Recon-ng V5 - Web Interface
Key Takeaways
The video covers Recon-ng V5, a full-featured reconnaissance framework, and its web interface for conducting open-source web-based reconnaissance. It highlights the tool's capabilities and demonstrates its usage.
Full Transcript
hey guys hackersploit here back again with another video i just wanted to make a quick uh addendum to the recon ng version 5 series um so as some of you will know uh the the tutorial playlist uh on hacker split regarding recon ng version 5 or is actually featured on the recon ng the recon ng wiki here on github so if i just go into the wiki and we take a look at the videos uh you can see that we have the the tutorial playlist featured here so i actually contacted the developer of recon ng where i submitted the tutorial playlist and it's been it's been really really really good speaking to the to the developer and he actually pointed out the fact that i missed demonstrating one of the key features with version five and that was the web interface in that it allows you to actually uh display or to to actually illustrate your the results that you have in a uh you know in a user in a user-friendly manner in a web interface so you can actually manipulate or work around with your data through a web interface which is uh really uh really really helpful so i thought why not actually just add this as an addendum so that i can actually have that uh you know covered and any other future updates will also be treated as such so without further ado let's get started so the first thing i'm going to do is i'm going to just going to recon ng because um [Music] uh i believe i have some data in there from a previous tutorial series but in any case what we can do is we can just start enumerating or collecting some some you know some data so that we can actually take a look at how this will be displayed in the web interface right so uh if i take a look at the db uh if i just schema uh we can see that we have uh the we have the hosts the ports um and the various websites and the domains all right so uh what i want to do now is let me let me see if i can actually load a module so modules load and uh let's see what modules we have here let's start off with uh we can actually try domains say brute hosts and what we can do now uh or let's try netcraft will that work i'm not really sure um i was testing that one so let me just list the options here um so we set that to hs plate already uh if i run this let's see if this module actually works all right so so that doesn't work um modules load let's see which one works let's try the who is miner um so that is a company's multi and who is miner and uh we'll say uh options list and we're gonna say say options set uh source and we can set this to split.com uh just to keep things really simple and now later on and that that gives us no information primarily because there is no who is information there um so i think we can perform uh let's see let's see what else can we do now marketplace uh marketplace let's actually go back here say marketplace search and let's search for um domains sorry that is domains like so um so we tried brute hosts and uh we can we can actually just stick with the results we have but let's see if we have any other modules here that we can use nothing important there let's try dns so yeah that's very very simple so what i'll do is i'll just say modules load and i will load the brute hosts because i know that works um so brute host and we'll say options set uh source and we'll say bbc.com i'm going to run and we're going to let that run and enumerate some sub domains uh so there we are i think that's plenty as well terminate the scan there and i'll exit now so in order to access the web the web interface for recon ng you want to navigate into your user share and your recon ng directory after which you'll find the recon web executable or the binary here so we can just uh launch it uh very simply by you know typing in recon web and hit enter so you'll see it'll tell you that it's now running on a local host on port 5000 so we can open that link in firefox and there we are so this is the web interface now the web the web interface is a means of managing the data that you have or you have collected with recon ng and also displaying it in a meaningful sense so it actually allows you to work with your data and understand what's been collected exactly it's very it's quite different than than a report because the report is quite static in what you can see you can also generate or export the the data looking at as a report here so i'll show you that in a second so if i click on the for example hsplate.com and i go into the domains or the hosts sorry and uh let's see if we can actually uh do we have the filter here um