当前位置:网站首页>Penetration test information collection - basic enterprise information
Penetration test information collection - basic enterprise information
2022-07-06 18:35:00 【Aspirin. two thousand and two】
List of articles
Basic information of the enterprise
1. Basic information of the enterprise .
2. Employee information ( Phone number 、 mailbox 、 Name, etc ), Organizational framework 、 Enterprise legal person 、 Enterprise comprehensive information, etc .
3. Among them, employee information collection is an important work in information collection , Employee information includes : Employee name 、 Employee job number 、 Employee family and communication information 、 Internet habits, etc .( social engineering )
4. Employee identity information : Employee resume , Employee ID card , cell-phone number , Birthday , hometown , Address and other personal information .
5、 Employee social account information :QQ Number ,QQ Group , Microblogging , WeChat , Alipay , Employee email account number, etc .
Things used :
https://www.tianyancha.com Check the inner eye
https://www.qichacha.com/ Companies check
https://aiqicha.baidu.com/ I love checking
View the enterprise framework , Personal information of enterprise executives 、 Other industries , One recruit among all employees of the enterprise is likely to win all
https://www.reg007.com/ Which websites have you registered
https://www.email-format.com/i/search/ Check the email related to this domain name online
Maltego(kali Tools ) information gathering —— visualization
Various recruitment networks
https://www.aies.cn/pinyin.htm Online Chinese character to Pinyin —— Make a dictionary
https://github.com/shack2/SNETCracker/releases Super weak password tool
https://anonymousemail.me/ Anonymous email
JS information gathering
adopt JS collect ,url, Directory and parameters
Js As an important part of our information collection, many people will ignore ,Js It may contain a lot of sensitive information , Make up a dictionary fuzz The effect is very good .
Many people will ignore the festival ,Js It may contain a lot of sensitive information , Make up a dictionary fuzz The effect is very good .
The script used :https://github.com/Threezh1/JSFinder
边栏推荐
- 虚拟机VirtualBox和Vagrant安装
- POJ 2208 已知边四面体六个长度,计算体积
- ADB common commands
- DOM简要
- 【.NET CORE】 请求长度过长报错解决方案
- Rb157-asemi rectifier bridge RB157
- UDP协议:因性善而简单,难免碰到“城会玩”
- Distiller les connaissances du modèle interactif! L'Université de technologie de Chine & meituan propose Virt, qui a à la fois l'efficacité du modèle à deux tours et la performance du modèle interacti
- 监控界的最强王者,没有之一!
- Distill knowledge from the interaction model! China University of science and Technology & meituan proposed virt, which combines the efficiency of the two tower model and the performance of the intera
猜你喜欢
Prophet模型的简介以及案例分析
從交互模型中蒸餾知識!中科大&美團提出VIRT,兼具雙塔模型的效率和交互模型的性能,在文本匹配上實現性能和效率的平衡!...
44所高校入选!分布式智能计算项目名单公示
Penetration test information collection - CDN bypass
微信为什么使用 SQLite 保存聊天记录?
Maixll dock camera usage
TOP命令详解
2022-2024年CIFAR Azrieli全球学者名单公布,18位青年学者加入6个研究项目
Compilation Principle -- C language implementation of prediction table
Recommend easy-to-use backstage management scaffolding, everyone open source
随机推荐
Use cpolar to build a business website (1)
Picture zoom Center
2022 Summer Project Training (I)
Self-supervised Heterogeneous Graph Neural Network with Co-contrastive Learning 论文阅读
[sword finger offer] 60 Points of N dice
POJ 2208 six lengths of tetrahedron are known, and the volume is calculated
C语言自动预订飞机票问题
Stm32+mfrc522 completes IC card number reading, password modification, data reading and writing
Maixll dock camera usage
epoll()无论涉及wait队列分析
2022暑期项目实训(一)
Numerical analysis: least squares and ridge regression (pytoch Implementation)
STM32+MFRC522完成IC卡号读取、密码修改、数据读写
使用block实现两个页面之间的传统价值观
SAP Fiori 应用索引大全工具和 SAP Fiori Tools 的使用介绍
Cocos2d Lua 越来越小样本 内存游戏
Top command details
首先看K一个难看的数字
STM32+ENC28J60+UIP协议栈实现WEB服务器示例
[swoole series 2.1] run the swoole first