2024年1月18日 星期四

Theharvester: Email Harvesting Throughout Year




You might have harvested many things upto now but what we are going to harvest today is something bad :)



Requirements:

  1. A Linux box (I'm using Kali Linux)
  2. theharvester program (already available in Kali Linux)
So what does theharvester harvest? Well it harvests email addresses. theharvester is an Information gathering tool. If you want a list of emails to spam you can get that easily from theharvester tool and go on Spamming (I'm joking its illegal). It's a security tool that helps you in pentesting an organization (as always it can be used for evil as well). You can gather emails from an organization and look for potential victims to attack or use brute-force techniques to get their passwords or Social Engineer them into doing something that will let you compromise some or all systems in the organization. Uhh there are so many things that you can do when you have access to someone's email address.

OK stop talking and start doing.


Fire up a terminal in your kali box and type this command:


theharvester -d hotmail.com -l 50 -b google


In a small amount of time you'll see your terminal flooded with 200 hotmail.com email address. What does this command mean?


theharvester is the tool name that we are using

-d <domain_name> specifies the domain (or website) who's email addresses we're looking for, in our case it was hotmail.com
-l <number> specifies the number of results that we want in the output, I limited it to 50
-b <source> specifies the source on which to look for email addresses, I specified google as the source

Besides google we can specify any of the follow as source:

google, googleCSE, bing, bingapi, pgp, linkedin, google-profiles, people123, jigsaw, twitter, googleplus, all
Here the last entry all means look in every available source.

Let's say you wanted to look in every available source they you should specify the following command:


theharvester -d hotmail.com -b all




-f is another great flag which can be utilized to save the output in case we want to SPAM them later (just kidding) or for other reasons (I'm thinking positive). -f flag saves the result in html or xml format. Let's do just that:


theharvester -d gmail.com -l 50 -b google -f emailaddresses.html


here -f flag is followed by the location where we want to store the file and the name of file, in our case we stored it in our pwd (present working directory) with the name emailaddresses.html.




Above picture shows an html output generated by harvester.


That's it for this tutorial hope to see you next time!

More info


  1. Hacks And Tools
  2. Hackrf Tools
  3. Hack Tools 2019
  4. Best Pentesting Tools 2018
  5. Hacker Tools Mac
  6. Hacking Tools Name
  7. Hacking Tools Hardware
  8. World No 1 Hacker Software
  9. Hacker
  10. Hacker Security Tools
  11. Hacker Tools
  12. Hacker Tools List
  13. Best Pentesting Tools 2018
  14. Hacking Tools 2020
  15. Pentest Tools For Mac
  16. World No 1 Hacker Software
  17. Blackhat Hacker Tools
  18. What Are Hacking Tools
  19. Hack App
  20. Hacking Tools 2020
  21. Hacking Tools Windows 10
  22. Pentest Tools Download
  23. Pentest Tools Find Subdomains
  24. Hacking Tools Download
  25. Hack And Tools
  26. Hacker Tools
  27. Hack Tools Online
  28. Blackhat Hacker Tools
  29. Hack Tools For Games
  30. Hack Tools 2019
  31. Hacker Search Tools
  32. Hacking Tools For Pc
  33. Computer Hacker
  34. Hacking Tools
  35. Black Hat Hacker Tools
  36. Hack Tools Online
  37. Hacking Tools For Mac
  38. Hacking Tools Name
  39. Hacker Search Tools
  40. Pentest Tools Online
  41. Pentest Tools Windows
  42. Hacker Tools For Ios
  43. Hacking Tools Pc
  44. Android Hack Tools Github
  45. Hack Tools For Pc
  46. Hack Tools For Pc
  47. Hacking Tools Online
  48. Hacking Tools Software
  49. Hacker Tools Free
  50. Best Hacking Tools 2020
  51. Pentest Recon Tools
  52. Hacking Tools For Windows Free Download
  53. Pentest Tools Android
  54. Hacking Tools For Windows Free Download
  55. Ethical Hacker Tools
  56. Hack Tools For Ubuntu
  57. Hacker Tools Mac
  58. What Are Hacking Tools
  59. Pentest Recon Tools
  60. Pentest Tools For Mac
  61. Computer Hacker
  62. Hacking Tools Free Download
  63. Hacker Tools Hardware
  64. Hack Tools For Windows
  65. Hack Tools For Pc
  66. Pentest Automation Tools
  67. Pentest Reporting Tools
  68. Hacker Security Tools
  69. Hacker Tools For Ios
  70. Hacking Tools
  71. New Hacker Tools
  72. Hacking Tools Windows
  73. Hacker Tools Apk Download
  74. Hacking Tools For Mac
  75. Hacking Tools Mac
  76. Hackers Toolbox
  77. Hack Tools
  78. Hacker Tools Online
  79. Hack Tools
  80. Wifi Hacker Tools For Windows
  81. Pentest Tools Subdomain
  82. Hacker Tools Apk
  83. Hacker Tools For Pc
  84. Hacking Tools 2019
  85. Tools For Hacker
  86. Nsa Hack Tools
  87. Hacker Tools For Mac
  88. Hacker Tools Apk Download
  89. Hack Tools For Windows
  90. Pentest Reporting Tools
  91. Hacker Tools Linux
  92. Hacks And Tools
  93. Pentest Tools Github
  94. Pentest Tools Download
  95. Ethical Hacker Tools
  96. Hacking Tools For Mac
  97. Hack Tools Pc
  98. Install Pentest Tools Ubuntu
  99. Hacker Tools Linux
  100. Hack Tools Download
  101. Hacker Tool Kit
  102. Hacker Tools Mac
  103. Physical Pentest Tools
  104. Install Pentest Tools Ubuntu
  105. Hackrf Tools
  106. Pentest Tools Website Vulnerability
  107. Hacker Tools For Ios
  108. Easy Hack Tools
  109. Hacking App
  110. Pentest Tools Kali Linux
  111. Hacking Tools Pc
  112. Hacker Tools Online
  113. Pentest Tools Port Scanner
  114. Hacker Tools Online
  115. Underground Hacker Sites
  116. Hak5 Tools
  117. Pentest Tools Find Subdomains
  118. What Is Hacking Tools
  119. Pentest Tools
  120. Usb Pentest Tools
  121. Hacker Tools Software

沒有留言:

張貼留言