Nmap

Attempts to pull configs from Cobalt Strike Beacons
Attempts to enumerate DNS hostnames by brute force guessing of common subdomains
Spiders a website and attempts to identify backup copies of discovered files
Attempts to get a list of tables from a MongoDB database
Queries Shodan API for given targets and produces similar output to a -sV nmap scan
Crawls webservers in search of RFI (remote file inclusion) vulnerabilities
Spiders a site's images looking for interesting exif data embedded in .jpg files

Last updated

Was this helpful?