web2-recon
shuvonsec · Development
Web2侦察流程——子域枚举(subfinder、Chaos API、assetfinder)、存活主机发现(dnsx、httpx)、URL爬取(katana、waybackurls、gau)、目录模糊测试(ffuf)、JS分析(LinkFinder、SecretFinder)、持续监控(新子域警报、JS变更检测、GitHub提交监视)。适用于任何Web2目标的初始侦察,或涉及资产发现、子域枚举、攻击面映射的场景。
Web2 recon pipeline — subdomain enumeration (subfinder, Chaos API, assetfinder), live host discovery (dnsx, httpx), URL crawling (katana, waybackurls, gau), directory fuzzing (ffuf), JS analysis (LinkFinder, SecretFinder), continuous monitoring (new subdomain alerts, JS change detection, GitHub commit watch). Use when starting recon on any web2 target or when asked about asset discovery, subdomain enum, or attack surface mapping.
npx skills add https://github.com/shuvonsec/claude-bug-bounty --skill web2-recon
星标 2753 · 安装量 0