Domain Name System (DNS)
Port: 53
1) Nmap scan
nmap --script dns-brute,dns-nsid,dns-recursion,dns-zone-transfer -p 53 IP2) AD Domain enumeration via DNS
nmap -p 53 --script "dns-nsid,dns-srv-enum" IP3) Zone Transfer
dig axfr domain.local @IP4) Retrieve all records
dig ANY domain.local @IP5) Query any records
nslookup
> server DNS_IP
> set type=any
> domain.local6) Reverse lookup
Last updated