Recon-ng V5 - Web Interface

HackerSploit · Intermediate ·🔐 Cybersecurity ·6y ago

Key Takeaways

The video covers Recon-ng V5, a full-featured reconnaissance framework, and its web interface for conducting open-source web-based reconnaissance. It highlights the tool's capabilities and demonstrates its usage.

Full Transcript

hey guys hackersploit here back again with another video i just wanted to make a quick uh addendum to the recon ng version 5 series um so as some of you will know uh the the tutorial playlist uh on hacker split regarding recon ng version 5 or is actually featured on the recon ng the recon ng wiki here on github so if i just go into the wiki and we take a look at the videos uh you can see that we have the the tutorial playlist featured here so i actually contacted the developer of recon ng where i submitted the tutorial playlist and it's been it's been really really really good speaking to the to the developer and he actually pointed out the fact that i missed demonstrating one of the key features with version five and that was the web interface in that it allows you to actually uh display or to to actually illustrate your the results that you have in a uh you know in a user in a user-friendly manner in a web interface so you can actually manipulate or work around with your data through a web interface which is uh really uh really really helpful so i thought why not actually just add this as an addendum so that i can actually have that uh you know covered and any other future updates will also be treated as such so without further ado let's get started so the first thing i'm going to do is i'm going to just going to recon ng because um [Music] uh i believe i have some data in there from a previous tutorial series but in any case what we can do is we can just start enumerating or collecting some some you know some data so that we can actually take a look at how this will be displayed in the web interface right so uh if i take a look at the db uh if i just schema uh we can see that we have uh the we have the hosts the ports um and the various websites and the domains all right so uh what i want to do now is let me let me see if i can actually load a module so modules load and uh let's see what modules we have here let's start off with uh we can actually try domains say brute hosts and what we can do now uh or let's try netcraft will that work i'm not really sure um i was testing that one so let me just list the options here um so we set that to hs plate already uh if i run this let's see if this module actually works all right so so that doesn't work um modules load let's see which one works let's try the who is miner um so that is a company's multi and who is miner and uh we'll say uh options list and we're gonna say say options set uh source and we can set this to split.com uh just to keep things really simple and now later on and that that gives us no information primarily because there is no who is information there um so i think we can perform uh let's see let's see what else can we do now marketplace uh marketplace let's actually go back here say marketplace search and let's search for um domains sorry that is domains like so um so we tried brute hosts and uh we can we can actually just stick with the results we have but let's see if we have any other modules here that we can use nothing important there let's try dns so yeah that's very very simple so what i'll do is i'll just say modules load and i will load the brute hosts because i know that works um so brute host and we'll say options set uh source and we'll say bbc.com i'm going to run and we're going to let that run and enumerate some sub domains uh so there we are i think that's plenty as well terminate the scan there and i'll exit now so in order to access the web the web interface for recon ng you want to navigate into your user share and your recon ng directory after which you'll find the recon web executable or the binary here so we can just uh launch it uh very simply by you know typing in recon web and hit enter so you'll see it'll tell you that it's now running on a local host on port 5000 so we can open that link in firefox and there we are so this is the web interface now the web the web interface is a means of managing the data that you have or you have collected with recon ng and also displaying it in a meaningful sense so it actually allows you to work with your data and understand what's been collected exactly it's very it's quite different than than a report because the report is quite static in what you can see you can also generate or export the the data looking at as a report here so i'll show you that in a second so if i click on the for example hsplate.com and i go into the domains or the hosts sorry and uh let's see if we can actually uh do we have the filter here um or we click here say hosts and do we have any any information here selected table let me just refresh that so uh i'll just go say default you say host for example there we are all right sorry um so this is typically going to do with hsploit and bbc right so i can use the fields and the filter right over here to actually display what i want to see so you know i can get rid of latitude longitude uh the country and you know if i say filter you can see it filters out the the results for us and i can also get rid of the module because that might not be something that you're interested in and the region might be very very important but typically this is quite uh good data here that we can use so you can see that it displays in the case of the hosts what we have now i don't have any company data no contacts credentials the only data you can see that in regards to the modules these are the only modules we have and the amount of times it's been run uh so for the hosts we have the standard data that we just collected uh the locations if we did have locations that would be stored there so you can go through the entire database here and these are the tables and then you can of course filter through the fields and you can then export the data into a json file xml csv list xlsx or you can use the proxy which uses an api which i'll probably cover how to use that but that's that that's very very interesting um so if i go into the hosts uh the host table here and let me just filter what i want so i can get rid of all of this and i can just say filter and if i wanted to export it as csv i can say export that as csv and we can save that and if i open this up with libreoffice i will actually open it up as a txt you you get the idea you cannot process your your data in various formats with the tables and the fields you've selected so again i can also export it as as any other file like a list here and that gives you what you're looking for so on and so forth um so that's pretty much all that i wanted to cover it's sort of like a very brief addendum to the rikon ng series but it's something that is worth covering because it is a feature of the script or of the framework um so do let me know what you guys think if you have any comments or suggestions i would love to hear them and i'll be seeing you in the next video [Laughter] peace

