Skip to main content

Table Of Contents

  • Network
    • Network Resources
    • WHOIS Resources
  • OSINT Resources
    • Relationship and Recon Tools
    • Google Searches
    • People Search
    • OSINT Websites

Disclaimer | Attribution

This "Red Team Field Manual" is derived from my personal notes compiled while working through the Red Team Field Manual book authored by Ben Clark, Nick Downer.

NETWORK

NETWORK RESOURCES

URLNAME
dnsstuff.com/toolsDNSstuff Toolbox
network-tools.comNetwork-Tools
centralops.netCentralOps
lg.he.netHurricane Electric
bgp4.as/looking-glassesBGP
shodan.ioShodan
viz.greynoise.ioGreyNoise
mxtoolbox.com/NetworkTools.aspxMxToolBox
iana.org/numbersIANA IP and ASN Lookup

WHOIS RESOURCES

URLNAME
icann.orgICANN
iana.comIANA
nro.netNRO
afrinic.netAFRINIC
apnic.netAPNIC
ws.arin.netARIN
lacnic.netLACNIC
ripe.netRIPE
internic.netInterNIC

OSINT RESOURCES

RELATIONSHIP AND RECON TOOLS

URLNAME
github.com/ElevenPaths/FOCAFOCA
github.com/laramies/theHarvestertheHarvester
maltego.comMaltego
https://github.com/lanmaster53/recon-ngRecon-ng Framework

GOOGLE SEARCHES

  • More info at: exploit-db.com/google-hacking-database
Search operatorDescription
site:<URL>Search only one
numrange:<START_NUMBER>…<ENDNUMBER>Search within a number range
date:<INTEGER>Search within past [#] months
link:<URL>Find pages that link to given URL
related:<URL>Find pages related to given URL
intitle:<STRING>Find pages with <STRING> in title
inurl:<STRING>Find pages with <STRING> in URL
filetype:<EXTENSION>Search for files by file type
phonebook:<STRING>Find phone book listings of <STRING>
URLNAME
peekyou.comPeekYou
spokeo.comSpokeo
pipl.comPipl
intelius.comIntelius
publicrecords.searchsystems.netSearch Systems

OSINT WEBSITES

  • vulnerabilityassessment.co.uk/Penetration%20Test.html
  • securitysift.com/passive-reconnaissance/
  • pentest-standard.org/index.php/Intelligence_Gathering
  • onstrat.com/osint/