Domainim: A Powerful Tool for Organizational Network Analysis
Domainim is a cutting-edge tool designed for analyzing organizational networks, offering a comprehensive overview of an organization’s structure by mapping its digital assets. Using advanced techniques like OSINT (Open-Source Intelligence), brute-forcing, and DNS resolution, Domainim quickly identifies and maps digital resources within an organization.
Current Features (v1.2.0)
- Subdomain Enumeration: Leverages two search engines and brute-forcing techniques to discover subdomains.
- User-Friendly Output: Simplified user interface for clearer result presentation.
- A Record Resolution (IPv4): Resolves associated IP addresses for identified subdomains.
- Virtual Host Enumeration: Identifies virtual hosts linked to scanned domains.
- Reverse DNS Lookup: Finds domain names associated with specific IP addresses.
- Generic Subdomain Detection: Identifies generic subdomains during brute-forcing processes.
- Basic TCP Port Scanning: Scans open TCP ports for initial insights into exposed services.
- Custom Subdomain Input: Allows manual entry of subdomains for tailored scans.
- Result Export: Enables export of results into JSON files for further analysis.
- Directory and File Busting: Expands exploration with directory and file busting.
- Wordlist-Based Brute-Forcing: Allows users to add wordlists for more extensive brute-forcing of subdomains.
- Custom DNS Server Options: Includes an option to use a custom DNS server for enhanced scanning.
- Progress Bar for Longer Operations: Visual indicator for extended processes to monitor task progress.
Future Features
Several exciting new features are under development to expand Domainim’s capabilities. For more details, consult the dedicated “Upcoming Features” section in the documentation.
Inspiration and Dependencies
Domainim draws significant inspiration from the Sublist3r project and integrates a port-scanning module based on NimScan, ensuring high efficiency and accuracy in network mapping.
Installation and Usage
To install Domainim:
git clone git@github.com:pptx704/domainim
For building:
nimble build
To analyze a domain:
./domainim <domain> [-ports=<ports>]
Are you interested in discovering more tools like Domainim?
by Aghilas AZZOUG
Account linkedin: https://www.linkedin.com/in/azzougaghilas/
My original article: https://www.elmesmar.fr/2024/09/tor-sous-surveillance-quand-lanonymat.html