Information Gathering With dnsrecon-Backtrack 5 Rx
data:image/s3,"s3://crabby-images/2bb2c/2bb2c7df56589201c44d25a477db738cf9cbcb8a" alt=""
data:image/s3,"s3://crabby-images/74119/74119adc0d540615de2a900cb2053837f1a132a5" alt=""
data:image/s3,"s3://crabby-images/d124c/d124c9ea16da42816837241f3584a681f74b783b" alt=""
data:image/s3,"s3://crabby-images/94300/943005e17b40a45b34fa5cdde958d23b8d3038ce" alt=""
dnsrecon is a tool for enumeration, coded in python.Features of dnsrecon:-
So Lets begin:-
data:image/s3,"s3://crabby-images/61f8c/61f8cd5a17174e37830a2896274348ebc8f21e94" alt="Information Gathering With dnsrecon-Backtrack 5 Rx Information Gathering With dnsrecon-Backtrack 5 Rx"
data:image/s3,"s3://crabby-images/b76c2/b76c2f99cdb5674ac9492818ae214b5c18c8d4e7" alt="Information Gathering With dnsrecon-Backtrack 5 Rx Information Gathering With dnsrecon-Backtrack 5 Rx"
- You can brute force Sub Domains by inbuilt wordlist or by your own wordlist.
- You can enumerate general record types, like SOA, NS, A, AAAA, MX and SRV.
- You can Reverse Look Up a given CIDR IP range.
- You can test all NS Servers in a domain for misconfigured zone transfers.
- You can also search Sub domains through Google query.
- You can enumerate Top Level Domains.
In this tutorial we will only discuss:-
- std:- To enumerate general records types.
- srv:- To Enumerate records.
- axfr:- Test all NS Servers in a domain for misconfigured zone transfer.
- goo:- Search Sub Domains from Google.
- tld:- Enumerate Top Level Domains.
So Lets begin:-
- Open dnsrecon through Backtrack >> Information Gathering >> Network Analysis >> Dns Analysis >> dnsrecon and can also open through Terminal cd /pentest/enumeration/dns/dnsrecon
- For std, type ./dnsrecon.py -t std -d
- For srv, type ./dnsrecon.py -t srv -d
- For axfr, type ./dnsrecon.py -t axfr -d
- For goo, type ./dnsrecon.py -t goo -d
- For tld, type ./dnsrecon.py -t tld -d
Points to be noted:-
- -d is used for denoting domain.
- -t is used to specify, which type of enumerations you want to use.
This is only for Educational Purpose.
0 comments: