sudomy
Sudomy is a subdomain enumeration tool to collect subdomains and analyzing domains performing automated reconnaissance (recon) for bug hunting / pentesting
Details
Category: Recon
Publisher: trickest-mhmdiaa
Created Date: 8/7/2023
Container: quay.io/trickest/sudomy:a34edc4-patch-2
Source URL: https://github.com/screetsec/Sudomy
Parameters
all
boolean
Command:
--all
- Running all Enumeration, no nmap & gobusterhtml
boolean
Command:
--html
- Make report output into HTMLgraph
boolean
Command:
--graph
- Network Graph Visualizationhttpx
boolean
Command:
--httpx
- Perform httpx multiple probers using retryablehttpconfig
file
requiredCommand:
- Config file for API keys and webhook URLssource
string
Command:
--source
- Use source for Enumerate Subdomaindb-port
string
Command:
--db-port
- Collecting port from 3rd Party default=shodandomains
file
requiredCommand:
- domains of the websites to scandnsprobe
boolean
Command:
--dnsprobe
- Perform multiple dns queries (dnsprobe)nmap-top
boolean
Command:
--nmap-top
- Port scanning with top-ports using nmap from domain listno-probe
boolean
Command:
--no-probe
- Do not perform httproberesolver
boolean
Command:
--resolver
- Convert domain lists to resolved IP lists without duplicatestakeover
boolean
Command:
--takeover
- Subdomain TakeOver Vulnerabilty Scannercloudfare
boolean
Command:
--cloudfare
- Check an IP is Owned by Cloudflaregwordlist
boolean
Command:
--gwordlist
- Generate wordlist based on collecting url resources (Passive)websocket
boolean
Command:
--websocket
- WebSocket Connection Checkbruteforce
boolean
Command:
--bruteforce
- Bruteforce Subdomain Using Gobuster (Wordlist: ALL Top SecList DNS)no-passive
boolean
Command:
--no-passive
- Do not perform passive subdomain enumerationping-sweep
boolean
Command:
--ping-sweep
- Check live host using methode Ping Sweepscreenshot
boolean
Command:
--screenshot
- Screenshots a list of website (default: gowitness)status-code
boolean
Command:
--status-code
- Get status codes, response from domain listextract-params
boolean
Command:
--extract-params
- Collecting URL Parameter from Engineapps-identifier
string
Command:
--apps-identifier
- Identify technologies on website (ex: webanalyze)