Skip to content

Instantly share code, notes, and snippets.

@ehsahil
Last active July 25, 2022 02:59
Show Gist options
  • Save ehsahil/839a07c1f460e22be00bfe94d58ad099 to your computer and use it in GitHub Desktop.
Save ehsahil/839a07c1f460e22be00bfe94d58ad099 to your computer and use it in GitHub Desktop.
#Finding subdomains via Nmap.
nmap --script dns-brute --script-args dns-brute.domain=domain.com,dns-brute.threads=6,dns-brute.hostlist=./sub1000.lst
nmap --script dns-brute --script-args dns-brute.domain=domain.com,dns-brute.threads=6,dns-brute.hostlist=./sub10000.lst
nmap --script dns-brute --script-args dns-brute.domain=domain.com,dns-brute.threads=6,dns-brute.hostlist=./sub100000.lst
nmap --script dns-brute --script-args dns-brute.domain=domain.com,dns-brute.threads=6,dns-brute.hostlist=./sub1000000.lst
#Wordlist :
1. sub1000.lst - https://drive.google.com/open?id=0B0h-Dh0Oss1zOGFqVVl1bTVpdWc
2. sub10000.lst - https://drive.google.com/open?id=0B0h-Dh0Oss1zTTdmQnZsQ0JCYzA
3. sub100000.lst - https://drive.google.com/open?id=0B0h-Dh0Oss1zdDBFT1dCc08ya0U
4. sub1000000.lst - https://drive.google.com/open?id=0B0h-Dh0Oss1zODNfSG1sbVJ1WE0
In case above links are not available : https://github.com/ehsahil/wordlists-for-nmap
#Taken from http://blog.x1622.com/2016/11/subdomain-discovery-with-nmap-and.html
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment