What is theharvester

harvester tool kali
how to install theharvester
how to install theharvester in kali linux


Friends, in the last video, we talked about recon-ng, today we will talk about the Harvester.  theHarvester is a free, open source information gathering tool that is found free in Kali Linux, with the help of this tool, you can easily find the subdomain of any domain and its IP address, email address, banner etc. It is very easy to use.  It saves the output result in xml or html, there is no need to go to different search engines to get any result with this tools, but you can easily do all the work in one place, these tools are in Python language.  made up

 How to install theHarvester

 You can easily install this tools in your system, for this type sudo apt install theHarvester after that these tools will be installed

 Friends, in the last video, we talked about recon-ng, today we will talk about the Harvester.  theHarvester is a free, open source information gathering tool that is found free in Kali Linux, with the help of this tool, you can easily find the subdomain of any domain and its IP address, email address, banner etc. It is very easy to use.  It saves the output result in xml or html, there is no need to go to different search engines to get any result with this tools, but you can easily do all the work in one place, these tools are in Python language.  made up

 How to install theHarvester


 You can easily install this tools in your system, for this type sudo apt install theHarvester after that these tools will be installed

Basic commands of theHarvester

  -h, --help            show this help message and exit
  -d DOMAIN, --domain DOMAIN
                        Company name or domain to search.
  -l LIMIT, --limit LIMIT
                        Limit the number of search results, default=500.
  -S START, --start START
                        Start with result number X, default=0.
  -g, --google-dork     Use Google Dorks for Google search.
  -p, --proxies         Use proxies for requests, enter proxies in proxies.yaml.
  -s, --shodan          Use Shodan to query discovered hosts.
  --screenshot SCREENSHOT
                        Take screenshots of resolved domains specify output directory: --screenshot output_directory
  -v, --virtual-host    Verify host name via DNS resolution and search for virtual hosts.
  -e DNS_SERVER, --dns-server DNS_SERVER
                        DNS server to use for lookup.
  -t DNS_TLD, --dns-tld DNS_TLD
                        Perform a DNS TLD expansion discovery, default False.
  -r, --take-over       Check for takeovers.
  -n, --dns-lookup      Enable DNS server lookup, default False.
  -c, --dns-brute       Perform a DNS brute force on the domain.
  -f FILENAME, --filename FILENAME
                        Save the results to an HTML and/or XML file.
  -b SOURCE, --source SOURCE
                        baidu, bing, bingapi, bufferoverun, censys, certspotter, crtsh, dnsdumpster, duckduckgo, exalead, github-code, google, hackertarget, hunter,
                        intelx, linkedin, linkedin_links, netcraft, omnisint, otx, pentesttools, projectdiscovery, qwant, rapiddns, securityTrails, spyse, sublist3r,
                        threatcrowd, threatminer, trello, twitter, urlscan, virustotal, yahoo
 

How to use theHarvester step by step

It is very easy to use this tool, use this command to find the subdomain and IP address of any domain.
theHarvester -d abc.com -b google -l 500 -f test.xml

Using the above command, we can easily find the subdomain and its IP address of any domain here -d for the domain you are using -b search engine or source through which to do the task -l  Length search key which will be 100 -100 in  and our output file is test.  xml will be saved


 What is the features


 1- There is a time delay between the request

 2- All sources like Google, Bing, Netcraft etc. are available in this.

 3- DNS reverse query is done

 4- Some basic graph is given inside it

 5- With the help of this tool, you can also know the logo of the website.

 6- Can locate email, sub-domain and IP address

 

I hope you like this post, thanks for reading