Original Description

In this video, I take a look at the Recon-ng V5 web interface. Recon-ng is a full-featured reconnaissance framework designed with the goal of providing a powerful environment to conduct open-source web-based reconnaissance quickly and thoroughly. 📈 SUPPORT US: Patreon: https://www.patreon.com/hackersploit Merchandise: https://teespring.com/en-GB/stores/hackersploitofficial SOCIAL NETWORKS: Reddit: https://www.reddit.com/r/HackerSploit/ Twitter: https://twitter.com/HackerSploit Instagram: https://www.instagram.com/hackersploit/ LinkedIn: https://www.linkedin.com/company/18713892 WHERE YOU CAN FIND US ONLINE: Blog: https://hsploit.com/ HackerSploit Forum: https://hackersploit.org/ HackerSploit Cybersecurity Services: https://hackersploit.io HackerSploit Academy: https://www.hackersploit.academy HackerSploit Discord: https://discord.gg/j3dH7tK LISTEN TO THE CYBERTALK PODCAST: Spotify: https://open.spotify.com/show/6j0RhRiofxkt39AskIpwP7 We hope you enjoyed the video and found value in the content. We value your feedback. If you have any questions or suggestions feel free to post them in the comments section or contact us directly via our social platforms. Thanks for watching! Благодарю за просмотр! Kiitos katsomisesta Danke fürs Zuschauen! 感谢您观看 Merci d'avoir regardé Obrigado por assistir دیکھنے کے لیے شکریہ देखने के लिए धन्यवाद Grazie per la visione Gracias por ver شكرا للمشاهدة #Recon-ng#OSINT
Watch on YouTube ↗ (saves to browser)
Sign in to unlock AI tutor explanation · ⚡30

