Skip to content
KitploitKITPLOIT
도구익스플로잇블로그
Log in
제출
도구익스플로잇블로그
제출

해킹, 침투 테스트 및 사이버 보안 도구를 당신의 보안 무기고에!

Kitploit은 해킹, 사이버 보안 및 침투 테스트 도구 디렉토리입니다. 최신 프로젝트 업데이트를 발견하여 취약점을 찾고, 시스템을 분석하고, 테스트를 자동화하고, 보안을 강화하세요.

··피드·문의·개인정보·© 2026 Kitploit

도구 디렉토리

카테고리

모든 카테고리 보기
Loading categories
inquisitor — recon-ng와 Maltego에서 영감을 받은 주관적인 조직 중심의 OSINT 발자국 수집 | Kitploit
도구/GitHubGitHub/penafieljlm/inquisitor
OSINT (Open Source Intelligence)ReconnaissanceDNS & Subdomain EnumerationInformation GatheringThreat IntelligenceEmail Harvesting
GitHubpenafieljlm/inquisitor

inquisitor

recon-ng와 Maltego에서 영감을 받은 주관적인 조직 중심의 OSINT 발자국 수집

저장소 보기
18057189년 전Kitploit 검토 완료

인기

모두 보기 →

커뮤니티에서 가장 많이 사용되는 도구를 찾아보세요.

모든 도구 탐색

도구 컬렉션을 둘러보세요

모든 도구 보기 →
공유

Inquisitor

공지

이 프로젝트는 부분적으로만 완료되었으며, 아래 블로그 게시물에 설명된 많은 기능을 아직 구현하지 못했습니다: https://penafieljlm.com/2017/07/14/inquisitor/.

Inquisitor는 오픈소스 인텔리전스(OSINT) 소스를 활용하여 회사 및 조직에 대한 정보를 수집하는 간단한 도구입니다. Maltego와 recon-ng의 작동 방식에서 크게 영감을 받았으며, 이 도구는 해당 도구들의 일부 기능을 재구현하면서 에셋 유형 위에 의견 기반 의미론(opinion-based semantics) 계층을 추가하여 사용하기 쉬운 워크플로를 만듭니다.

Inquisitor의 주요 기능은 다음과 같습니다:

  1. 에셋의 소유권 레이블을 연쇄적으로 적용할 수 있는 기능 (예: 등록자 이름이 대상 조직에 속하는 것으로 알려진 경우, 해당 이름으로 등록된 호스트와 네트워크는 대상 조직에 속하는 것으로 표시됨)
  2. Google 및 Shodan과 같은 오픈 소스를 쿼리하여 에셋을 잠재적으로 관련된 다른 에셋으로 변환하는 기능
  3. 확대/축소 가능한 팩 레이아웃(pack layout)을 통해 해당 에셋의 관계를 시각화하는 기능

개념

Inquisitor의 전체 개념은 대상 조직에 대해 이미 알려진 정보를 기반으로 오픈 소스에서 정보를 추출하는 아이디어에 기반합니다. Inquisitor의 맥락에서 이를 "트랜스폼(transforms)"이라고 합니다. 또한 whois 및 인터넷 레지스트리와 같은 오픈 소스에서 검색 가능한 메타데이터를 기반으로 알려진 에셋에서 관련 정보를 즉시 검색할 수도 있습니다.

자세한 개념은 이 블로그 문서에서 설명합니다: https://penafieljlm.com/2017/07/14/inquisitor/

설치

Inquisitor를 설치하려면 리포지토리를 클론하고, 해당 디렉토리로 이동한 후 설치 스크립트를 실행하기만 하면 됩니다.``` pip install Cython click git clone [email protected]:penafieljlm/inquisitor.git cd inquisitor python setup.py install

## 사용법

Inquisitor는 `scan`, `status`, `classify`, `dump`, `visualize`의 다섯 가지 기본 명령어를 제공합니다.```
usage: inq [-h] {scan,status,classify,dump,visualize} ...

optional arguments:
  -h, --help            show this help message and exit

command:
  {scan,status,classify,dump,visualize}
                        The action to perform.
    scan                Search OSINT sources for intelligence based on known
                        assets belonging to the target.
    status              Prints out the current status of the specified
                        intelligence database.
    classify            Classifies an existing asset as either belonging or
                        not belonging to the target. Adds a new asset with the
                        specified classification if none is present.
    dump                Dumps the contents of the database into a JSON file
    visualize           Create a D3.js visualization based on the contents of
                        the specified intelligence database.

