View Issue Details
ID | Project | Category | View Status | Date Submitted | Last Update |
---|---|---|---|---|---|
0004348 | Kali Linux | Queued Tool Addition | public | 2017-11-12 22:15 | 2020-11-11 23:49 |
Reporter | lanrat | Assigned To | sbrun | ||
Priority | normal | Severity | minor | Reproducibility | N/A |
Status | resolved | Resolution | fixed | ||
Fixed in Version | 2020.4 | ||||
Summary | 0004348: CertGraph | ||||
Description | I am the author of CertGraph, a tool to crawl the graph of certificate Alternate Names, over both SSL connections as well as Certificate Transparency. CertGraph crawls SSL certificates creating a directed graph where each domain is a node and the certificate alternative names for that domain's certificate are the edges to other domain nodes. New domains are printed as they are found. In Detailed mode upon completion the Graph's adjacency list is printed. This tool was designed to be used for host name enumeration via SSL certificates, but it can also show you a "chain" of trust between domains and the certificates that re-used between them. UI/Demo: https://lanrat.github.io/certgraph/ | ||||
To help speed up the process of evaluating the tool, please make sure to include the following information (the more information you include, the more beneficial it will for us):
|
|
[Name] [Version] [Homepage] [Download] [Author] [Licence] [Description] CertGraph crawls SSL certificates creating a directed graph where each domain is a node and the certificate alternative names for that domain's certificate are the edges to other domain nodes. New domains are printed as they are found. In Detailed mode upon completion the Graph's adjacency list is printed. Crawling defaults to collectng certificate by connecting over TCP, however there are multiple drivers that can search Certificate Transparency logs. This tool was designed to be used for host name enumeration via SSL certificates, but it can also show you a "chain" of trust between domains and the certificates that re-used between them. [Dependencies] [Similar tools] Neither of these tools crawl and display the graph of certificate alternative names, which is the main advantage of CertGraph. [How to install] [How to use] To create a visual graph add the --json flag and provide the data to the github site at https://lanrat.github.io/certgraph or the single page html site inside the docs folder. |
|
@kali-team, please could this be packaged up. |
|
certgraph is now in kali-rolling |
|
Date Modified | Username | Field | Change |
---|---|---|---|
2017-11-12 22:15 | lanrat | New Issue | |
2018-01-29 14:45 | g0tmi1k | Note Added: 0008364 | |
2018-01-29 22:48 | lanrat | Note Added: 0008556 | |
2018-02-21 09:35 | g0tmi1k | Product Version | 2017.2 => |
2020-01-06 13:25 | g0tmi1k | Summary | CertGraph inclusion in Kali => CertGraph |
2020-02-10 13:43 | g0tmi1k | Note Added: 0012064 | |
2020-02-10 13:43 | g0tmi1k | Category | New Tool Requests => Queued Tool Addition |
2020-02-13 14:23 | g0tmi1k | Status | new => acknowledged |
2020-06-17 14:58 | g0tmi1k | Severity | feature => minor |
2020-08-03 18:03 | rhertzog | Assigned To | => sbrun |
2020-08-03 18:03 | rhertzog | Status | acknowledged => assigned |
2020-08-03 18:05 | rhertzog | Status | assigned => resolved |
2020-08-03 18:05 | rhertzog | Resolution | open => fixed |
2020-08-03 18:05 | rhertzog | Note Added: 0013171 | |
2020-11-11 23:49 | g0tmi1k | Fixed in Version | => 2020.4 |