Skip to content
KitploitKITPLOIT
أدواتعمليات الاستغلالالمدونة
Log in
إرسال
أدواتعمليات الاستغلالالمدونة
إرسال

أدوات الاختراق واختبار الاختراق والأمن السيبراني لترسانتك الأمنية!

Kitploit هو دليل لأدوات الاختراق والأمن السيبراني واختبار الاختراق. اكتشف آخر تحديثات المشاريع للعثور على الثغرات وتحليل الأنظمة وأتمتة الاختبارات وتعزيز أمنك.

الخلاصاتاتصالالخصوصية© 2026 Kitploit

دليل الأدوات

الفئات

عرض جميع الفئات
Loading categories
inquisitor — بصمة استخباراتية مفتوحة المصدر موجهة نحو المنظمة وذات رأي، مستوحاة من recon-ng وMaltego. | Kitploit
أدوات/GitHubGitHub/penafieljlm/inquisitor
الاستخبارات مفتوحة المصدر (OSINT)الاستطلاعتعداد DNS والنطاقات الفرعيةجمع المعلوماتاستخبارات التهديداتجمع البريد الإلكتروني
GitHubpenafieljlm/inquisitor

inquisitor

بصمة استخباراتية مفتوحة المصدر موجهة نحو المنظمة وذات رأي، مستوحاة من recon-ng وMaltego.

عرض المستودع
1805718منذ 9 سنواتتمت المراجعة من قبل Kitploit

الأكثر شعبية

عرض الكل →

اكتشف الأدوات الأكثر استخدامًا من قبل مجتمعنا.

استكشف جميع الأدوات

تصفح مجموعتنا من الأدوات

عرض جميع الأدوات →
مشاركة

Inquisitor

إشعار

هذا المشروع مكتمل جزئيًا فقط ولم أقم بعد بتنفيذ العديد من الميزات الموصوفة في منشور المدونة التالي الذي كتبته: https://penafieljlm.com/2017/07/14/inquisitor/.

Inquisitor هي أداة بسيطة لجمع المعلومات عن الشركات والمؤسسات باستخدام مصادر الاستخبارات مفتوحة المصدر (OSINT). وهي مستوحاة بشكل كبير من طريقة عمل Maltego و recon-ng، وتقوم الأداة إلى حد كبير بإعادة تنفيذ بعض ميزات تلك الأدوات ولكنها تضيف طبقة إضافية من الدلالات القائمة على الرأي فوق أنواع الأصول لإنشاء سير عمل سهل الاستخدام.

الميزات الرئيسية لـ Inquisitor تشمل:

  1. القدرة على تتابع تصنيف ملكية الأصل (على سبيل المثال: إذا كان اسم Registrant Name معروفًا بأنه ينتمي إلى المؤسسة المستهدفة، فسيتم وضع علامة على المضيفين والشبكات المسجلة بهذا الاسم على أنها تنتمي إلى المؤسسة المستهدفة)
  2. القدرة على تحويل الأصول إلى أصول أخرى يحتمل أن تكون ذات صلة من خلال الاستعلام عن المصادر المفتوحة مثل Google و Shodan
  3. القدرة على تصور علاقات تلك الأصول من خلال تخطيط الحزمة القابل للتكبير

المفهوم

المفهوم الكامل لـ Inquisitor يدور حول فكرة استخراج المعلومات من المصادر المفتوحة بناءً على ما هو معروف بالفعل عن المؤسسة المستهدفة. في سياق Inquisitor تسمى هذه "التحويلات (transforms)". قد يتم أيضًا استرداد المعلومات ذات الصلة فورًا من أصل معروف بناءً على البيانات الوصفية القابلة للاسترداد أيضًا من المصادر المفتوحة مثل whois وسجلات الإنترنت.

يتم مناقشة المفاهيم بمزيد من التفصيل في مقالة المدونة هذه: https://penafieljlm.com/2017/07/14/inquisitor/

التثبيت

لتثبيت Inquisitor، ما عليك سوى استنساخ المستودع، والدخول إليه، وتنفيذ برنامج التثبيت.``` pip install Cython click git clone [email protected]:penafieljlm/inquisitor.git cd inquisitor python setup.py install

## الاستخدام

يحتوي Inquisitor على خمسة أوامر أساسية تشمل `scan` و`status` و`classify` و`dump` و`visualize`.```
usage: inq [-h] {scan,status,classify,dump,visualize} ...

optional arguments:
  -h, --help            show this help message and exit

command:
  {scan,status,classify,dump,visualize}
                        The action to perform.
    scan                Search OSINT sources for intelligence based on known
                        assets belonging to the target.
    status              Prints out the current status of the specified
                        intelligence database.
    classify            Classifies an existing asset as either belonging or
                        not belonging to the target. Adds a new asset with the
                        specified classification if none is present.
    dump                Dumps the contents of the database into a JSON file
    visualize           Create a D3.js visualization based on the contents of
                        the specified intelligence database.

