for wildcards</li>
</ul>
<p>You can download dnsmap 0.22 here:</p>
<p><a href="http://www.gnucitizen.org/static/blog/2009/03/dnsmap-0222tar.gz">dnsmap-0222tar.gz</a> (Make sure you add another . before the tar)</p>
<p></p>
<p>Or read more <a href="http://www.gnucitizen.org/blog/new-version-of-dnsmap-out/">here</a>.</p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=dnsmap+0.22+Released+%E2%80%93+Subdomain+Bruteforcing+Tool+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D1544+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2009/03/dnsmap-022-released-subdomain-bruteforcing-tool/&amp;t=dnsmap+0.22+Released+%E2%80%93+Subdomain+Bruteforcing+Tool" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2009/03/dnsmap-022-released-subdomain-bruteforcing-tool/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2009/03/dnsmap-022-released-subdomain-bruteforcing-tool/&amp;title=dnsmap+0.22+Released+%E2%80%93+Subdomain+Bruteforcing+Tool" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2009/03/dnsmap-022-released-subdomain-bruteforcing-tool/&amp;title=dnsmap+0.22+Released+%E2%80%93+Subdomain+Bruteforcing+Tool" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2009/03/dnsmap-022-released-subdomain-bruteforcing-tool/&amp;title=dnsmap+0.22+Released+%E2%80%93+Subdomain+Bruteforcing+Tool" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2009/03/dnsmap-022-released-subdomain-bruteforcing-tool/&amp;title=dnsmap+0.22+Released+%E2%80%93+Subdomain+Bruteforcing+Tool" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2009%2F03%2Fdnsmap-022-released-subdomain-bruteforcing-tool%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2009/03/dnsmap-022-released-subdomain-bruteforcing-tool/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Using Twitter for Data Mining and Information Gathering</title>
		<link>http://www.darknet.org.uk/2009/01/using-twitter-for-data-mining-and-information-gathering/</link>
		<comments>http://www.darknet.org.uk/2009/01/using-twitter-for-data-mining-and-information-gathering/#comments</comments>
		<pubDate>Thu, 22 Jan 2009 10:46:31 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[General Hacking]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Social Engineering]]></category>
		<category><![CDATA[5and2fish]]></category>
		<category><![CDATA[data-mining]]></category>
		<category><![CDATA[hacking twitter]]></category>
		<category><![CDATA[information gathering]]></category>
		<category><![CDATA[PeopleBrowsr]]></category>
		<category><![CDATA[twitter]]></category>
		<category><![CDATA[twitter data mining]]></category>
		<category><![CDATA[twitter hacking]]></category>
		<category><![CDATA[twitter information gathering]]></category>
		<category><![CDATA[twitter privacy]]></category>
		<category><![CDATA[Twitter Spectrum]]></category>
		<category><![CDATA[Twitter Venn]]></category>
		<category><![CDATA[TwitterFriends]]></category>
		<category><![CDATA[Twitturly]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=1423</guid>
		<description><![CDATA[We&#8217;ve mentioned Twitter a few times lately as it has become a larger and larger part of the social web and the premier &#8216;micro-blogging&#8217; platform. There was a recent Phishing issue on Twitter and before that Twitter Jacking and a CSRF bug that allowed auto-following. Due to the large update of Twitter, the amount of [...]]]></description>
			<content:encoded><![CDATA[<p></p>
<p>We&#8217;ve mentioned <a href="http://www.darknet.org.uk/tag/twitter/">Twitter</a> a few times lately as it has become a larger and larger part of the social web and the premier &#8216;micro-blogging&#8217; platform.</p>
<p>There was a recent <a href="http://www.darknet.org.uk/2009/01/phishing-attacks-hits-twitter-users-utilising-direct-messages/">Phishing issue on Twitter</a> and before that <a href="http://www.darknet.org.uk/2008/11/twitter-squatting-the-new-domain-jacking/">Twitter Jacking</a> and a <a href="http://www.darknet.org.uk/2008/09/csrf-vulnerability-in-twitter-allows-forced-following/">CSRF bug that allowed auto-following</a>.</p>
<p>Due to the large update of Twitter, the amount of datable available on the site and it&#8217;s easily searchable nature it has become a great platform for data-mining and information gathering (the first and sometimes most important parts of any pen test/vuln ass or security test).</p>
<blockquote><p>Twitter is fun. It&#8217;s also a powerful research tool. People increasingly use Twitter to share advice, opinions, news, moods, concerns, facts, rumors, and everything else imaginable. Much of that data is public and available for mining.</p>
<p>Here&#8217;s how to use Twitter to gather useful information about topics, companies, and individuals. I&#8217;ll cover native Twitter features, as well as third-party tools with catchy names, such as 5and2fish, Twitter Venn, TwitterFriends, PeopleBrowsr , Twitturly, Twitter Spectrum, and others.</p>