스캔

스캔 모드에서 이 도구는 인텔리전스 데이터베이스(Intelligence Database)에 있는 모든 자산에 대해 사용 가능한 모든 transforms를 실행합니다. 아래에 표시된 다양한 OSINT 소스에 대한 API 키를 생성하고 스크립트에 제공해야 합니다. 그렇지 않으면 해당 소스를 사용하는 transforms가 건너뛰어집니다. 또한, 먼저 classify 명령어를 사용하여 알려진 소유 대상 자산으로 인텔리전스 데이터베이스를 시드(seed)해야 합니다. 데이터베이스에 소유한 자산이 없으면 변환할 대상이 없기 때문입니다.``` usage: inq scan [-h] [--google-dev-key GOOGLE_DEV_KEY] [--google-cse-id GOOGLE_CSE_ID] [--google-limit GOOGLE_LIMIT] [--shodan-api-key SHODAN_API_KEY] [--shodan-limit SHODAN_LIMIT] DATABASE

positional arguments: DATABASE The path to the intelligence database to use. If specified file does not exist, a new one will be created.

optional arguments: -h, --help show this help message and exit --google-dev-key GOOGLE_DEV_KEY Specifies the developer key to use to query Google Custom Search. Visit the Google APIs Console (http://code.google.com/apis/console) to get an API key. If notspecified, the script will simply skip asset transforms that involve Google Search. --google-cse-id GOOGLE_CSE_ID Specifies the custom search engine to query. Visit the Google Custom Search Console (https://cse.google.com/cse/all) to create your own Google Custom Search Engine. If not specified, the script will simply skip asset transforms that involve Google Search. --google-limit GOOGLE_LIMIT The number of pages to limit Google Search to. This is to avoid exhausting your daily quota. --shodan-api-key SHODAN_API_KEY Specifies the API key to use to query Shodan. Log into your Shodan account (https://www.shodan.io/) and look at the top right corner of the page in order to view your API key. If not specified, the script will simply skip asset transforms that involve Shodan. --shodan-limit SHODAN_LIMIT The number of pages to limit Shodan Search to. This is to avoid exhausting your daily quota.

### 상태

상태 모드에서는 도구가 스캔 데이터베이스의 상태에 대한 간략한 요약을 출력합니다.```
usage: inq status [-h] [-s] DATABASE

positional arguments:
  DATABASE      The path to the intelligence database to use. If specified
                file does not exist, a new one will be created.

optional arguments:
  -h, --help    show this help message and exit
  -s, --strong  Indicates if the status will be based on the strong ownership
                classification.

분류

분류 모드에서는 인텔리전스 데이터베이스에 수동으로 자산을 추가하고 이미 존재하는 자산을 재분류할 수 있습니다. 이 명령을 사용하여 알려진 소유 대상 자산으로 인텔리전스 데이터베이스를 시드해야 합니다.``` usage: inq classify [-h] [-ar REGISTRANT [REGISTRANT ...]] [-ur REGISTRANT [REGISTRANT ...]] [-rr REGISTRANT [REGISTRANT ...]] [-ab BLOCK [BLOCK ...]] [-ub BLOCK [BLOCK ...]] [-rb BLOCK [BLOCK ...]] [-ah HOST [HOST ...]] [-uh HOST [HOST ...]] [-rh HOST [HOST ...]] [-ae EMAIL [EMAIL ...]] [-ue EMAIL [EMAIL ...]] [-re EMAIL [EMAIL ...]] [-al LINKEDIN [LINKEDIN ...]] [-ul LINKEDIN [LINKEDIN ...]] [-rl LINKEDIN [LINKEDIN ...]] DATABASE

positional arguments: DATABASE The path to the intelligence database to use. If specified file does not exist, a new one will be created.

도구 다운로드