<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	 xmlns:media="http://search.yahoo.com/mrss/" >

<channel>
	<title>reconFTW &#8211; AnonyViet &#8211; English Version</title>
	<atom:link href="https://en.anonyviet.com/tag/reconftw/feed/" rel="self" type="application/rss+xml" />
	<link>https://en.anonyviet.com</link>
	<description>The most popular website for sharing information technology, computer networks, and security knowledge. Stay up to date with the hottest news and tips</description>
	<lastBuildDate>Wed, 25 Jan 2023 09:36:47 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.0.2</generator>

<image>
	<url>https://en.anonyviet.com/wp-content/uploads/2023/01/cropped-ico-logo-75x75-1.png</url>
	<title>reconFTW &#8211; AnonyViet &#8211; English Version</title>
	<link>https://en.anonyviet.com</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>How to use reconFTW to Spy on the network for security holes</title>
		<link>https://en.anonyviet.com/how-to-use-reconftw-to-spy-on-the-network-for-security-holes/</link>
					<comments>https://en.anonyviet.com/how-to-use-reconftw-to-spy-on-the-network-for-security-holes/#respond</comments>
		
		<dc:creator><![CDATA[AnonyViet]]></dc:creator>
		<pubDate>Wed, 25 Jan 2023 09:36:47 +0000</pubDate>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[holes]]></category>
		<category><![CDATA[network]]></category>
		<category><![CDATA[reconFTW]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Spy]]></category>
		<guid isPermaLink="false">https://en.anonyviet.com/?p=2792</guid>

					<description><![CDATA[I was assigned the task of finding vulnerabilities in the Website. Before you need to do network scouting/network scouting, the term is called Recon. If used manually, it is quite time consuming, today I will introduce you to Tool reconFTW to help you scout your friends very well, integrated with many functions to help collect [&#8230;]]]></description>
										<content:encoded><![CDATA[<p></p>
<div id="ftwp-postcontent">
<p><strong>I was assigned the task of finding vulnerabilities in the Website.  Before you need to do network scouting/network scouting, the term is called Recon.  If used manually, it is quite time consuming, today I will introduce you to Tool reconFTW to help you scout your friends very well, integrated with many functions to help collect accurate information about the Website you are scanning.</strong></p>
<div class="code-block code-block-16" style="margin: 8px 0; clear: both;">
<div align="center">
<table class=" aligncenter" style="background-color: #c0c0c0; border-collapse: collapse; width: 59.9985%;">
<tbody>
<tr>
<td style="width: 100%; text-align: center;"><span style="font-size: 12pt;"><strong>Join the channel <span style="color: #0000ff;">Telegram</span> of the <span style="color: #008080;">AnonyViet </span> 👉 <span style="text-decoration: underline;"><a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Ft.me%2Fanonyvietchat" class="local-link" rel="noopener">Link</a></span>  👈</strong></span></td>
</tr>
</tbody>
</table>
</div>
</div>
<h2 id="ftoc-lo-hong-bao-mat-website-la-gi" class="ftwp-heading">What is a website security vulnerability?</h2>
<p>Website security vulnerabilities are weaknesses in the design and configuration of the system, web developer error or negligence in the operation of the website.  The existence of these vulnerabilities is a danger to developers as well as website visitors when black hat hackers can fully exploit them to be able to steal your data or information. your personal information, the user&#8217;s and more</p>