or we click here say hosts and do we have any any information here selected table let me just refresh that so uh i'll just go say default you say host for example there we are all right sorry um so this is typically going to do with hsploit and bbc right so i can use the fields and the filter right over here to actually display what i want to see so you know i can get rid of latitude longitude uh the country and you know if i say filter you can see it filters out the the results for us and i can also get rid of the module because that might not be something that you're interested in and the region might be very very important but typically this is quite uh good data here that we can use so you can see that it displays in the case of the hosts what we have now i don't have any company data no contacts credentials the only data you can see that in regards to the modules these are the only modules we have and the amount of times it's been run uh so for the hosts we have the standard data that we just collected uh the locations if we did have locations that would be stored there so you can go through the entire database here and these are the tables and then you can of course filter through the fields and you can then export the data into a json file xml csv list xlsx or you can use the proxy which uses an api which i'll probably cover how to use that but that's that that's very very interesting um so if i go into the hosts uh the host table here and let me just filter what i want so i can get rid of all of this and i can just say filter and if i wanted to export it as csv i can say export that as csv and we can save that and if i open this up with libreoffice i will actually open it up as a txt you you get the idea you cannot process your your data in various formats with the tables and the fields you've selected so again i can also export it as as any other file like a list here and that gives you what you're looking for so on and so forth um so that's pretty much all that i wanted to cover it's sort of like a very brief addendum to the rikon ng series but it's something that is worth covering because it is a feature of the script or of the framework um so do let me know what you guys think if you have any comments or suggestions i would love to hear them and i'll be seeing you in the next video [Laughter] peace
Original Description
In this video, I take a look at the Recon-ng V5 web interface. Recon-ng is a full-featured reconnaissance framework designed with the goal of providing a powerful environment to conduct open-source web-based reconnaissance quickly and thoroughly.
📈 SUPPORT US:
Patreon: https://www.patreon.com/hackersploit
Merchandise: https://teespring.com/en-GB/stores/hackersploitofficial
SOCIAL NETWORKS:
Reddit: https://www.reddit.com/r/HackerSploit/
Twitter: https://twitter.com/HackerSploit
Instagram: https://www.instagram.com/hackersploit/
LinkedIn: https://www.linkedin.com/company/18713892
WHERE YOU CAN FIND US ONLINE:
Blog: https://hsploit.com/
HackerSploit Forum: https://hackersploit.org/
HackerSploit Cybersecurity Services: https://hackersploit.io
HackerSploit Academy: https://www.hackersploit.academy
HackerSploit Discord: https://discord.gg/j3dH7tK
LISTEN TO THE CYBERTALK PODCAST:
Spotify: https://open.spotify.com/show/6j0RhRiofxkt39AskIpwP7
We hope you enjoyed the video and found value in the content. We value your feedback. If you have any questions or suggestions feel free to post them in the comments section or contact us directly via our social platforms.
Thanks for watching!
Благодарю за просмотр!
Kiitos katsomisesta
Danke fürs Zuschauen!
感谢您观看
Merci d'avoir regardé
Obrigado por assistir
دیکھنے کے لیے شکریہ
देखने के लिए धन्यवाद
Grazie per la visione
Gracias por ver
شكرا للمشاهدة
#Recon-ng#OSINT
Watch on YouTube ↗
(saves to browser)
Sign in to unlock AI tutor explanation · ⚡30
Playlist
Uploads from HackerSploit · HackerSploit · 0 of 60
← Previous
Next →
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
How To Install Kali Linux 2.0 On Virtual Box
HackerSploit
100 Subscriber Q&A! - How I Learned Ethical Hacking
HackerSploit
BlackArch Linux Review - Better Than Kali Linux?
HackerSploit
How to Access the Deep Web Safely | Deep Web Starter Guide 1.0
HackerSploit
Wireshark Tutorial for Beginners - Installation
HackerSploit
Wireshark Tutorial for Beginners - Overview of the environment
HackerSploit
Wireshark Tutorial for Beginners - Capture options
HackerSploit
Wireshark Tutorial for Beginners - Filters
HackerSploit
Complete Ethical Hacking Course - Become a Hacker Today - #1 Hacking Terminology
HackerSploit
Complete Ethical Hacking Course #2 - Installing Kali Linux
HackerSploit
Parrot OS 3.5 Review | The Best Kali Linux Alternative
HackerSploit
Nmap Tutorial For Beginners - 1 - What is Nmap?
HackerSploit
Katoolin | How To Install Pentesting Tools On Any Linux Distro
HackerSploit
Nmap Tutorial For Beginners - 2 - Advanced Scanning
HackerSploit
Nmap Tutorial For Beginners - 3 - Aggressive Scanning
HackerSploit
Zenmap Tutorial For Beginners
HackerSploit
How To Setup Proxychains In Kali Linux - #1 - Stay Anonymous
HackerSploit
How To Setup Proxychains In Kali Linux - #2 - Change Your IP
HackerSploit
How To Change Mac Address In Kali Linux | Macchanger
HackerSploit
How To Setup And Use anonsurf On Kali Linux | Stay Anonymous
HackerSploit
Ubuntu 17.04 "Zesty Zapus" Review - Bye Unity
HackerSploit
VPN And DNS For Beginners | Kali Linux
HackerSploit
Tails OS Installation And Review - Access The Deep Web/Dark Net
HackerSploit
Steganography Tutorial - Hide Messages In Images
HackerSploit
The Lazy Script - Kali Linux 2017.1 - Automate Penetration Testing!
HackerSploit
Best Linux Distributions For Penetration Testing
HackerSploit
Netcat Tutorial - The Swiss Army Knife Of Networking - Reverse Shell
HackerSploit
Gaining Access - Web Server Hacking - Metasploitable - #1
HackerSploit
Web Server Hacking - FTP Backdoor Command Execution With Metasploit - #2
HackerSploit
How To Install Kali Linux On VMware - Complete Guide 2018
HackerSploit
Q&A #1 - Best Cyber-security Certifications?
HackerSploit
Terminator - Kali Linux - Multiple Terminals
HackerSploit
Shodan Search Engine Tutorial - Access Routers,Servers,Webcams + Install CLI
HackerSploit
Q&A #2 - Mr Robot?
HackerSploit
Metasploit Community Web GUI - Installation And Overview
HackerSploit
Linux Expl0rer - Forensics Toolbox - Installation & Configuration
HackerSploit
QuasarRAT - The Best Windows RAT? - Remote Administration Tool for Windows
HackerSploit
Metasploit For Beginners - #1 - The Basics - Modules, Exploits & Payloads
HackerSploit
Metasploit For Beginners - #2 - Understanding Metasploit Modules
HackerSploit
Kali Linux Quick Tips - #1 - Adding a non-root user
HackerSploit
Metasploit For Beginners - #3 - Information Gathering - Auxiliary Scanners
HackerSploit
Spectre Meltdown Vulnerability - How To Check Your System
HackerSploit
Metasploit For Beginners - #4 - Basic Exploitation
HackerSploit
ARP Spoofing With arpspoof - MITM
HackerSploit
WordPress Vulnerability Scanning With WPScan
HackerSploit
Generating A PHP Backdoor with weevely
HackerSploit
Nikto Web Vulnerability Scanner - Web Penetration Testing - #1
HackerSploit
How To Install Kali Linux On Windows 10 - Windows Subsystem For Linux
HackerSploit
Stacer - System Optimizer And Monitoring Tool For Linux
HackerSploit
Kali Linux 2018.1 - Kernel Updates & Patches
HackerSploit
MITM With Ettercap - ARP Poisoning
HackerSploit
Password Cracking With John The Ripper - RAR/ZIP & Linux Passwords
HackerSploit
How To Detect Rootkits On Kali Linux - chkrootkit & rkhunter
HackerSploit
Channel Updates - How To Post Questions & Video Suggestions
HackerSploit
Web App Penetration Testing - #1 - Setting Up Burp Suite
HackerSploit
Web App Penetration Testing - #2 - Spidering & DVWA
HackerSploit
Cl0neMast3r - GitHub Repository Cloning Tool
HackerSploit
Kali Linux On Windows 10 Official - WSL - Installation & Configuration
HackerSploit
DoS/DDoS Protection - How To Enable ICMP, UDP & TCP Flood Filtering
HackerSploit
Web App Penetration Testing - #3 - Brute Force With Burp Suite
HackerSploit
More on: Security Basics
View skill →
🎓
Tutor Explanation
DeepCamp AI