[Full-disclosure] DNS mining ?

Brian Dessent brian at dessent.net
Mon Apr 9 21:14:50 BST 2007


Aaron Gray wrote:

> Is there not a tool that runs on *nux that does this ?

I doubt it.  If such a tool existed, it would just be querying some
third party service like domaintools.com, not doing anything itself.  In
order to do this lookup yourself requires access to the TLD zone files,
which requires signing a contract with Verisign (for .net & .com) or PIR
(for .org) that says you won't use it to spam or whatever.

http://www.verisign.com/information-services/naming-services/com-net-registry/page_001052.html
http://www.pir.org/RegistrarResources/ZoneFileAccess.aspx

Without that you'd have to bruteforce the TLD nameservers with all
possible domain names, and that is obviously impractical (and stupid.)

Brian




Full-Disclosure is hosted and sponsored by Secunia.