<p>Most of the techniques mentioned here don&#8217;t require you to be a registered Twitter user. If you use Twitter, consider what data tidbits you release there, and whether you need to be more careful.</p></blockquote>
<p>People don&#8217;t tend to be so careful or post in such a considered manner when using Twitter as the tidbits posted are so short and off-the-cuff.</p>
<p>This leads to an interesting source of information for people like us doing research about an individual or organization. You can really get a good gauge on the publics feelings for a certain topic too by searching Twitter for relevant keywords.</p>
<p>For example if you search Twitter for &#8216;<a href="http://search.twitter.com/search?q=darknet">Darknet</a>&#8216; you can see some people mentioning our posts and one guy pretty consistently re-syndicating our content onto the micro-blogging platform.</p>
<blockquote><p>As you gather information on Twitter, be mindful of others attempting to manipulate you into arriving at their conclusions by feeding you misinformation. Cross-check data and understand its sources. For more on this, see Is Twitter A Market Manipulator&#8217;s Dream on the TwiTip blog. If the topic of reputational attacks interests you, also look at the SpinHunters blog.</p>
<p>If using Twitter to share information and stay in touch with your friends, be mindful of how others might misuse what you reveal about yourself, others, or your company. In the words of Wired magazine&#8217;s Steven Levy, &#8220;No matter how innocuous your individual tweets, the aggregate ends up being the foundation of a scary-deep self-portrait. It&#8217;s like a psychographic version of strip poker&#8211;I&#8217;m disrobing, 140 characters at a time.&#8221;</p></blockquote>
<p>It&#8217;s an article well worth reading if you are a Twitter user or not, if you are an infosec professional it gives you another source to search when you are doing information gathering or data-mining tasks.</p>
<p>The Internet is always evolving along with the way people use it, as it becomes a more social platform &#8211; more information is bound to be &#8216;<em>exposed</em>&#8216; online &#8211; for us to find..</p>
<p></p>
<p>Source: <a href="http://isc.sans.org/diary.html?storyid=5728&#038;rss">SANS ISC</a></p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=Using+Twitter+for+Data+Mining+and+Information+Gathering+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D1423+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2009/01/using-twitter-for-data-mining-and-information-gathering/&amp;t=Using+Twitter+for+Data+Mining+and+Information+Gathering" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2009/01/using-twitter-for-data-mining-and-information-gathering/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2009/01/using-twitter-for-data-mining-and-information-gathering/&amp;title=Using+Twitter+for+Data+Mining+and+Information+Gathering" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2009/01/using-twitter-for-data-mining-and-information-gathering/&amp;title=Using+Twitter+for+Data+Mining+and+Information+Gathering" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2009/01/using-twitter-for-data-mining-and-information-gathering/&amp;title=Using+Twitter+for+Data+Mining+and+Information+Gathering" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2009/01/using-twitter-for-data-mining-and-information-gathering/&amp;title=Using+Twitter+for+Data+Mining+and+Information+Gathering" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2009%2F01%2Fusing-twitter-for-data-mining-and-information-gathering%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2009/01/using-twitter-for-data-mining-and-information-gathering/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Maltego &#8211; Forensics and Intelligence Application &amp; Information Gathering Tool</title>
		<link>http://www.darknet.org.uk/2008/11/maltego-forensics-and-intelligence-application-information-gathering-tool/</link>
		<comments>http://www.darknet.org.uk/2008/11/maltego-forensics-and-intelligence-application-information-gathering-tool/#comments</comments>
		<pubDate>Fri, 14 Nov 2008 09:39:45 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Forensics]]></category>
		<category><![CDATA[Security Software]]></category>
		<category><![CDATA[auditing tools]]></category>
		<category><![CDATA[data mining tool]]></category>
		<category><![CDATA[forensics and intelligence]]></category>
		<category><![CDATA[information gathering]]></category>
		<category><![CDATA[information gathering tool]]></category>
		<category><![CDATA[maltego]]></category>
		<category><![CDATA[maltego community edition]]></category>
		<category><![CDATA[paterva]]></category>
