Afrikaans
Akan
Albanian
Amharic
Armenian
Azerbaijani
Basque
Belarusian
Bemba
Bengali
Bihari
Bosnian
Breton
Bulgarian
Cambodian
Catalan
Cebuano
Cherokee
Chichewa
Chinese (Simplified)
Chinese (Traditional)
Corsican
Croatian
Czech
Danish
Dutch
English
Esperanto
Estonian
Ewe
Faroese
Filipino
Finnish
French
Frisian
Ga
Galician
Georgian
German
Greek
Guarani
Gujarati
Haitian Creole
Hausa
Hawaiian
Hebrew
Hindi
Hmong
Hungarian
Icelandic
Igbo
Indonesian
Interlingua
Irish
Italian
Japanese
Javanese
Kannada
Kazakh
Kinyarwanda
Kirundi
Kongo
Korean
Krio (Sierra Leone)
Kurdish
Kurdish (Soranî)
Kyrgyz
Laothian
Latin
Latvian
Lingala
Lithuanian
Lozi
Luganda
Luo
Luxembourgish
Macedonian
Malagasy
Malay
Malayalam
Maltese
Maori
Marathi
Mauritian Creole
Moldavian
Mongolian
Myanmar (Burmese)
Montenegrin
Nepali
Nigerian Pidgin
Northern Sotho
Norwegian
Norwegian (Nynorsk)
Occitan
Oriya
Oromo
Pashto
Persian
Polish
Portuguese (Brazil)
Portuguese (Portugal)
Punjabi
Quechua
Romanian
Romansh
Runyakitara
Russian
Samoan
Scots Gaelic
Serbian
Serbo-Croatian
Sesotho
Setswana
Seychellois Creole
Shona
Sindhi
Sinhalese
Slovak
Slovenian
Somali
Spanish
Spanish (Latin American)
Sundanese
Swahili
Swedish
Tajik
Tamil
Tatar
Telugu
Thai
Tigrinya
Tonga
Tshiluba
Tumbuka
Turkish
Turkmen
Twi
Uighur
Ukrainian
Urdu
Uzbek
Vietnamese
Welsh
Wolof
Xhosa
Yiddish
Yoruba
Zulu
As usual the first thing that we do before we start trying to exploit or find any vulnerability is we
do information gathering so we try to gather as much information as possible about the target and what
applications are no different.
So we're going to start by trying to get as much information as we can about the target IP address the
domain name info.
The technology is used on the Web sites of what programming languages use.
What kind of server is installed on it.
What kind of database is being used and where we're going to gather information about the company the
DNS records.
And we'll also see if we can find any files that are not being listed or any subdomains that are not
visible to other to other people.
So the first thing that we're going to have a look on is who is look up who's the Co.
Is a protocol that's used to find owners of Internet resources for example server an IP address or domain.
So we're actually not hacking or doing anything.
We're literally just retrieving info from a database that contains information about owners of stuff
on the Internet.
So for example when you sign up when you sign up for a domain name if you wanted to register a domain
name for yourself for example Zayd dot com.
When I do that I have to supply information about myself my address and then the name will be stored
in my own name and people can see that Zayde owns this domain name.
So this is all we're going to do.
If you Google who is look up you'll see a lot of websites providing the service.
So I'm using the domain tools dot com and are just going to put my target domain name and I'm just going
to use security dot org.
So as you can see very simple and we get a lot of information about our target web site.
You'll see the e-mail that you can use to contact the domain name info.
Usually he'll be able to see the address of the company that has registered this domain name but we
can see that this company is using privacy on their domain.
So you can't really see the address.
But if they have if they're not using privity you'll be able to see their address and more information
about the actual company.
So you want the domain name was created.
You can see the IP address of security.
So if you're doing this you should get this IP address and I'll show you how I do it.
A security org you'll see it's the same domain name here same as same IP address your site.
You can see the IP location which unseen status.
Obviously it's active can also access the history but you need to register for that and obviously you
can see the title here and something that's very useful here we can see that it's use an Apache web
server.
So this is software that can be used as a web server and we can see that I secured uses this web server
and this version to point to point 3 1.
So again we can use this to find exploits.
We can see that it's using Unix the operating system of the web website of the server and it's using
in the following items as well as use modern SSL and open SSL that right here.
You can find more information about the company who registered this domain.
So again security is using privacy so you want be able to see the address you can see that it's saying
that the target person is used in the privacy protection but usually you'll be able to see phone numbers
and addresses of that company.
So as you can see very simple stuff but it's very helpful in the long run.
Just to know what your target was their IP what services are they use and we can also hear actually
didn't show you can see the name servers that are being used.
And you can see that they are provided by a company called them dot net.
Now if you go on them now you'll see that this is a hosting company.
So if we go on the English version that you'll see that this is a hosting company and again you can
even use this hosting company and try to social engineer your way maybe into hacking into your target
into security.
Can't find what you're looking for?
Get subtitles in any language from opensubtitles.com, and translate them here.