<p><img post-id="2792" fifu-featured="1" fetchpriority="high" decoding="async" class="size-full wp-image-36990 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/11/cong-cu-quet-lo-hong-bao-mat-1.jpg" alt="How to use reconFTW to Spy on the network for security holes" title="How to use reconFTW to Spy on the network for security holes" width="800" height="533" srcset="https://anonyviet.com/wp-content/uploads/2021/11/cong-cu-quet-lo-hong-bao-mat-1.jpg 800w, https://anonyviet.com/wp-content/uploads/2021/11/cong-cu-quet-lo-hong-bao-mat-1-300x200.jpg 300w, https://anonyviet.com/wp-content/uploads/2021/11/cong-cu-quet-lo-hong-bao-mat-1-768x512.jpg 768w, https://anonyviet.com/wp-content/uploads/2021/11/cong-cu-quet-lo-hong-bao-mat-1-750x500.jpg 750w" sizes="(max-width: 800px) 100vw, 800px" title="How to use reconFTW to Spy on the network for security holes 13"/></p>
<p>Hackers use scanning tools to detect a wide range of websites with poor security configuration or websites on popular platforms like WordPress that have published vulnerabilities that have not been addressed by the website owner or web developer, and They will use them to attack, install malicious code and destroy websites.</p>
<p>Some studies show that in 2019, every 45 minutes, a website will be &#8220;visited&#8221; by hackers and mainly black hat hackers.  This is enough to talk about how dangerous the existence of security holes is.</p>
<h2 id="ftoc-cac-loai-lo-hong-bao-mat-website-pho-bien" class="ftwp-heading">Common types of website security vulnerabilities</h2>
</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-36989 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/11/wordpress-hacking-exploit-700x393-1.jpg" alt="WordPress Security Vulnerability" width="695" height="370" srcset="https://anonyviet.com/wp-content/uploads/2021/11/wordpress-hacking-exploit-700x393-1.jpg 695w, https://anonyviet.com/wp-content/uploads/2021/11/wordpress-hacking-exploit-700x393-1-300x160.jpg 300w" sizes="auto, (max-width: 695px) 100vw, 695px" title="How to use reconFTW to Spy on the network for security holes 14"/></p>
<ul>
<li>SQL Injection (you can see more articles <a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Fanonyviet.com%2Fsqlmap-v1-2-9-sql-injection%2F" rel="noopener" class="local-link">use SQLmap</a> For more details)</li>
<li>Broken Authentication</li>
<li>Cross Site Scripting</li>
<li>Server-Side Template Injection</li>
<li>Insecure Direct Object References</li>
</ul>
<p>reconFTW is a software from the github community and authored by six2dez.  This is a network reconnaissance tool, also known as a network spy, and it can collect information of the website such as the owner, the domain name is associated with but most importantly, this tool is capable of automating the process. Check your website&#8217;s security, list all subdomains, and do a comprehensive vulnerability check.  reconFTW uses a variety of methods to test including:</p>
<ul>
<li>passive</li>
<li>bruteforce</li>
<li>permutations</li>
<li>certificate transparency</li>
<li>source code scraping</li>
<li>analytics</li>
<li>DNS records</li>
</ul>
<p>It also performs various vulnerability checks like XSS, Open Redirects, SSRF, CRLF, LFI, SQLi, SSL check, SSTI,DNS, etc. Along with that, reconFTW can OSINT (trace tracing) and scan target&#8217;s port.</p>
<p>To say, compared to tools like Burpsuite, in terms of features, they are not inferior to them but also can run the tool simply and easily.  After experiencing, this is an extremely suitable tool for those of you who cannot use tools like nmap or Burpsuite.</p>
<p>At the same time, after the whole detective process has been completed, all that has been collected will be aggregated into a single file and it is quite convenient if you want to reopen it to check and check for possible errors. available on the website.</p>
<p>It takes a long time to run the entire network reconnaissance feature, but I just need to sit and eat because the whole process has been automated and optimized so that the user can easily. collect information</p>
