Pentest Tips
  • ABOUT
  • Information Shares
  • CTF
    • Stego
    • Memory
  • Blue Team
    • Tools/Resources
    • One Liners
    • Threat Hunting
    • Scripts
    • Intrusion
  • Web
    • Resources
    • General Web
    • Subdomain Discovery
    • Content Discovery
    • MYSQL
    • Burpsuite
  • Network Exploitation
    • Resources
    • Kerberos
    • Network Based
    • Phishing
    • Metasploit
    • Weaponization
    • Password Cracking
    • Shell Upgrades
    • Linux PrivEsc
    • Windows PrivEsc
    • Windows Persistence
    • Exfiltration
  • Windows Internals
    • Kernal
  • Recon
    • Nmap
    • OSINT
    • SMB Enumeration
    • LDAP
    • Physical
  • Malware
    • Obfuscation
  • Scripting
    • Bash Basics
    • Powershell Basics
  • Cloud
    • AWS
  • Game Hacking
    • Resources
Powered by GitBook
On this page
  • Useful Websites
  • Scripts / tools
  • Phishing
  • Social Engineering
Edit on GitHub
  1. Recon

OSINT

PreviousNmapNextSMB Enumeration

Last updated 2 years ago

Useful Websites

  • The holy bible

  • Wifi Connections:

  • Pull LetsEncrypt Certs:

  • Default passwords:

  • DNS Info:

  • More DNS stuff:

  • DNS Whois:

  • Photo Forensics:

  • Google dork cheatsheet:

  • Google Earth:

  • Custom Google Maps:

Scripts / tools

  • Phone number info: PhoneInfoga.py

  • Profile Name Checker: Sherlock.py

  • metadata viewer:

  • Keeping Track of everything:

  • Crawler:

  • DNS info: whois <domain name or ip>

Phishing

You can hide the origin of a URL by first lengthening the URL then shortening it. Adds a layer of obscurity and hides origin from discord embeds.

Social Engineering

  • You can validate a lot of information by making a phone ring.

  • Provide incorrect information, and people will correct you

URL Lengthener

IP Grabber

https://osintframework.com/
https://wigle.net/
https://crt.sh
https://default-password.info/
https://dnsdumpster.com/
https://intodns.com/
https://who.is/
https://29a.ch/photo-forensics/#noise-analysis
sundowndev
https://earth.google.com/
https://www.google.com/maps/d/u/0/?hl=en
https://github.com/sundowndev/PhoneInfoga
https://github.com/sherlock-project/sherlock
https://exiftool.org/
https://www.maltego.com/
https://github.com/s0md3v/Photon
theHarvester
https://hunter.io/
https://aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa.com/
https://grabify.link/