		<category><![CDATA[penetration-testing]]></category>
		<category><![CDATA[vulnerability-assessment]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=1229</guid>
		<description><![CDATA[Maltego is an open source intelligence and forensics application. It allows for the mining and gathering of information as well as the representation of this information in a meaningful way. Coupled with its graphing libraries, Maltego, allows you to identify key relationships between information and identify previously unknown relationships between them. It is a must-have [...]]]></description>
			<content:encoded><![CDATA[<p></p>
<p>Maltego is an open source intelligence and forensics application. It allows for the mining and gathering of information as well as the representation of this information in a meaningful way.</p>
<p>Coupled with its graphing libraries, Maltego, allows you to identify key relationships between information and identify previously unknown relationships between them. It is a must-have tool in the forensics, security and intelligence fields!</p>
<p>Maltego offers the user with unprecedented information. Information is leverage.</p>
<p><strong>What does Maltego do?</strong></p>
<p>Maltego is a program that can be used to determine the relationships and real world links between:</p>
<ul>
<li>People</li>
<li>Groups of people (social networks)</li>
<li>Companies</li>
<li>
Organizations</li>
<li>Web sites</li>
<li>
Internet infrastructure such as: Domains, DNS Names, Netblocks and IP Addresses</li>
<li>Phrases</li>
<li>Affiliations</li>
<li>Documents and files </li>
</ul>
<p>These entities are linked using open source intelligence.</p>
<ul>
<li>Maltego is easy and quick to install &#8211; it uses Java, so it runs on Windows, Mac and Linux.</li>
<li>Maltego provides you with a graphical interface that makes seeing these relationships instant and accurate &#8211; making it possible to see hidden connections.</li>
<li>
Using the graphical user interface (GUI) you can see relationships easily &#8211; even if they are three or four degrees of separation away.</li>
<li>Maltego is unique because it uses a powerful, flexible framework that makes customizing possible. As such, Maltego can be adapted to your own, unique requirements. </li>
</ul>
<p><strong>Limitations</strong></p>
<p>The Community Edition is limited in the following ways:</p>
<ul>
<li>A 15second nag screen</li>
<li>Save and Export has been disabled</li>
<li>
Limited zoom levels</li>
<li>Can only run transforms on a single entity at a time</li>
<li>Cannot copy and paste text from detailed view</li>
<li>
Transforms limited to 75 per day</li>
<li>Throttled client to TAS communication</li>
</ul>
<p>Check out the <a href="http://ctas.paterva.com/view/Userguide">User Guide here</a>.</p>
<p>You can download Maltego Community Edition here:</p>
<p><a href="http://www.paterva.com/malv2/MaltegoInstaller-v2-210-CE.jar">Maltego CE &#8211; Linux</a><br />
<a href="http://www.paterva.com/malv2/MaltegoInstaller-v2-210-CE.exe">Maltego CE &#8211; Windows</a></p>
<p></p>
<p>Or read more <a href="http://www.paterva.com/maltego/">here</a>.</p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=Maltego+%E2%80%93+Forensics+and+Intelligence+Application+%26+Information+Gathering+Tool+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D1229+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2008/11/maltego-forensics-and-intelligence-application-information-gathering-tool/&amp;t=Maltego+%E2%80%93+Forensics+and+Intelligence+Application+%26+Information+Gathering+Tool" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2008/11/maltego-forensics-and-intelligence-application-information-gathering-tool/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2008/11/maltego-forensics-and-intelligence-application-information-gathering-tool/&amp;title=Maltego+%E2%80%93+Forensics+and+Intelligence+Application+%26+Information+Gathering+Tool" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2008/11/maltego-forensics-and-intelligence-application-information-gathering-tool/&amp;title=Maltego+%E2%80%93+Forensics+and+Intelligence+Application+%26+Information+Gathering+Tool" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2008/11/maltego-forensics-and-intelligence-application-information-gathering-tool/&amp;title=Maltego+%E2%80%93+Forensics+and+Intelligence+Application+%26+Information+Gathering+Tool" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2008/11/maltego-forensics-and-intelligence-application-information-gathering-tool/&amp;title=Maltego+%E2%80%93+Forensics+and+Intelligence+Application+%26+Information+Gathering+Tool" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2008%2F11%2Fmaltego-forensics-and-intelligence-application-information-gathering-tool%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2008/11/maltego-forensics-and-intelligence-application-information-gathering-tool/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Sam Spade &#8211; Network Investigation Tool for Windows</title>
