Automation of Recon Process for Ethical Hackers
Vijaya Saraswathi R, Iftequar Sk Ahmed, Sriveda M Reddy, S.P. Akshay, Vrushik M Reddy, Sanjana M Reddy · 2022 International Conference for Advancement in Technology (ICONAT) · 2022
The need for Recon automation is rapidly increasing as ethical hackers are being lazy in performing every little check manually. So as to make the Recon process (Info gathering phase) of penetration testing easy, fast and accurate, a Recon framework with highly sophisticated tools written in languages like bash, go and python needs to be developed and made open source to everyone. Manually doing this task can be very intimidating since a lot of time and efforts are needed in accomplishing this task. So, automation of this task can be very handy to the penetration testers and saves a lot of time as they can focus on other tasks of the further tasks of a penetration test. So, our project is an automation to the tedious task of information gathering. This Recon Framework just takes the main top-level domain of the organization as the input, does the recon and stores the result in an organized manner in the corresponding directories. The output of this framework is ready to be used to perform further security tests as the results are generated in a neat greppable format and can be passed to other tools to further filter the data according to the ethical hacker's wish and need. In addition to that, the results are displayed in a graphical interface in the form of a web application. So, all a user needs to do is enter the top-level domain name of the organization on which he/she wants to perform penetration testing.