Pentesting DNS
Whois
whois [domain]
whois cisco.comNslookup
nslookup [domain]
nslookup cisco.comsudo apt-get install dnsutils -yQuery the DNS records
nslookup -type=[record type] [domain]
nslookup -type=any cisco.comnslookup information leakage
nslookup
> server <ip of target>
> 127.0.0.1
> 127.0.0.2
> <ip of target>Host
Zone Transfers
Dig
Fierce
DNSenum
DNSrecon
Sublist3r
SUBBRUTE
SUBFINDER
The Harvester
crt.sh (Certificate Transparency)
DNSCAN
PUREDNS
GOTATOR - WORD LIST GENERATOR TOOL
Subdomain Takeover
Domain Spoofing
Ettercap
Spoofy
Example output
DNS Cache Poisoning
DNS Server Configuration (Bind9)
Config Files
Local DNS Configuration
Dangerous Settings
Option
Description
DIG Queries
DIG Zone Transfer (AXFR)
Subdomain Brute Forcing (Bash)
DNSenum
MX Record Enumeration
Last updated