{"id":20,"date":"2023-01-13T18:56:52","date_gmt":"2023-01-13T18:56:52","guid":{"rendered":"http:\/\/thered0ne.com\/?p=20"},"modified":"2023-01-13T18:57:33","modified_gmt":"2023-01-13T18:57:33","slug":"recon-tool-automatic-subdomains-extractor","status":"publish","type":"post","link":"https:\/\/thered0ne.com\/?p=20","title":{"rendered":"Recon Tool &#8211; Automatic subdomains extractor"},"content":{"rendered":"<div class=\"wp-block-image\">\n<figure class=\"aligncenter size-large is-resized\"><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/thered0ne.com\/wp-content\/uploads\/2023\/01\/favpng_detective-cartoon-min-709x1024.png\" alt=\"\" class=\"wp-image-23\" width=\"428\" height=\"617\" srcset=\"https:\/\/thered0ne.com\/wp-content\/uploads\/2023\/01\/favpng_detective-cartoon-min-709x1024.png 709w, https:\/\/thered0ne.com\/wp-content\/uploads\/2023\/01\/favpng_detective-cartoon-min-208x300.png 208w, https:\/\/thered0ne.com\/wp-content\/uploads\/2023\/01\/favpng_detective-cartoon-min-768x1109.png 768w, https:\/\/thered0ne.com\/wp-content\/uploads\/2023\/01\/favpng_detective-cartoon-min-1064x1536.png 1064w, https:\/\/thered0ne.com\/wp-content\/uploads\/2023\/01\/favpng_detective-cartoon-min.png 1108w\" sizes=\"auto, (max-width: 428px) 100vw, 428px\" \/><\/figure>\n<\/div>\n\n\n<p class=\"wp-block-paragraph\">In this project I&#8217;ll show you a little python program that will make your search for subdomains easier. Especially when you use crt.sh website:<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Github :&nbsp;<a href=\"https:\/\/www.github.com\/warber0x\" rel=\"noreferrer noopener\" target=\"_blank\">AUTOMATED SUBDOMAINS EXTRACTOR<\/a><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">I made this program because I&#8217;m kinda lazy person. I always hated the fact when you have to begin a new bug bounty program, you begin to think of (S**t I have to do recon again, find API endpoints, juicy URLs, dirsearch, subdomains &#8230; ) It always frustrated me and that&#8217;s my main reason of creating this. One day I thought to spend more time to create my tools that will help me somehow and maybe you too.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This tool will try to search for subdomains by giving him an URL. It will extract URLs and put them in a file. This file will be validated by removing all duplicate URLs in it. After that, it will &#8220;Probe&#8221; the remaining subdomains&nbsp; and put in a finale text file.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This is how to use the&nbsp;<strong>Auto_sub_extractor<\/strong>. It&#8217;s easy:<\/p>\n\n\n\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/img1.wsimg.com\/isteam\/ip\/f219c2e9-bdfb-4881-9567-f7c302d990cf\/blob-a8e591f.png\/:\/cr=t:0%25,l:0%25,w:100%25,h:100%25\/rs=w:1280\" alt=\"\"\/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">After executing the program it will make request to crt.sh and extract URLs<\/p>\n\n\n\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/img1.wsimg.com\/isteam\/ip\/f219c2e9-bdfb-4881-9567-f7c302d990cf\/Capture%20(1).PNG\/:\/cr=t:0%25,l:0%25,w:100%25,h:100%25\/rs=w:1280\" alt=\"\"\/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">The program shows valid URLs after parsing all data extract from CRT.SH.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">I will try to improve this python program to do some more interesting&nbsp; stuff, like&nbsp;<strong>dirsearch<\/strong>&nbsp;or get API endpoints.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><br>Happy Hacking<\/p>\n","protected":false},"excerpt":{"rendered":"<p>In this project I&#8217;ll show you a little python program that will make your search for subdomains easier. Especially when you use crt.sh website: Github :&nbsp;AUTOMATED SUBDOMAINS EXTRACTOR I made this program because I&#8217;m kinda lazy person. I always hated the fact when you have to begin a new bug [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":23,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-20","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-uncategorized"],"_links":{"self":[{"href":"https:\/\/thered0ne.com\/index.php?rest_route=\/wp\/v2\/posts\/20","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/thered0ne.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/thered0ne.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/thered0ne.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/thered0ne.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=20"}],"version-history":[{"count":1,"href":"https:\/\/thered0ne.com\/index.php?rest_route=\/wp\/v2\/posts\/20\/revisions"}],"predecessor-version":[{"id":24,"href":"https:\/\/thered0ne.com\/index.php?rest_route=\/wp\/v2\/posts\/20\/revisions\/24"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/thered0ne.com\/index.php?rest_route=\/wp\/v2\/media\/23"}],"wp:attachment":[{"href":"https:\/\/thered0ne.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=20"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/thered0ne.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=20"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/thered0ne.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=20"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}