Footprinting

38
Prashant Mahajan RISC Meet RMIT Information Security Collective 20 th July 8.9.43

description

RISC Meet - 20th July RMIT Information Security Collective RMIT University

Transcript of Footprinting

Page 1: Footprinting

Prashant Mahajan

RISC Meet RMIT Information Security Collective

20th July

8.9.43

Page 2: Footprinting

Footprinting refers to the preparatory stage where an attacker seeks to gather as much information as possible about the target before launching attack(s).

Types:- Passive

Attack

Page 3: Footprinting

Basic information about the target and its network

OS, platforms running, web server versions and likes

Page 5: Footprinting
Page 6: Footprinting
Page 7: Footprinting
Page 8: Footprinting
Page 9: Footprinting
Page 10: Footprinting

SpiderFoot (http://www.binarypool.com) Will scrape the websites as well as Google, Netcraft,

Whois and DNS

Page 11: Footprinting

Robtext (http://www.robtex.com)

Page 12: Footprinting

Google

Bing

Dogpile (Goole+Yahoo+Bing+Yandex)

Web Wombat (Original Australian)

Cuil

Alexa

Page 13: Footprinting

Some of my favourite resources are:

Page 14: Footprinting
Page 15: Footprinting
Page 16: Footprinting
Page 17: Footprinting
Page 18: Footprinting

http://www.peekyou.com

http://www.yoname.com

http://www.123people.com

http://www.aafter.com

http://blogsearch.google.com

All Social Networking Sites

MySpace, Facebook, Orkut, Twitter, LinkedIn

Page 19: Footprinting

How do you find images using Google?

Google Image Search

http://images.google.com

Image search may give results according to keywords or metadata from images.

Are all the results you get related to what you searched for?

Page 20: Footprinting

So, basically, it is google image search in reverse.

You can submit an image to find out where it came from, how it is being used, if modified versions of the image exist, or to find higher resolution versions

Page 21: Footprinting
Page 22: Footprinting
Page 23: Footprinting
Page 24: Footprinting
Page 25: Footprinting

When you submit an image to be searched, TinEye creates a unique and compact digital signature or 'fingerprint' for it, then compares this fingerprint to every other image in our index to retrieve matches. TinEye can even find a partial fingerprint match.

TinEye does not typically find similar images (i.e. a different image with the same subject matter); it finds exact matches including those that have been cropped, edited or resized.

Page 26: Footprinting
Page 27: Footprinting

Financial Services like Google Finance, Yahoo Finance

Job Sites:

Job Descriptions can be used to gather the infrastructure details

Tech Support Websites:

Many times employees give out information in order to get some solutions for their problems

Page 28: Footprinting

When did it start?

Where is it located?

How did it develop?

Who leads it?

What are the company’s plans?

Page 29: Footprinting
Page 30: Footprinting
Page 31: Footprinting
Page 32: Footprinting
Page 33: Footprinting

nslookup

dnsrecon

Page 34: Footprinting
Page 35: Footprinting

http://www.morris-pictures.com

The one you need to know is a comment in the source code of the index-2.html, "<!-- Mirrored from www.silvertipfilms.co.uk/index.php by HTTrackWebsite Copier/3.x [XR&CO'2008], Thu, 16 Oct 2008 02:10:39 GMT -->" morris-pictures.com was registered on 2008-10-14

Page 36: Footprinting

http://www.hackersforcharity.org/ghdb/

Page 37: Footprinting
Page 38: Footprinting

Prashant Mahajan

[email protected]

+61 0421 804 786

Follow Me on Twitter @prashant3535