Sign inSign up

korteke/opensquat

By korteke

•Updated over 3 years ago

openSquat is an opensource Intelligence (OSINT) security to identify Phishing sites

Image
0

316

korteke/opensquat repository overview

This is a dockerized version of openSquat⁠.
Github repo: https://github.com/korteke/opensquat-docker⁠

⁠Basic usage

Clone this repo.

git clone https://github.com/korteke/opensquat-docker.git

Modify the config/keywords.txt file according to your needs. Mount config -directory to container.

docker run --rm -v "$(pwd)"/config:/app/config korteke/opensquat -k /app/config/keywords.txt

⁠Usage exmaples from openSquat

    # for all the options
    docker run --rm -v "$(pwd)"/config:/app/config korteke/opensquat -h
    
    # With DNS validation (quad9)
    docker run --rm -v "$(pwd)"/config:/app/config korteke/opensquat -k /app/config/keywords.txt --dns
    
    # Subdomain search
    docker run --rm -v "$(pwd)"/config:/app/config korteke/opensquat -k /app/config/keywords.txt --subdomains
    
    # Check for domains with open ports 80/443
    docker run --rm -v "$(pwd)"/config:/app/config korteke/opensquat -k /app/config/keywords.txt --portcheck

    # With Phishing validation (Phishing Database)
    docker run --rm -v "$(pwd)"/config:/app/config korteke/opensquat -k /app/config/keywords.txt --phishing /app/config/phish_results.txt

    # Save output as JSON
    docker run --rm -v "$(pwd)"/config:/app/config korteke/opensquat -k /app/config/keywords.txt -o /app/config/output.json -t json

    # Save output as CSV
    docker run --rm -v "$(pwd)"/config:/app/config korteke/opensquat -k /app/config/keywords.txt -o /app/config/output.csv -t csv

    # Conduct a certificate transparency (ct) hunt
    docker run --rm -v "$(pwd)"/config:/app/config korteke/opensquat -k /app/config/keywords.txt --ct

    # Period search - registrations from the last month (default: day)
    docker run --rm -v "$(pwd)"/config:/app/config korteke/opensquat -k /app/config/keywords.txt -p month

    # Tweak confidence level. The lower values bring more false positives
    # (0: very high, 1: high (default), 2: medium, 3: low, 4: very low
    docker run --rm -v "$(pwd)"/config:/app/config korteke/opensquat -k /app/config/keywords.txt -c 2

    # All validations options
    docker run --rm -v "$(pwd)"/config:/app/config korteke/opensquat -k /app/config/keywords.txt --phishing /app/config/phishing_domains.txt --dns --ct --subdomains --portcheck

Tag summary

Content type

Image

Digest

sha256:ac9309dde…

Size

215 MB

Last updated

over 3 years ago

docker pull korteke/opensquat