		<link>http://www.darknet.org.uk/2008/10/sam-spade-network-investigation-tool-for-windows/</link>
		<comments>http://www.darknet.org.uk/2008/10/sam-spade-network-investigation-tool-for-windows/#comments</comments>
		<pubDate>Thu, 30 Oct 2008 15:45:26 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[General Hacking]]></category>
		<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[hacking-networks]]></category>
		<category><![CDATA[information gathering]]></category>
		<category><![CDATA[network auditing]]></category>
		<category><![CDATA[network infrastructure]]></category>
		<category><![CDATA[network-analysis]]></category>
		<category><![CDATA[penetration-testing]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=1191</guid>
		<description><![CDATA[Sam Spade is one of the oldest network security tools around in terms of a neat package containing a lot of stuff you need, it&#8217;s one of the first things I used when I got into information security and I was on a crusade against spammers and scammers. It has all kinds of useful tools [...]]]></description>
			<content:encoded><![CDATA[<p></p>
<p>Sam Spade is one of the oldest network security tools around in terms of a neat package containing a lot of stuff you need, it&#8217;s one of the first things I used when I got into information security and I was on a crusade against spammers and scammers.</p>
<p>It has all kinds of useful tools in a neat graphical interface, a lot of them are available on the command line in Windows &#8211; but they aren&#8217;t so easy to use. It&#8217;s extremely useful for tracking spam or &#8216;UCE&#8217; as it&#8217;s known (Unsolicited Commercial E-mail).</p>
<p>Some of the features included are:</p>
<ul>
<li>Ping</li>
<li>NSlookup</li>
<li>Whois</li>
<li>IP block search</li>
<li>Dig</li>
<li>
Traceroute</li>
<li>
Finger</li>
<li>SMTP VRFY</li>
<li>Web browser keep-alive</li>
<li>DNS zone transfer</li>
<li>SMTP relay check</li>
<li>Usenet cancel check</li>
<li>
Website download</li>
<li>
Website search</li>
<li>Email header analysis</li>
<li>
Email blacklist</li>
<li>
Query Abuse address</li>
</ul>
<p>Some other cool stuff it does is:</p>
<ul>
<li>Each tool displays it&#8217;s output in it&#8217;s own window, and everything is multi-threaded so you don&#8217;t need to wait for one query to complete before starting the next one</li>
<li>Some functions are threaded still further to allow lazy reverse DNS lookups (never do a traceroute -n again)</li>
<li>The output from each query is hotlinked, so you can right click on an email address, IP address, hostname or internic tag to run another query on it</li>
<li>Appending the results of a query to the log window is a single button function</li>
<li>There&#8217;s a lot of online help, in both WinHelp and HTMLHelp formats. This includes tutorials, background information and links to online resources as well as the program manual itself</li>
</ul>
<p>You can download Sam Spade here:</p>
<p><a href="http://majorgeeks.com/Sam_Spade_d594.html">Sam Spade v1.14</a></p>
<p></p>
<p>Or read more <a href="http://searchsecurity.techtarget.com/tip/0,289483,sid14_gci901093,00.html">here</a>.</p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=Sam+Spade+%E2%80%93+Network+Investigation+Tool+for+Windows+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D1191+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2008/10/sam-spade-network-investigation-tool-for-windows/&amp;t=Sam+Spade+%E2%80%93+Network+Investigation+Tool+for+Windows" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2008/10/sam-spade-network-investigation-tool-for-windows/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2008/10/sam-spade-network-investigation-tool-for-windows/&amp;title=Sam+Spade+%E2%80%93+Network+Investigation+Tool+for+Windows" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2008/10/sam-spade-network-investigation-tool-for-windows/&amp;title=Sam+Spade+%E2%80%93+Network+Investigation+Tool+for+Windows" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2008/10/sam-spade-network-investigation-tool-for-windows/&amp;title=Sam+Spade+%E2%80%93+Network+Investigation+Tool+for+Windows" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2008/10/sam-spade-network-investigation-tool-for-windows/&amp;title=Sam+Spade+%E2%80%93+Network+Investigation+Tool+for+Windows" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2008%2F10%2Fsam-spade-network-investigation-tool-for-windows%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2008/10/sam-spade-network-investigation-tool-for-windows/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
	</channel>
</rss>