<h2 id="ftoc-luu-y-truoc-khi-thuc-hien" class="ftwp-heading">Note before doing</h2>
<p style="text-align: center;"><span style="color: #ff0000;"><strong>It is strictly forbidden to take advantage of the security holes of non-proprietary websites to wreak havoc.  Anonyviet will not be responsible for any of your actions.  Please continue if you already agree with this note!</strong></span></p>
<h2 id="ftoc-huong-dan-su-dung-reconftw-de-quet-lo-hong-bao-mat-website" class="ftwp-heading">Instructions for using reconFTW to scan website security holes</h2>
<h3 id="ftoc-huong-dan-cai-dat" class="ftwp-heading">Installation Instructions</h3>
<p>You can visit the official tool&#8217;s github link <a target="_blank" href="https://en.anonyviet.com/next-link/?url=https%3A%2F%2Fgithub.com%2Fsix2dez%2Freconftw" rel="noopener external nofollow" class="ext-link" onclick="this.target='_blank';">here</a></p>
<h4 id="ftoc-doi-voi-cai-dat-truc-tiep-su-dung-may-ao-su-dung-vps" class="ftwp-heading">For live installation / using virtual machine / using VPS</h4>
<pre class="EnlighterJSRAW" data-enlighter-language="generic">git clone https://github.com/six2dez/reconftw&#13;
cd reconftw/&#13;
./install.sh&#13;
&#13;
#khởi động tool&#13;
./reconftw.sh -d [tên miền] -r</pre>
<h4 id="ftoc-doi-voi-docker" class="ftwp-heading">For Docker</h4>
<p><strong>Method 1: From <a target="_blank" href="https://en.anonyviet.com/next-link/?url=https%3A%2F%2Fhub.docker.com%2Fr%2Fsix2dez%2Freconftw" rel="noopener external nofollow" class="ext-link" onclick="this.target='_blank';">DockerHub</a></strong></p>
<pre class="EnlighterJSRAW" data-enlighter-language="generic">docker pull six2dez/reconftw:main&#13;
wget https://raw.githubusercontent.com/six2dez/reconftw/main/reconftw.cfg&#13;
mkdir Recon&#13;
&#13;
#câu lệnh khời động tool&#13;
docker run -d -v $PWD/reconftw.cfg:/root/Tools/reconftw/reconftw.cfg -v $PWD/Recon/:/root/Tools/reconftw/Recon/ --name reconftwSCAN --rm six2dez/reconftw:main -d [tên miền] -r</pre>
<p><strong>Method 2: from Github</strong></p>
<pre class="EnlighterJSRAW" data-enlighter-language="generic">git clone https://github.com/six2dez/reconftw&#13;
cd reconftw&#13;
docker build -t reconftw Docker/.&#13;
&#13;
#câu lệnh khởi động tool&#13;
docker run -v $PWD/reconftw.cfg:/root/Tools/reconftw/reconftw.cfg -v $PWD/Recon/:/root/Tools/reconftw/Recon/ --name reconftwSCAN --rm reconftw -d [tên miền] -r</pre>
<h3 id="ftoc-huong-dan-su-dung" class="ftwp-heading">User manual</h3>
<p><strong>Syntax</strong>: <code>./reconftw.sh [tùy chọn dành cho mục tiêu] [Input cho mục tiêu] [chế độ(mode)] [các tùy chọn khác]</code></p>
<h4 id="ftoc-doi-voi-tuy-chon-cho-muc-tieu" class="ftwp-heading">For option for target</h4>
<p><strong>Here</strong>:</p>
<p><strong>Target.com</strong> is the domain you want to attack</p>
<p><strong>-r</strong>: I will explain in the mode (mode)</p>
<ul>
<li><strong>-d</strong>: for 1 domain name<br /><strong>For example</strong>: <code>./reconftw.sh -d target.com -r</code></li>
<li><strong>-l</strong>: use a list of domains<br /><strong>For example</strong>: <code>./reconftw.sh -l targets.txt -r</code></li>
<li><strong>-m</strong>: for 1 target but multiple domains<br /><strong>For example</strong>:<code>./reconftw.sh -m target -l domains.txt -r</code></li>
<li><strong>-i</strong>: add subdomains as list<br /><strong>For example</strong>:<code>./reconftw.sh -d target.com -i in.txt -r</code></li>
<li><strong>-x</strong>: exclude subdomains<br /><strong>For example:</strong> <code>./reconftw.sh -d target.com -x oos.txt -r</code></li>
</ul>
<h4 id="ftoc-doi-voi-cac-che-do" class="ftwp-heading">For modes</h4>
<p>Usually, I recommend using -r over the others because I only use that.  If you want full scan, use -a</p>
