ksubdomain
ksubdomain copied to clipboard
无状态子域名爆破工具
`@:/opt/ksubdomain_linux$ sudo ./ksubdomain -d baidu.com _ __ _____ _ _ _ | |/ / / ____| | | | | (_) | ' / | (___ _ _| |__ __|...
一直出现省略号
[INFO] Current Version: 0.7 [INFO] libpcap version 1.9.1 (with TPACKET_V3) ..........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................^C
data:image/s3,"s3://crabby-images/07f40/07f4044a92b637eb02b917e65b058814ec39c46e" alt="image" mac系统下跑变成这样,麻烦看看是咋回事
这里的for循环会极大占用CPU,涉及大量无用的lock操作、列表遍历、时间计算等操作。 加入10ms的延时后,在我的电脑上能降低~50%的cpu占用。 https://github.com/knownsec/ksubdomain/issues/43 可能和这个问题有关
https://github.com/knownsec/ksubdomain/blob/master/core/device.go 68行改为: ``` if dns.QR { continue } for _, v := range dns.Questions { if string(v.Name) == domain { ethLayer := packet.Layer(layers.LayerTypeEthernet) if ethLayer != nil { eth :=...
data:image/s3,"s3://crabby-images/98b98/98b9884c98989a93c7c85292f00e9a459dfb72cc" alt="image" data:image/s3,"s3://crabby-images/60b3b/60b3b8fa366c7d0061596333882723e54ed1325f" alt="image" .\ksubdomain.exe -dl .\1.txt -api ``` panic: runtime error: invalid memory address or nil pointer dereference stack traceback: :16: in function [G]: in function 'request' :15: in main chunk...
ksubdomain/resources/scripts/chaziyu.lua文件多加了hacking8.com 将 ``` function buildurl(domain) return "https://chaziyu.com/hacking8.com/" .. domain .. "/"end ``` 改成 ``` function buildurl(domain) return "https://chaziyu.com/" .. domain .. "/" end ```
data:image/s3,"s3://crabby-images/b110d/b110d05f7a9d7af3992368ff13b086e75f10ab93" alt="image" 设置最小带宽,爆破ksubdomain -b 5k -d baidu.com data:image/s3,"s3://crabby-images/4e0c5/4e0c52ca260e4939b5e3eee4e50bd63e88936a99" alt="image" 接口爆破正常,使用内置字典爆破无返回数据;
[https://github.com/knownsec/ksubdomain/blob/master/core/script.go#L30](https://github.com/knownsec/ksubdomain/blob/master/core/script.go#L30) 在调用crt.sh这个API时,https://crt.sh/?output=json&q=example.com data:image/s3,"s3://crabby-images/48ba3/48ba38bd64183a56f1826ff0b84cde676669c9ae" alt="image" 正则会提取出`nwww.example.com`这个域名。 我的解决方式是把\n提取出来,replace替换掉。 想请教下正则还有没有优化的空间=_=||