Security Basics mailing list archives

Re: Tools to scan for subdomain


From: Ed Donahue <ed () 2dum com>
Date: Mon, 14 Jun 2004 11:06:28 -0700

You can get a list of subdomains through a zone transfer command to the nameserver. Using the linux host command ('host -l'), you can list all the subdomains in a given zone. However, zone transfers are typically limited to only slave nameservers that are replicating, so you will most likely be denied a zone transfer list. If you do receive one, then the administrator setup the nameserver insecurely (or feels nothing can be gained through others having this list).

Google is your friend.

On Jun 11, 2004, at 21:47, Sifvion wrote:

Is there a tool to scan for subdomain?
For example host www.abc.com has several sub domains like xyz.abc.com,
efg.abc.com and so on, but I only know abc.com, so is there any tool that is able to tell me there are subdomains for this abc.com and list them out and making it more difficult is that those subdmains are in differebt set of IP?
For example :

root host: abc.com IP: 1.2.3.4
subdomain: xyz.abc.com IP: 2.3.4.5

You see here the IP is not under the same IP range of root host. So is it
possbile to find xyz.abc.com?

Thanks


----------------------------------------------------------------------- ---- Ethical Hacking at the InfoSec Institute. Mention this ad and get $545 off any course! All of our class sizes are guaranteed to be 10 students or less to facilitate one-on-one interaction with one of our expert instructors. Attend a course taught by an expert instructor with years of in-the-field pen testing experience in our state of the art hacking lab. Master the skills of an Ethical Hacker to better assess the security of your organization.
Visit us at:
http://www.infosecinstitute.com/courses/ethical_hacking_training.html
----------------------------------------------------------------------- -----




---------------------------------------------------------------------------
Ethical Hacking at the InfoSec Institute. Mention this ad and get $545 off any course! All of our class sizes are guaranteed to be 10 students or less to facilitate one-on-one interaction with one of our expert instructors. Attend a course taught by an expert instructor with years of in-the-field pen testing experience in our state of the art hacking lab. Master the skills of an Ethical Hacker to better assess the security of your organization. Visit us at: http://www.infosecinstitute.com/courses/ethical_hacking_training.html
----------------------------------------------------------------------------


Current thread: