当前位置:网站首页>Site Architecture Detection & Chrome Plugin for Information Gathering

Site Architecture Detection & Chrome Plugin for Information Gathering

2022-08-10 19:26:00 lmn_

insert image description here

0x01 Site Architecture Detection

The tools in this section include identifying the operating system, programming language, middleware and version information, database and version information, server and version information, etc.

Yunxi

http://www.yunsee.cn/
insert image description here

Tidal Fingerprints

http://finger.tidesec.com/
insert image description here
inInsert image description here
insert image description here

0x02 chrome plugin for information gathering

Many useful plug-ins can help the process of collecting information more smoothly. Plug-ins are programs that complement the browser.

How to add plugins

Chrome official website:

https://www.google.com/chrome/

Chrome Store (Chinese version):

https://chrome.google.com/webstore/category/extensions?hl=en-US

How to add on official website

Take Wappalyzer as an example, search for Wappalyzer directly in the Chrome store, and click "Add to Chrome"
Insert image description here

Click "Add Plugin"
insert image description here

Developer mode added

Download the plugin file with .crx suffix, click "Extensions" in settings
hereInsert image description

Click on developer mode in the upper right corner
insert image description here

After that, just drag the .crx file in directly.

Wappalyzer

insert image description here

Download method

Click to add directly to the Chrome store
insert image description here

Wappalyzer official website:

https://www.wappalyzer.com/

Features

  • Understand what technologies the website is built with and use;
  • Create custom site listing data;
  • Monitor the website;
  • Automated technical search, instant technical query and real-time web crawling analysis, quick viewing of results, etc.

In general, it is to quickly query the fingerprint information of the website. The query results are as follows:
Insert image description here

FOFA Pro view

FOFA Pro view is an open source FOFA Pro asset display browser plug-in, which can quickly query the ip, open port, host name, asset information, etc. of a website.

How to download

Address:

https://github.com/fofapro/fofa_view

insert image description here

ModHeader

ModHeader plugin can quickly and efficiently customize HTTP request headers or rewrite response headers

  • Add, modify and delete request and response headers
  • Override the default value of the request header set by the Chrome browser
  • Use ModHeader to set X-Forwarded-For, Authorization, Access-Control-Allow-Origin, etc.
  • Modify cookies in request/response headers
  • Use another redirect URL
  • Enable header modification via URL
  • Advanced filtering by tab, tab group or window
原网站

版权声明
本文为[lmn_]所创,转载请带上原文链接,感谢
https://yzsam.com/2022/222/202208101841443174.html