Tools & Utility

Fierce

DNS reconnaissance tool for discovering subdomains, IP ranges, and network information of a target domain.

#dns#reconnaissance#subdomains#perl

Fierce: DNS Reconnaissance Tool

Fierce is a DNS reconnaissance tool designed for penetration testers, ethical hackers, and security researchers to enumerate and discover subdomains, IP ranges, and network information.

Why Use Fierce?

  • 🔍 Find Subdomains through DNS enumeration
  • 🔍 Locate Internal IP Ranges
  • 🔍 Check Wildcard DNS Records
  • 🔍 Perform DNS Brute-Forcing
  • 🔍 Detect Zone Transfers

Installation

bash
sudo apt install fierce

Usage

bash
# Basic scan
fierce --domain example.com

Find Subdomains

fierce --domain example.com --subdomains

Custom Wordlist

fierce --domain example.com --wordlist subdomains.txt

Specific Name Server

fierce --domain example.com --dns-servers ns1.example.com

Zone Transfer Test

fierce --domain example.com --axfr

Discover IP Ranges

fierce --domain example.com --range

Common Workflow

1. Start with Fierce to gather subdomains and IP ranges 2. Use nmap to scan discovered IPs for open ports 3. Utilize ffuf or gobuster for web directory enumeration 4. Try dnsenum for alternative DNS techniques 5. Conduct vulnerability assessments