1 00:00:10,220 --> 00:00:15,180 Let us start another interesting lecture on information gathering in the last lecture. 2 00:00:15,210 --> 00:00:22,430 We saw how to use 070 framework, and in this model we will see how to use another information gathering 3 00:00:22,430 --> 00:00:24,110 framework, which is the Redhawk. 4 00:00:24,620 --> 00:00:27,280 Now ad hoc is a Linux terminal utility. 5 00:00:27,280 --> 00:00:28,210 It is a software. 6 00:00:28,220 --> 00:00:30,770 It is a framework which is probably used in Linux. 7 00:00:31,430 --> 00:00:37,150 So Redhawk is an open source tool that is used for information gathering and certain vulnerabilities. 8 00:00:37,160 --> 00:00:40,400 Scanning detects the content management systems. 9 00:00:40,400 --> 00:00:43,850 That is CM's in the use of a targeted Web application. 10 00:00:43,850 --> 00:00:50,960 Then it finds the IP address web server cloud for information and the most important file that is Roubaud 11 00:00:50,960 --> 00:00:53,240 start now. 12 00:00:53,240 --> 00:00:57,890 Redhawk can also detect a WordPress and Drupal Joomla and Magento systems. 13 00:00:58,460 --> 00:01:05,270 Other scanning features of Redhawk include Who is Data-Collection GOP lookup by grabbing DNS, gluba 14 00:01:06,080 --> 00:01:08,450 port scanning and subdomain information. 15 00:01:08,450 --> 00:01:12,740 We are going to see all these information gathering in this video. 16 00:01:12,930 --> 00:01:19,220 So now, before installing or before running ad, the first task is to install Redhawk. 17 00:01:19,460 --> 00:01:24,650 So we'll head down to our core Linux, make sure you are logged into your account, then you have to 18 00:01:24,650 --> 00:01:31,230 go to your Firefox browser because we will be downloading Redhawk directly from GitHub. 19 00:01:31,880 --> 00:01:38,330 Yes, most of the applications are downloaded from GitHub only you won't get a Windows installer here. 20 00:01:38,900 --> 00:01:39,630 So wait. 21 00:01:39,920 --> 00:01:46,190 Your Firefox browser loads if you call Linux machine is working slok, you can also increase the ram 22 00:01:46,190 --> 00:01:48,140 of your machine by going to the settings. 23 00:01:48,950 --> 00:01:55,130 So once your browser is open, go to Google dot com and then type Redhawk GitHub. 24 00:02:00,920 --> 00:02:07,190 So the first thing it appears that is done in Shubra Redhawk, this is the tool which you're going to 25 00:02:07,190 --> 00:02:09,240 use, all the credit goes to that auto. 26 00:02:09,770 --> 00:02:15,410 So once the link opens, you have to copy the you are still not click anywhere. 27 00:02:15,410 --> 00:02:18,650 Just copy that you are and head back to terminal. 28 00:02:22,050 --> 00:02:29,610 Now, here, we need to install that ad hoc frameworks or type pseudo get clone, which is the command 29 00:02:29,610 --> 00:02:32,970 for installing GitHub packages, then paste the warrell. 30 00:02:33,990 --> 00:02:40,980 And after you are just an extension, don't get and then press enter, it will ask for your rude password, 31 00:02:40,980 --> 00:02:43,450 just enter the password and there you go. 32 00:02:43,470 --> 00:02:46,270 We are done with the installation of Redhawk. 33 00:02:46,830 --> 00:02:54,420 I'll just click and you will see a folder Redhawk we will navigate inside the folder by changing directly 34 00:02:54,420 --> 00:02:55,170 to Redhawk. 35 00:02:56,120 --> 00:03:02,850 You can just type Orendain press tab will automatically change directly and then ellis' that you can 36 00:03:02,850 --> 00:03:08,220 see a file are Haugaard BHP which is after readme empty. 37 00:03:08,640 --> 00:03:15,420 Since it is a file we will execute the BHB file by typing BHP and then the finding that is out there 38 00:03:16,440 --> 00:03:21,150 and then you can see that it will the redhawk inside the terminal. 39 00:03:21,690 --> 00:03:23,910 Now we have to enter the website. 40 00:03:23,910 --> 00:03:26,790 You want to scan for the demonstration purposes. 41 00:03:26,790 --> 00:03:32,100 We will always use certified hecho, which is the proper website provided by the council. 42 00:03:32,490 --> 00:03:36,830 So type certified hecho dot com and then presenta. 43 00:03:37,920 --> 00:03:43,620 Then we'll ask whether it is a STREET-PORTER steps, you can verify it by directly typing the website 44 00:03:43,800 --> 00:03:49,940 inside the Google and its GDP in case of a certified hacker. 45 00:03:49,980 --> 00:03:56,370 So you can see there is a lot of options available to find out information like GOP, Look-Up, Vinograd 46 00:03:56,370 --> 00:03:57,420 being DNS lookup. 47 00:03:57,630 --> 00:04:04,470 Now, all this information is also available through my legal force will see GOP look up the country. 48 00:04:04,480 --> 00:04:10,320 The United States latitude longitude, which is the most crucial information which wasn't shown by Ortego 49 00:04:11,160 --> 00:04:12,690 then will choose another one. 50 00:04:12,930 --> 00:04:19,700 I guess we will see, uh, the who is up, so let us see the holes look up. 51 00:04:19,710 --> 00:04:22,390 Now we have seen who is lookup using all that data. 52 00:04:22,410 --> 00:04:24,570 Let us see if it gets the same information. 53 00:04:24,870 --> 00:04:25,610 And there you go. 54 00:04:25,830 --> 00:04:31,280 We have the same information that is registered domain ID register who is and other. 55 00:04:31,710 --> 00:04:34,140 So you can carry a lot of information. 56 00:04:34,140 --> 00:04:35,670 I won't show each and every option. 57 00:04:35,910 --> 00:04:37,770 Just try and explore yourself. 58 00:04:38,070 --> 00:04:43,250 You will really get a lot of information and make sure you use this tool for legal purposes. 59 00:04:43,260 --> 00:04:44,850 I will see you in the next lecture.