مسح

في وضع المسح، تقوم الأداة بتشغيل جميع التحويلات المتاحة لجميع الأصول الموجودة في قاعدة بيانات الاستخبارات الخاصة بك. تأكد من إنشاء مفاتيح API لمصادر OSINT المختلفة الموضحة أدناه وتوفيرها للبرنامج النصي حتى لا يتم تخطي التحويلات التي تستخدم تلك المصادر. أيضًا، تأكد من تغذية قاعدة بيانات الاستخبارات الخاصة بك ببعض الأصول المستهدفة المملوكة المعروفة باستخدام الأمر classify أولاً، لأنه إذا كانت قاعدة البيانات لا تحتوي على أي أصول مملوكة، فلن يكون هناك شيء لتحويله.``` usage: inq scan [-h] [--google-dev-key GOOGLE_DEV_KEY] [--google-cse-id GOOGLE_CSE_ID] [--google-limit GOOGLE_LIMIT] [--shodan-api-key SHODAN_API_KEY] [--shodan-limit SHODAN_LIMIT] DATABASE

positional arguments: DATABASE The path to the intelligence database to use. If specified file does not exist, a new one will be created.

optional arguments: -h, --help show this help message and exit --google-dev-key GOOGLE_DEV_KEY Specifies the developer key to use to query Google Custom Search. Visit the Google APIs Console (http://code.google.com/apis/console) to get an API key. If notspecified, the script will simply skip asset transforms that involve Google Search. --google-cse-id GOOGLE_CSE_ID Specifies the custom search engine to query. Visit the Google Custom Search Console (https://cse.google.com/cse/all) to create your own Google Custom Search Engine. If not specified, the script will simply skip asset transforms that involve Google Search. --google-limit GOOGLE_LIMIT The number of pages to limit Google Search to. This is to avoid exhausting your daily quota. --shodan-api-key SHODAN_API_KEY Specifies the API key to use to query Shodan. Log into your Shodan account (https://www.shodan.io/) and look at the top right corner of the page in order to view your API key. If not specified, the script will simply skip asset transforms that involve Shodan. --shodan-limit SHODAN_LIMIT The number of pages to limit Shodan Search to. This is to avoid exhausting your daily quota.

### الحالة

في وضع الحالة، تقوم الأداة بطباعة ملخص سريع لحالة قاعدة بيانات المسح الخاصة بك.```
usage: inq status [-h] [-s] DATABASE

positional arguments:
  DATABASE      The path to the intelligence database to use. If specified
                file does not exist, a new one will be created.

optional arguments:
  -h, --help    show this help message and exit
  -s, --strong  Indicates if the status will be based on the strong ownership
                classification.

تصنيف

في وضع التصنيف، ستتمكن من إضافة الأصول يدويًا وإعادة تصنيف الأصول الموجودة بالفعل في قاعدة بيانات الاستخبارات. يجب استخدام هذا الأمر لتزويد قاعدة بيانات الاستخبارات الخاصة بك بأصول الهدف المملوكة والمعروفة.``` usage: inq classify [-h] [-ar REGISTRANT [REGISTRANT ...]] [-ur REGISTRANT [REGISTRANT ...]] [-rr REGISTRANT [REGISTRANT ...]] [-ab BLOCK [BLOCK ...]] [-ub BLOCK [BLOCK ...]] [-rb BLOCK [BLOCK ...]] [-ah HOST [HOST ...]] [-uh HOST [HOST ...]] [-rh HOST [HOST ...]] [-ae EMAIL [EMAIL ...]] [-ue EMAIL [EMAIL ...]] [-re EMAIL [EMAIL ...]] [-al LINKEDIN [LINKEDIN ...]] [-ul LINKEDIN [LINKEDIN ...]] [-rl LINKEDIN [LINKEDIN ...]] DATABASE

positional arguments: DATABASE The path to the intelligence database to use. If specified file does not exist, a new one will be created.

تنزيل الأداة