Tools & Utility
Fierce
DNS reconnaissance tool for discovering subdomains, IP ranges, and network information of a target domain.
#dns#reconnaissance#subdomains#perl
Fierce: DNS Reconnaissance Tool
Fierce is a DNS reconnaissance tool designed for penetration testers, ethical hackers, and security researchers to enumerate and discover subdomains, IP ranges, and network information.
Why Use Fierce?
- 🔍 Find Subdomains through DNS enumeration
- 🔍 Locate Internal IP Ranges
- 🔍 Check Wildcard DNS Records
- 🔍 Perform DNS Brute-Forcing
- 🔍 Detect Zone Transfers
Installation
bash
sudo apt install fierceUsage
bash
# Basic scan
fierce --domain example.com
Find Subdomains
fierce --domain example.com --subdomains
Custom Wordlist
fierce --domain example.com --wordlist subdomains.txt
Specific Name Server
fierce --domain example.com --dns-servers ns1.example.com
Zone Transfer Test
fierce --domain example.com --axfr
Discover IP Ranges
fierce --domain example.com --rangeCommon Workflow
1. Start with Fierce to gather subdomains and IP ranges 2. Use nmap to scan discovered IPs for open ports 3. Utilize ffuf or gobuster for web directory enumeration 4. Try dnsenum for alternative DNS techniques 5. Conduct vulnerability assessments