BEGINNER BUG BOUNTY TOOLS PART 2

 BEGINNER BUG BOUNTY TOOLS PART 2

Port Scanning

Port scanning is the process of systematically scanning a network or a host to discover open ports and services that are available for communication. Ports are communication endpoints used in networking, and each port is associated with a specific service or protocol. Port scanning is a common technique used in network reconnaissance and security assessments, both for legitimate purposes like network troubleshooting and for potentially malicious activities like identifying vulnerable services.

This this definition given by chatgpt
 
 
let us see some port scanning tool used for bug bounty


masscan - TCP port scanner, spews SYN packets asynchronously, scanning entire Internet in under 5 minutes.

RustScan - The Modern Port Scanner

naabu - A fast port scanner written in go with focus on reliability and simplicity.

nmap - Nmap - the Network Mapper. Github mirror of official SVN repository.
 
If you are using kali linux  it is inbuilt in and some linux distros contains nmap defaultly

sandmap - Nmap on steroids. Simple CLI with the ability to run pure Nmap engine, 31 modules with 459 scan profiles.

ScanCannon - Combines the speed of masscan with the reliability and detailed enumeration of nmap


Screenshots

EyeWitness - EyeWitness is designed to take screenshots of websites, provide some server header info, and identify default credentials if possible.

aquatone - Aquatone is a tool for visual inspection of websites across a large amount of hosts and is convenient for quickly gaining an overview of HTTP-based attack surface.

screenshoteer - Make website screenshots and mobile emulations from the command line.

gowitness - gowitness - a golang, web screenshot utility using Chrome Headless

WitnessMe - Web Inventory tool, takes screenshots of webpages using Pyppeteer (headless Chrome/Chromium) and provides some extra bells & whistles to make life easier.

 eyeballer - Convolutional neural network for analyzing pentest screenshots


scrying - A tool for collecting RDP, web and VNC screenshots all in one place

Depix - Recovers passwords from pixelized screenshots

httpscreenshot - HTTPScreenshot is a tool for grabbing screenshots and HTML of large numbers of websites.

Comments

Popular posts from this blog

PlayItSafe google cyber security professional course 2 (COURSERA)

FOUNDATIONS OF CYBERSECURITY GOOGLE(COURSERA) QUIZ ANSWERS

HOW TO BYPASS THE 2FA(TWO FACTOR AUTHENTICATION)

AUTOMATED SCRIPT FOR FINDING XSS

how hackers do a phishing page in 8 lines of code using html

BEGINNER BUG BOUNTY TOOLS PART-1

Disclaimer

Privacy policy

BITFLIPING

Things should do after sublister(sublist3r)