Kali Linux

  1. The Kali Linux Toolkit: Information Gathering
    1. Passive Information Gathering
      1. OSINT Frameworks
        1. Maltego
          1. Installation and Setup
            1. Transform Usage
              1. Graph Analysis
                1. Custom Transforms
                2. Recon-ng
                  1. Module System
                    1. Workspace Management
                      1. API Integration
                        1. Custom Modules
                        2. theHarvester
                          1. Email Harvesting
                            1. Subdomain Discovery
                              1. Search Engine Integration
                            2. DNS Analysis
                              1. DNS Enumeration Tools
                                1. dnsenum
                                  1. Basic Enumeration
                                    1. Zone Transfer Attempts
                                      1. Brute Force Subdomains
                                      2. dnsrecon
                                        1. Record Enumeration
                                          1. Zone Walking
                                            1. Cache Snooping
                                            2. fierce
                                              1. Domain Scanning
                                                1. Subdomain Discovery
                                              2. DNS Lookup Tools
                                                1. dig
                                                  1. nslookup
                                                    1. host
                                                  2. Web Intelligence
                                                    1. Website Analysis
                                                      1. whatweb
                                                        1. webtech
                                                          1. builtwith
                                                          2. Directory Discovery
                                                            1. dirb
                                                              1. gobuster
                                                                1. dirbuster
                                                                2. Subdomain Enumeration
                                                                  1. sublist3r
                                                                    1. amass
                                                                      1. subfinder
                                                                    2. Social Media Intelligence
                                                                      1. Social Network Analysis
                                                                        1. Profile Enumeration
                                                                          1. Relationship Mapping
                                                                          2. Search Engine Intelligence
                                                                            1. Google Dorking
                                                                              1. Bing Intelligence
                                                                                1. Shodan Integration
                                                                              2. Active Information Gathering
                                                                                1. Network Discovery
                                                                                  1. Host Discovery
                                                                                    1. Nmap Host Discovery
                                                                                      1. ARP Scanning
                                                                                        1. ICMP Scanning
                                                                                        2. Network Mapping
                                                                                          1. Network Topology Discovery
                                                                                            1. Route Tracing
                                                                                              1. Network Device Identification
                                                                                            2. Port Scanning
                                                                                              1. Nmap
                                                                                                1. TCP Connect Scans
                                                                                                  1. SYN Stealth Scans
                                                                                                    1. UDP Scans
                                                                                                      1. Comprehensive Scans
                                                                                                        1. Timing and Performance
                                                                                                          1. Firewall Evasion
                                                                                                            1. Output Formats
                                                                                                            2. Masscan
                                                                                                              1. High-Speed Scanning
                                                                                                                1. Configuration Options
                                                                                                                  1. Output Processing
                                                                                                                  2. Unicornscan
                                                                                                                    1. Zmap
                                                                                                                    2. Service Enumeration
                                                                                                                      1. Service Detection
                                                                                                                        1. Service Fingerprinting
                                                                                                                          1. Version Detection
                                                                                                                          2. Protocol-Specific Enumeration
                                                                                                                            1. HTTP/HTTPS Enumeration
                                                                                                                              1. FTP Enumeration
                                                                                                                                1. SSH Enumeration
                                                                                                                                  1. Telnet Enumeration
                                                                                                                                    1. SMTP Enumeration
                                                                                                                                      1. POP3/IMAP Enumeration
                                                                                                                                        1. DNS Enumeration
                                                                                                                                          1. SNMP Enumeration
                                                                                                                                            1. SMB/NetBIOS Enumeration
                                                                                                                                              1. LDAP Enumeration
                                                                                                                                                1. Database Enumeration
                                                                                                                                              2. Operating System Detection
                                                                                                                                                1. Nmap OS Detection
                                                                                                                                                  1. p0f Passive OS Fingerprinting
                                                                                                                                                    1. xprobe2
                                                                                                                                                    2. Specialized Enumeration Tools
                                                                                                                                                      1. SMB Enumeration
                                                                                                                                                        1. enum4linux
                                                                                                                                                          1. smbclient
                                                                                                                                                            1. rpcclient
                                                                                                                                                              1. nbtscan
                                                                                                                                                              2. SMTP Enumeration
                                                                                                                                                                1. smtp-user-enum
                                                                                                                                                                  1. smtp-open-relay
                                                                                                                                                                  2. SNMP Enumeration
                                                                                                                                                                    1. snmpwalk
                                                                                                                                                                      1. snmp-check
                                                                                                                                                                        1. onesixtyone