Playlist

Uploads from HackerSploit · HackerSploit · 0 of 60

← Previous Next →
1 How To Install Kali Linux 2.0 On Virtual Box
How To Install Kali Linux 2.0 On Virtual Box
HackerSploit
2 100 Subscriber Q&A! - How I Learned Ethical Hacking
100 Subscriber Q&A! - How I Learned Ethical Hacking
HackerSploit
3 BlackArch Linux Review - Better Than Kali Linux?
BlackArch Linux Review - Better Than Kali Linux?
HackerSploit
4 How to Access the Deep Web Safely | Deep Web Starter Guide 1.0
How to Access the Deep Web Safely | Deep Web Starter Guide 1.0
HackerSploit
5 Wireshark Tutorial for Beginners - Installation
Wireshark Tutorial for Beginners - Installation
HackerSploit
6 Wireshark Tutorial for Beginners - Overview of the environment
Wireshark Tutorial for Beginners - Overview of the environment
HackerSploit
7 Wireshark Tutorial for Beginners - Capture options
Wireshark Tutorial for Beginners - Capture options
HackerSploit
8 Wireshark Tutorial for Beginners - Filters
Wireshark Tutorial for Beginners - Filters
HackerSploit
9 Complete Ethical Hacking Course - Become a Hacker Today - #1 Hacking Terminology
Complete Ethical Hacking Course - Become a Hacker Today - #1 Hacking Terminology
HackerSploit
10 Complete Ethical Hacking Course #2 - Installing Kali Linux
Complete Ethical Hacking Course #2 - Installing Kali Linux
HackerSploit
11 Parrot OS 3.5 Review | The Best Kali Linux Alternative
Parrot OS 3.5 Review | The Best Kali Linux Alternative
HackerSploit
12 Nmap Tutorial For Beginners - 1 - What is Nmap?
Nmap Tutorial For Beginners - 1 - What is Nmap?
HackerSploit
13 Katoolin | How To Install Pentesting Tools On Any Linux Distro
Katoolin | How To Install Pentesting Tools On Any Linux Distro
HackerSploit
14 Nmap Tutorial For Beginners - 2 - Advanced Scanning
Nmap Tutorial For Beginners - 2 - Advanced Scanning
HackerSploit
15 Nmap Tutorial For Beginners - 3 - Aggressive Scanning
Nmap Tutorial For Beginners - 3 - Aggressive Scanning
HackerSploit
16 Zenmap Tutorial For Beginners
Zenmap Tutorial For Beginners
HackerSploit
17 How To Setup Proxychains In Kali Linux - #1 - Stay Anonymous
How To Setup Proxychains In Kali Linux - #1 - Stay Anonymous
HackerSploit
18 How To Setup Proxychains In Kali Linux - #2 - Change Your IP
How To Setup Proxychains In Kali Linux - #2 - Change Your IP
HackerSploit
19 How To Change Mac Address In Kali Linux | Macchanger
How To Change Mac Address In Kali Linux | Macchanger
HackerSploit
20 How To Setup And Use anonsurf On Kali Linux | Stay Anonymous
How To Setup And Use anonsurf On Kali Linux | Stay Anonymous
HackerSploit
21 Ubuntu 17.04 "Zesty Zapus" Review - Bye Unity
Ubuntu 17.04 "Zesty Zapus" Review - Bye Unity
HackerSploit
22 VPN And DNS For Beginners | Kali Linux
VPN And DNS For Beginners | Kali Linux
HackerSploit
23 Tails OS Installation And Review - Access The Deep Web/Dark Net
Tails OS Installation And Review - Access The Deep Web/Dark Net
HackerSploit
24 Steganography Tutorial - Hide Messages In Images
Steganography Tutorial - Hide Messages In Images
HackerSploit
25 The Lazy Script - Kali Linux 2017.1 - Automate Penetration Testing!
The Lazy Script - Kali Linux 2017.1 - Automate Penetration Testing!
HackerSploit
26 Best Linux Distributions For Penetration Testing
Best Linux Distributions For Penetration Testing
HackerSploit
27 Netcat Tutorial - The Swiss Army Knife Of Networking - Reverse Shell
Netcat Tutorial - The Swiss Army Knife Of Networking - Reverse Shell
HackerSploit
28 Gaining Access - Web Server Hacking - Metasploitable - #1
Gaining Access - Web Server Hacking - Metasploitable - #1
HackerSploit
29 Web Server Hacking - FTP Backdoor Command Execution With Metasploit - #2
Web Server Hacking - FTP Backdoor Command Execution With Metasploit - #2
HackerSploit
30 How To Install Kali Linux On VMware  - Complete Guide 2018
How To Install Kali Linux On VMware - Complete Guide 2018
HackerSploit
31 Q&A #1 - Best Cyber-security Certifications?
Q&A #1 - Best Cyber-security Certifications?
HackerSploit
32 Terminator - Kali Linux - Multiple Terminals
Terminator - Kali Linux - Multiple Terminals
HackerSploit
33 Shodan Search Engine Tutorial - Access Routers,Servers,Webcams + Install CLI
Shodan Search Engine Tutorial - Access Routers,Servers,Webcams + Install CLI
HackerSploit
34 Q&A #2 - Mr Robot?
Q&A #2 - Mr Robot?
HackerSploit
35 Metasploit Community Web GUI  - Installation And Overview
Metasploit Community Web GUI - Installation And Overview
HackerSploit
36 Linux Expl0rer - Forensics Toolbox - Installation & Configuration
Linux Expl0rer - Forensics Toolbox - Installation & Configuration
HackerSploit
37 QuasarRAT - The Best Windows RAT? - Remote Administration Tool for Windows
QuasarRAT - The Best Windows RAT? - Remote Administration Tool for Windows
HackerSploit
38 Metasploit For Beginners - #1 - The Basics - Modules, Exploits & Payloads
Metasploit For Beginners - #1 - The Basics - Modules, Exploits & Payloads
HackerSploit
39 Metasploit For Beginners - #2 - Understanding Metasploit Modules
Metasploit For Beginners - #2 - Understanding Metasploit Modules
HackerSploit
40 Kali Linux Quick Tips - #1 - Adding a non-root user
Kali Linux Quick Tips - #1 - Adding a non-root user
HackerSploit
41 Metasploit For Beginners - #3 - Information Gathering - Auxiliary Scanners
Metasploit For Beginners - #3 - Information Gathering - Auxiliary Scanners
HackerSploit
42 Spectre Meltdown Vulnerability  - How To Check Your System
Spectre Meltdown Vulnerability - How To Check Your System
HackerSploit
43 Metasploit For Beginners - #4 - Basic Exploitation
Metasploit For Beginners - #4 - Basic Exploitation
HackerSploit
44 ARP Spoofing With arpspoof - MITM
ARP Spoofing With arpspoof - MITM
HackerSploit
45 WordPress Vulnerability Scanning With WPScan
WordPress Vulnerability Scanning With WPScan
HackerSploit
46 Generating A PHP Backdoor with weevely
Generating A PHP Backdoor with weevely
HackerSploit
47 Nikto Web Vulnerability Scanner - Web Penetration Testing - #1
Nikto Web Vulnerability Scanner - Web Penetration Testing - #1
HackerSploit
48 How To Install Kali Linux On Windows 10 - Windows Subsystem For Linux
How To Install Kali Linux On Windows 10 - Windows Subsystem For Linux
HackerSploit
49 Stacer - System Optimizer And Monitoring Tool For Linux
Stacer - System Optimizer And Monitoring Tool For Linux
HackerSploit
50 Kali Linux 2018.1 - Kernel Updates & Patches
Kali Linux 2018.1 - Kernel Updates & Patches
HackerSploit
51 MITM With Ettercap - ARP Poisoning
MITM With Ettercap - ARP Poisoning
HackerSploit
52 Password Cracking With John The Ripper - RAR/ZIP & Linux Passwords
Password Cracking With John The Ripper - RAR/ZIP & Linux Passwords
HackerSploit
53 How To Detect Rootkits On Kali Linux - chkrootkit & rkhunter
How To Detect Rootkits On Kali Linux - chkrootkit & rkhunter
HackerSploit
54 Channel Updates - How To Post Questions & Video Suggestions
Channel Updates - How To Post Questions & Video Suggestions
HackerSploit
55 Web App Penetration Testing - #1 - Setting Up Burp Suite
Web App Penetration Testing - #1 - Setting Up Burp Suite
HackerSploit
56 Web App Penetration Testing - #2 - Spidering & DVWA
Web App Penetration Testing - #2 - Spidering & DVWA
HackerSploit
57 Cl0neMast3r - GitHub Repository Cloning Tool
Cl0neMast3r - GitHub Repository Cloning Tool
HackerSploit
58 Kali Linux On Windows 10 Official - WSL - Installation & Configuration
Kali Linux On Windows 10 Official - WSL - Installation & Configuration
HackerSploit
59 DoS/DDoS Protection - How To Enable ICMP, UDP & TCP Flood Filtering
DoS/DDoS Protection - How To Enable ICMP, UDP & TCP Flood Filtering
HackerSploit
60 Web App Penetration Testing - #3 - Brute Force With Burp Suite
Web App Penetration Testing - #3 - Brute Force With Burp Suite
HackerSploit

This video teaches how to use Recon-ng V5's web interface for open-source web-based reconnaissance, providing a powerful environment for conducting thorough reconnaissance quickly. The tool is useful for cybersecurity professionals and researchers.

Key Takeaways
  1. Install Recon-ng V5
  2. Access the web interface
  3. Configure Recon-ng settings
  4. Conduct reconnaissance using the tool
  5. Analyze results and identify vulnerabilities
💡 Recon-ng V5's web interface provides an efficient way to conduct open-source web-based reconnaissance, making it a valuable tool for cybersecurity professionals and researchers.

Related Reads

📰
Alkegen Data Breach by Akira Ransomware
Alkegen suffers data breach by Akira ransomware, exposing sensitive employee and customer data, highlighting the importance of cybersecurity measures
Dev.to · NetSecOpsIO
📰
Sophos Report: AI Accelerates Cyberattacks
AI accelerates cyberattacks by speeding up existing methods, making identity-based initial access a growing concern
Dev.to · NetSecOpsIO
📰
Rise of Data-Wiping Attacks Using LoTL
Learn about the rising threat of data-wiping attacks using 'living off the land' (LoTL) techniques and how to protect against them
Dev.to · NetSecOpsIO
📰
SonicWall: Targeted Attacks on Manufacturing
Manufacturing sector faces targeted cyberattacks on IT and OT networks, with a focus on high-impact targets, despite an overall drop in attack volume
Dev.to · NetSecOpsIO
Up next
How To Delete Your Data From The Internet | Privacy Bee Review & Tutorial 2026
Tutorial Stack
Watch →