What problem does it solve? Passive subdomain enumeration often reveals only a fraction of an organization's attack surface. This Skill pivots from a single domain to the organization's ASN, expands it into full CIDR ranges, and discovers every hostname and service across all owned IP blocks, including sibling TLDs and subsidiary infrastructure. ## Core Features & Use Cases - ASN to CIDR Expansion: Convert domains and ASNs into complete CIDR ranges using asnmap, whois, RADB, and metabigor. - Reverse DNS and Service Discovery: Resolve PTR records across IP blocks with dnsx and probe live web services on non-standard ports with httpx and naabu. - TLD and Subsidiary Expansion: Discover sibling domains on other top-level domains and enumerate sub-organizations from whois data. - Use Case: During an authorized penetration test, you find only three subdomains for a target. Use this Skill to expand the target's ASN into CIDR ranges, reverse-resolve hostnames, and uncover staging servers and forgotten services on non-standard ports. ## Quick Start Map the full IP infrastructure of target.com by resolving its ASN, expanding CIDR ranges, and running reverse DNS across all discovered IP blocks.