Table Of Contents
- Network
- Network Resources
- WHOIS Resources
- OSINT Resources
- Relationship and Recon Tools
- Google Searches
- People Search
- OSINT Websites
Disclaimer | Attribution
This "Red Team Field Manual" is derived from my personal notes compiled while working through the Red Team Field Manual book authored by Ben Clark, Nick Downer.
NETWORK
NETWORK RESOURCES
| URL | NAME |
|---|---|
| dnsstuff.com/tools | DNSstuff Toolbox |
| network-tools.com | Network-Tools |
| centralops.net | CentralOps |
| lg.he.net | Hurricane Electric |
| bgp4.as/looking-glasses | BGP |
| shodan.io | Shodan |
| viz.greynoise.io | GreyNoise |
| mxtoolbox.com/NetworkTools.aspx | MxToolBox |
| iana.org/numbers | IANA IP and ASN Lookup |
WHOIS RESOURCES
| URL | NAME |
|---|---|
| icann.org | ICANN |
| iana.com | IANA |
| nro.net | NRO |
| afrinic.net | AFRINIC |
| apnic.net | APNIC |
| ws.arin.net | ARIN |
| lacnic.net | LACNIC |
| ripe.net | RIPE |
| internic.net | InterNIC |
OSINT RESOURCES
RELATIONSHIP AND RECON TOOLS
| URL | NAME |
|---|---|
| github.com/ElevenPaths/FOCA | FOCA |
| github.com/laramies/theHarvester | theHarvester |
| maltego.com | Maltego |
| https://github.com/lanmaster53/recon-ng | Recon-ng Framework |
GOOGLE SEARCHES
- More info at: exploit-db.com/google-hacking-database
| Search operator | Description |
|---|---|
| site:<URL> | Search only one |
| numrange:<START_NUMBER>…<ENDNUMBER> | Search within a number range |
| date:<INTEGER> | Search within past [#] months |
| link:<URL> | Find pages that link to given URL |
| related:<URL> | Find pages related to given URL |
| intitle:<STRING> | Find pages with <STRING> in title |
| inurl:<STRING> | Find pages with <STRING> in URL |
| filetype:<EXTENSION> | Search for files by file type |
| phonebook:<STRING> | Find phone book listings of <STRING> |
PEOPLE SEARCH
| URL | NAME |
|---|---|
| peekyou.com | PeekYou |
| spokeo.com | Spokeo |
| pipl.com | Pipl |
| intelius.com | Intelius |
| publicrecords.searchsystems.net | Search Systems |
OSINT WEBSITES
- vulnerabilityassessment.co.uk/Penetration%20Test.html
- securitysift.com/passive-reconnaissance/
- pentest-standard.org/index.php/Intelligence_Gathering
- onstrat.com/osint/