53 - DNS
Introduction
Enumeration
nmap -n -sT -p53 <NETWORK>/<MASK>
nmap -n -sU -p53 <NETWORK>/<MASK>dig -x <IP> @<DNS_SERVER_IP> # Reverse lookup
dig ANY @<DNS_SERVER_IP> <DOMAIN> # Any information
dig axfr @<DNS_SERVER_IP> <DOMAIN> # zone transfer
# Subdomain brute forcing
gobuster dns -d <DOMAIN> [ -r <DNS_SERVER_IP>] -w <WORDLIST.TXT> [ -t <NUMBER_THREADS>]
dnsrecon -t brt -d <DOMAIN> [-n <DNS_SERVER_IP>] -D <WORDLIST.txt> [ --threads <NUMBER_THREADS>]dnsrecon -n 8.8.8.8 -d <DOMAIN>
dnsrecon -d <IP> -t zonewalk
dnsrecon -d <DOMAIN> -t axfr # Zone transfer
dnsrecon -r <IP> # Reverse lookupReferences
Last updated