Quantcast
Channel: KitPloit - PenTest Tools!
Viewing all articles
Browse latest Browse all 5816

Metabigor - Command Line Search Engines Without Any API Key

$
0
0


Command line Search Engine without any API key.

What is Metabigor?
Metabigor allows you do query from command line to awesome Search Engines (like Shodan, Censys, Fofa, etc) without any API key.

But Why Metabigor?
  • Don't use your API key so you don't have to worry about litmit of API quotation.*
  • Do query from command line without Premium account.*
  • Get more result without Premium account. *
  • But I have an Premium account why do I need this shit?
    • Again Metabigor will not lose your API quotation.
    • Your query will optimized so you gonna get more result than using it by hand or API key.
    • Never get duplicate result.*

How it works?
Metabigor gonna use your cookie or not to simulate search from browser and optimize the query to get more result.

Search Engine currently supported
  • Shodan.
  • Censys.
  • Fofa Pro.

Installation
git clone https://github.com/j3ssie/Metabigor
cd Metabigor
pip3 install -r requirements.txt

Demo


How to use

Basic Usage
./metabigor.py -s <source> -q '<your_query>' [options]
Check out the Advanced Usage to explore some awesome options

Example commands
Note: Fill your credentials or your sessions on config.conf if you wan't to get more results.
./metabigor.py -s fofa -q 'title="Dashboard - Confluence" && body=".org"' 
./metabigor.py -s fofa -q 'title="Dashboard - Confluence" && body=".org"' -b --disable_pages
./metabigor.py -s shodan -q 'port:"3389" os:"Windows"' --debug

Options
[*] Setup session
===============
Do command below or direct modify config.conf file
./metabigor.py -s shodan --cookies=<content of polito cookie>
./metabigor.py -s censys --cookies=<content of auth_tkt cookie>
./metabigor.py -s fofa --cookies=<content of _fofapro_ars_session cookie>


[*] Basic Usage
===============
./metabigor.py -s <source> -q '<your_query>' [options]

[*] More Options
===============
-d OUTDIR, --outdir OUTDIR
Directory output
-o OUTPUT, --output OUTPUT
Output file name
--raw RAW Directory to store raw query
--proxy PROXY Proxy for doing request to search engine e.g:
http://127.0.0.1:8080
-b Auto brute force the country code
--disable_pages Don't loop though the pages
--store_content Store the raw HTML souce or not
--hh Print this message
--debug Print debug output


[*] Example commands
===============
./metabigor.py -s fofa -q 'title="Dashboard - Confluence" && body=".org"' -b
./metabigor.py -s fofa -q 'title="Dashboard - Confluence" && body=".org"' -b --disable_pages

./metabigor.py -s shodan -q 'port:"3389" os:"Windows"' --debug
./metabigor.py -s shodan -Q list_of_query.txt --debug -o rdp.txt

./metabigor.py -s censys -q '(scada) AND protocols: "502/modbus"' -o something --debug --proxy socks4://127.0.0.1:9050

TODO
  • Predine query to do specific task like subdomain scan, portscan
  • Adding more search engine.

Credits
Logo from flaticon by Vitaly Gorbachev and ascii logo converted by picascii

Contact
@j3ssiejjj



Viewing all articles
Browse latest Browse all 5816

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>