<p><strong>Note</strong>: processing speed depends on the mode you choose and the speed of your home network.  Sometimes with large web it will take quite a while.</p>
<ul>
<li><strong>-r: </strong>Website scouting with all modes (no attack)<br /><strong>For example</strong>: <code>./reconftw.sh -d target.com -r</code></li>
<li><strong>-S:</strong> Search Subdomains<br /><strong>For example</strong>: <code>./reconftw.sh -d target.com -s<br /></code></li>
<li><strong>-p:</strong> Only run as passive<br /><strong>For example</strong>: <code>./reconftw.sh -d target.com -p<br /></code></li>
<li><strong>-w: </strong>Check the website provided in the list<br /><strong>For example</strong>: <code>./reconftw.sh -l targetlist.txt -w<br /></code></li>
<li><strong>-a: </strong>Run all functions<br /><strong>For example</strong>: <code>./reconftw.sh -d target.com -a<br /></code></li>
<li><strong>-n: </strong>osint – tracing<br /><strong>For example</strong>: <code>./reconftw.sh -d target.com -n<br /></code></li>
<li><strong>-H: </strong>show help<br /><strong>For example</strong>: <code>./reconftw.sh -h<br /></code></li>
</ul>
<h4 id="ftoc-doi-voi-cac-tuy-chon-khac" class="ftwp-heading">For other options</h4>
<ul>
<li><strong>–deep</strong>: Run deep scan</li>
<li><strong>-v</strong>: VPS – use when you run on VPS</li>
<li><strong>-f</strong> conf_file: use another config (not recommended)</li>
<li><strong>-o</strong>: Save output of reconFTW</li>
</ul>
<h3 id="ftoc-1-so-vi-du-ve-cach-su-dung" class="ftwp-heading">Some examples of usage</h3>
<ul>
<li>Run web snooping with a unique domain name: <code>./reconftw.sh -d target.com -r</code></li>
<li>Run web scouting with a list of domains: <code>./reconftw.sh -l sites.txt -r -o /output/directory/</code></li>
<li>Run web scouting with a list of domains on vps: <code>./reconftw.sh -d target.com -r --deep -o /output/directory/<br /></code></li>
<li>Run web snooping with multiple domains from 1 company: <code>./reconftw.sh -m company -l domains_list.txt -r<br /></code></li>
<li>Boot into Full power mode: <code>./reconftw.sh -d target.com -a<br /></code></li>
</ul>
<p><strong>Eg</strong>:</p>
<p><img decoding="async" loading="lazy" class="aligncenter" src="https://github.com/six2dez/reconftw/raw/main/images/reconFTW.gif" alt="How to use reconFTW to scan website security holes" width="564" height="476" title="How to use reconFTW to Spy on the network for security holes 15"/></p>
<h3 id="ftoc-demo-thuc-te" class="ftwp-heading">Actual Demo</h3>
<p>First, I run the following command: <code>./reconftw.sh -d duocphamviethung.com.vn -r</code></p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-37002 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/11/a-44.jpg" alt="run reconFTW" width="467" height="353" srcset="https://anonyviet.com/wp-content/uploads/2021/11/a-44.jpg 467w, https://anonyviet.com/wp-content/uploads/2021/11/a-44-300x227.jpg 300w" sizes="auto, (max-width: 467px) 100vw, 467px" title="How to use reconFTW to Spy on the network for security holes 16"/></p>
</p>
<p>After it finishes scanning, it returns the results.  There is a statistics of the time it takes to scan and complete the task.  Currently, it has taken me up to 2 hours for a small website, so please note the time!</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-37001 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/11/b-5.jpg" alt="At the end of the scan" width="835" height="226" srcset="https://anonyviet.com/wp-content/uploads/2021/11/b-5.jpg 835w, https://anonyviet.com/wp-content/uploads/2021/11/b-5-300x81.jpg 300w, https://anonyviet.com/wp-content/uploads/2021/11/b-5-768x208.jpg 768w, https://anonyviet.com/wp-content/uploads/2021/11/b-5-750x203.jpg 750w" sizes="auto, (max-width: 835px) 100vw, 835px" title="How to use reconFTW to Spy on the network for security holes 17"/></p>
