External Assessments

Uncovering Assets

Project Discovery Tools

Project Discovery’s Tool Manager can install all of the above go tools in one shot

Viewing websites:

GoWitness

EyeBaller

Finding user information and passwords:

Shodan

Search documentation/internal resources for:

net use
psexec
.pfx
AsPlainText
Authorization: Basic
Authorization: Bearer
NetworkCredential
password
root
passwd
credential
putty
logins
connectionstring
securestring
samaccountname
ldap
sudo
scp
ssh
.vmd
clientdomain\
@clientdomain.com
id_dsa
id_rsa
ghp_
AWS_SECRET_ACCESS_KEY + AKIA/ASIA
ssh_password
net user