当前位置:网站首页>Penetration test information collection - basic enterprise information
Penetration test information collection - basic enterprise information
2022-07-06 18:35:00 【Aspirin. two thousand and two】
List of articles
Basic information of the enterprise
1. Basic information of the enterprise .
2. Employee information ( Phone number 、 mailbox 、 Name, etc ), Organizational framework 、 Enterprise legal person 、 Enterprise comprehensive information, etc .
3. Among them, employee information collection is an important work in information collection , Employee information includes : Employee name 、 Employee job number 、 Employee family and communication information 、 Internet habits, etc .( social engineering )
4. Employee identity information : Employee resume , Employee ID card , cell-phone number , Birthday , hometown , Address and other personal information .
5、 Employee social account information :QQ Number ,QQ Group , Microblogging , WeChat , Alipay , Employee email account number, etc .
Things used :
https://www.tianyancha.com Check the inner eye
https://www.qichacha.com/ Companies check
https://aiqicha.baidu.com/ I love checking
View the enterprise framework , Personal information of enterprise executives 、 Other industries , One recruit among all employees of the enterprise is likely to win all
https://www.reg007.com/ Which websites have you registered
https://www.email-format.com/i/search/ Check the email related to this domain name online
Maltego(kali Tools ) information gathering —— visualization
Various recruitment networks
https://www.aies.cn/pinyin.htm Online Chinese character to Pinyin —— Make a dictionary
https://github.com/shack2/SNETCracker/releases Super weak password tool
https://anonymousemail.me/ Anonymous email
JS information gathering
adopt JS collect ,url, Directory and parameters
Js As an important part of our information collection, many people will ignore ,Js It may contain a lot of sensitive information , Make up a dictionary fuzz The effect is very good .
Many people will ignore the festival ,Js It may contain a lot of sensitive information , Make up a dictionary fuzz The effect is very good .
The script used :https://github.com/Threezh1/JSFinder
边栏推荐
- 测试行业的小伙伴,有问题可以找我哈。菜鸟一枚~
- POJ 2208 已知边四面体六个长度,计算体积
- Docker安装Redis
- TOP命令详解
- Specify flume introduction, installation and configuration
- 2022暑期项目实训(三)
- Self supervised heterogeneous graph neural network with CO comparative learning
- Some understandings of tree LSTM and DGL code implementation
- This article discusses the memory layout of objects in the JVM, as well as the principle and application of memory alignment and compression pointer
- The third season of Baidu online AI competition is coming in midsummer, looking for you who love AI!
猜你喜欢
Xu Xiang's wife Ying Ying responded to the "stock review": she wrote it!
Ms-tct: INRIA & SBU proposed a multi-scale time transformer for motion detection. The effect is SOTA! Open source! (CVPR2022)...
Numerical analysis: least squares and ridge regression (pytoch Implementation)
【LeetCode第 300 场周赛】
【.NET CORE】 请求长度过长报错解决方案
Windows连接Linux上安装的Redis
win10系统下插入U盘有声音提示却不显示盘符
Docker installation redis
[.Net core] solution to error reporting due to too long request length
Maixll dock camera usage
随机推荐
Declval (example of return value of guidance function)
F200 - UAV equipped with domestic open source flight control system based on Model Design
Recommend easy-to-use backstage management scaffolding, everyone open source
Bonecp uses data sources
Reproduce ThinkPHP 2 X Arbitrary Code Execution Vulnerability
SAP Fiori 应用索引大全工具和 SAP Fiori Tools 的使用介绍
Some understandings of tree LSTM and DGL code implementation
2022暑期项目实训(三)
Test 1234
华为0基金会——图片整理
Cocos2d Lua 越来越小样本 内存游戏
Afnetworking framework_ Upload file or image server
传输层 拥塞控制-慢开始和拥塞避免 快重传 快恢复
STM32+ENC28J60+UIP协议栈实现WEB服务器示例
AFNetworking框架_上传文件或图像server
MS-TCT:Inria&SBU提出用于动作检测的多尺度时间Transformer,效果SOTA!已开源!(CVPR2022)...
Atcoder a mountaineer
Epoll () whether it involves wait queue analysis
HMS core machine learning service creates a new "sound" state of simultaneous interpreting translation, and AI makes international exchanges smoother
POJ 2208 six lengths of tetrahedron are known, and the volume is calculated