theHarvester is a very simple to use, yet powerful and effective tool designed to be used in the early stages of a penetration test or red team engagement. Use it for open source intelligence (OSINT) gathering to help determine a company's external threat landscape on the internet. The tool gathers emails, names, subdomains, IPs and URLs using multiple public data sources.
Features
- Microsoft search engine, through the API
- Uses data from Rapid7's Project Sonar
- Censys search engine, will use certificates searches to enumerate subdomains and gather emails
- GitHub code search engine
- Online vulnerability scanners and network intelligence to help organizations
- Take screenshots of subdomains that were found
