另一个osint cli工具
harpoon的Python项目详细描述
鱼叉
打开工具。
安装
您可以简单地pip安装工具:
pip install git+https://github.com/Te-k/harpoon
如果您想使用屏幕截图插件,还需要安装phantomjs和npm:
npm install -g phantomjs
如果上面的安装说明不起作用,您可以通过在终端中执行以下命令从源代码构建工具(这假设您使用的是virtualenvs):
git clone https://github.com/Te-k/harpoon.git
cd harpoon
pip3 install .
要配置鱼叉,请运行harpoon config
,并填写所需的api键。然后运行harpoon config -u
下载所需文件。检查用harpoon config -c
配置的插件。
用法
配置后,harpoon
命令中提供以下插件:
asn Gather information on an ASN
binaryedge Request BinaryEdge API
bitly Request bit.ly information through the API
cache Requests webpage cache from different sources
censys Request information from Censys database (https://censys.io/)
certspotter Get certificates from https://sslmate.com/certspotter
circl Request the CIRCL passive DNS database
config Configure Harpoon
crtsh Search in https://crt.sh/ (Certificate Transparency database)
cybercure Check if intelligence on an IP exists in cybercure.ai
dns Map DNS information for a domain or an IP
fullcontact Requests Full Contact API (https://www.fullcontact.com/)
github Request Github information through the API
googl Requests Google url shortener API
greynoise Request Grey Noise API
help Give help on an Harpoon command
hibp Request Have I Been Pwned API (https://haveibeenpwned.com/)
hunter Request hunter.io information through the API
hybrid Requests Hybrid Analysis platform
ip Gather information on an IP address
ipinfo Request ipinfo.io information
malshare Requests MalShare database
misp Get information from a MISP server through the API
opencage Forward/Reverse geocoding using OpenCage Geocoder API
otx Requests information from AlienVault OTX
permacc Request Perma.cc information through the API
pgp Search for information in PGP key servers
robtex Search in Robtex API (https://www.robtex.com/api/)
safebrowsing Check if the given domain is in Google safe Browsing list
save Save a webpage in cache platforms
screenshot Takes a screenshot of a webpage
shodan Requests Shodan API
spyonweb Search in SpyOnWeb through the API
telegram Request information from Telegram through the API
threatgrid Request Threat Grid API
totalhash Request Total Hash API
twitter Requests Twitter API
vt Request Virus Total API
您可以使用harpoon help COMMAND
访问键
- AlienVault OTX
- BinaryEdge
- bit.ly
- Censys
- CertSpotter:付费计划提供过期证书的搜索(兴趣不大,只需使用crtsh或censys)。实际证书不需要帐户
- CIRCL Passive DNS
- FullContact
- Hunter
- Hybrid Analysis
- ipinfo.io
- MalShare
- MalShare
- OpenCage
- PassiveTotal
- Permacc
- Shodan
- SpyOnWeb
- 电报:Create an application
- Total Hash
- 病毒总数:对于public,创建一个帐户并在Settings page 中获取api密钥