What problem does it solve?
This Skill automates the process of domain assessment and web application mapping, discovering subdomains, ports, endpoints, APIs, and JavaScript routes, and analyzing attack surfaces.
Core Features & Use Cases
- Subdomain Discovery: Enumeration of subdomains via passive and active sources, including passive DNS, certificate transparency, and DNS brute-forcing.
- Port Scanning: Identification of open ports and services on targets, with options for focused scanning and version detection.
- Service Enumeration: Version detection, banner grabbing, and protocol-specific enumeration.
- Web Application Mapping: Active scanning for directories/files, API discovery, JavaScript & SPA analysis, and surface analysis with risk prioritization.
- Output Generation: JSON and Markdown outputs for inventory, analysis, and raw tool outputs.
- Use Case: For a penetration testing or security assessment, use this Skill to identify and inventory attackable services and endpoints on a target domain.
Quick Start
Use the 'transilience-reconnaissance' skill to enumerate subdomains for the domain 'example.com'.