- Kali Linux:An Ethical Hacker's Cookbook(Second Edition)
- Himanshu Sharma
- 255字
- 2021-06-24 15:59:14
Subfinder
Subfinder is considered as a successor to sublist3r. It is amazingly fast and finds valid subdomains using passive online sources such as Ask, Archive.is, Baidu, Bing, Censys, CertDB, CertSpotter, Commoncrawl, CrtSH, DnsDB and so on.
- Install subfinder. It needs Go to be installed, which we can install by using the following command:
apt install golang
The following screenshot shows the output of the preceding command:

- Next, we clone subfinder by using the following command:
git clone https://github.com/subfinder/subfinder.git
The following screenshot shows the output of the preceding command:

Or you can download and save it from https://github.com/subfinder/subfinder.
- To install subfinder, we go to the cloned directory and run the go build command.
- Once the installation is complete, we will need a wordlist for it to run, so we can download dnspop's list. This list can be used in the previous recipe too: https://github.com/bitquark/dnspop/tree/master/results.
- Now that both are set up, we browse into subfinder's directory and run it using the ./subfinder -h command.
The following screenshot shows the output of the preceding command:

- To run it against a domain with our wordlist, we use the following command:
./subfinder -w /path/to/wordlist -d hostname.com
If we do not specify a wordlist the tool will run with a default wordlist as shown in the following screenshot:

Once the enumeration is complete, the output will be shown onscreen as follows:

- Subfinder is also designed to work with services such as shodan, censys, and virustotal, but they need to be configured in the config.json file shown here:

推薦閱讀
- pcDuino開發實戰
- Implementing Azure DevOps Solutions
- Windows Phone應用程序開發
- 混沌工程實戰:手把手教你實現系統穩定性
- Linux使用和管理指南:從云原生到可觀測性
- Linux內核設計的藝術:圖解Linux操作系統架構設計與實現原理
- jQuery UI Cookbook
- INSTANT Migration from Windows Server 2008 and 2008 R2 to 2012 How-to
- RHCSARHCE 紅帽Linux認證學習指南(第7版)EX200 & EX300
- INSTANT Galleria Howto
- Cassandra 3.x High Availability(Second Edition)
- Building Telephony Systems With Asterisk
- Multi-Cloud for Architects
- CSS揭秘
- 大規模Linux集群架構最佳實踐:如何管理上千臺服務器