Wednesday, April 15, 2020

CertCrunchy - Just A Silly Recon Tool That Uses Data From SSL Certificates To Find Potential Host Names


It just a silly python script that either retrieves SSL Certificate based data from online sources, currently https://crt.sh/, https://certdb.com/, https://sslmate.com/certspotter/, and https://censys.io or given an IP range it will attempt to extract host information from SSL Certificates. If you want to use Censys.io you need to register for an API key.

How to install
git clone https://github.com/joda32/CertCrunchy.git
cd CertCrunchy
sudo pip3 install -r requirements.txt

How to use it?
Very simply -d to get hostnames for a specific domain
-D to get hostnames for a list of domains (just stuff it in a line-delimited text file)
-I to retrieve and parse certificates from hosts in a netblock / IP range (e.g. 192.168.0.0/24)
-T the thread count makes stuff faster, but don't over do it
-o Output file name
-f Output format CSV or JSON, CSV is the default
for the rest, I'm still working on those :)

API keys and configs
All API keys are stored in the api_keys.py file below is a list of supported APIs requiring API keys.
  1. Censys.oi https://censys.io
  2. VirusTotal https://www.virustotal.com/en/documentation/public-api/

More information


  1. Pentest Tools Android
  2. Hacking Tools Windows 10
  3. World No 1 Hacker Software
  4. Hack And Tools
  5. Termux Hacking Tools 2019
  6. Best Pentesting Tools 2018
  7. Pentest Tools Apk
  8. Pentest Tools Online
  9. Hacker Tools Windows
  10. Hack Tools 2019
  11. Hacks And Tools
  12. Pentest Box Tools Download
  13. Pentest Tools Url Fuzzer
  14. Hacker Tools List
  15. How To Hack
  16. Hak5 Tools

No comments:

Post a Comment

5514 Interesting News

Politics A Prague-Berlin train loses its old-world dining cars Introducing Analysing Africa, our latest newsletter Canadians are starting to...