<p>All files are saved in folder <code>Recon/[tên website tấn công]</code> if you don&#8217;t set its output. <img decoding="async" loading="lazy" class="size-full wp-image-36998 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/11/c-3.jpg" alt="Output files" width="645" height="501" srcset="https://anonyviet.com/wp-content/uploads/2021/11/c-3.jpg 645w, https://anonyviet.com/wp-content/uploads/2021/11/c-3-300x233.jpg 300w" sizes="auto, (max-width: 645px) 100vw, 645px" title="How to use reconFTW to Spy on the network for security holes 18"/></p>
<p>Here, the file that you need to pay attention to is the nuclei_output file because this file will return a CVE error code that hackers can use to exploit information.  You can go to Google and search for the error code to find the solution to fix it as soon as possible!</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-37054 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/11/254983742_728110471497180_1425299277977769600_n.jpg" alt="File contains error code CVE" width="334" height="138" srcset="https://anonyviet.com/wp-content/uploads/2021/11/254983742_728110471497180_1425299277977769600_n.jpg 334w, https://anonyviet.com/wp-content/uploads/2021/11/254983742_728110471497180_1425299277977769600_n-300x124.jpg 300w" sizes="auto, (max-width: 334px) 100vw, 334px" title="How to use reconFTW to Spy on the network for security holes 19"/></p>
</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-37058 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/11/254813719_265494362208376_8065495242876070818_n-1.jpg" alt="CVE error codes after scanning is complete" width="814" height="121" srcset="https://anonyviet.com/wp-content/uploads/2021/11/254813719_265494362208376_8065495242876070818_n-1.jpg 814w, https://anonyviet.com/wp-content/uploads/2021/11/254813719_265494362208376_8065495242876070818_n-1-300x45.jpg 300w, https://anonyviet.com/wp-content/uploads/2021/11/254813719_265494362208376_8065495242876070818_n-1-768x114.jpg 768w, https://anonyviet.com/wp-content/uploads/2021/11/254813719_265494362208376_8065495242876070818_n-1-750x111.jpg 750w" sizes="auto, (max-width: 814px) 100vw, 814px" title="How to use reconFTW to Spy on the network for security holes 20"/></p>
<p>Use it to pentest your system only!</p>
<div class="kk-star-ratings kksr-auto kksr-align-right kksr-valign-bottom" data-payload="{&quot;align&quot;:&quot;right&quot;,&quot;id&quot;:&quot;36971&quot;,&quot;slug&quot;:&quot;default&quot;,&quot;valign&quot;:&quot;bottom&quot;,&quot;ignore&quot;:&quot;&quot;,&quot;reference&quot;:&quot;auto&quot;,&quot;class&quot;:&quot;&quot;,&quot;count&quot;:&quot;100&quot;,&quot;legendonly&quot;:&quot;&quot;,&quot;readonly&quot;:&quot;&quot;,&quot;score&quot;:&quot;5&quot;,&quot;starsonly&quot;:&quot;&quot;,&quot;best&quot;:&quot;5&quot;,&quot;gap&quot;:&quot;5&quot;,&quot;greet&quot;:&quot;\u0110\u00e1nh gi\u00e1 b\u00e0i vi\u1ebft post&quot;,&quot;legend&quot;:&quot;B\u00e0i vi\u1ebft \u0111\u1ea1t: 5\/5 - (100 b\u00ecnh ch\u1ecdn)&quot;,&quot;size&quot;:&quot;24&quot;,&quot;width&quot;:&quot;142.5&quot;,&quot;_legend&quot;:&quot;B\u00e0i vi\u1ebft \u0111\u1ea1t: {score}\/{best} - ({count} {votes})&quot;,&quot;font_factor&quot;:&quot;1.25&quot;}">
<p>            The article achieved: 5/5 &#8211; (100 votes)    </p>
</p></div>
</div>
]]></content:encoded>
					
					<wfw:commentRss>https://en.anonyviet.com/how-to-use-reconftw-to-spy-on-the-network-for-security-holes/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://anonyviet.com/wp-content/uploads/2021/11/cong-cu-quet-lo-hong-bao-mat-1.jpg" medium="image"></media:content>
            	</item>
	</channel>
</rss>
