Exposition Audit - Plan
The objective is to define the attack surface of a company, mainly made up of all the elements of its information system exposed on the Internet.
Reconnaissance
Have your target organization name
Search through RIPE.net :
domain.example > person > e-mail -> GO
Get these IP blocs that belongs to the company
Subdomains find
Google Dorks
Tools
shodan
OneForAll
subfinder
Scans
IP2FQDN
nmap
Visualize hosts
gowitness
Get a capture of each web service
Last updated