Courses
OffensiveIntermediate

DNS Enumeration and Subdomain Discovery

Uncover hidden assets and map attack surfaces through DNS recon.

4 modules
13 lessons
10 practical tasks
DNS Enumeration and Subdomain Discovery course element

About This Course

Learn to extract intelligence from DNS infrastructure using active enumeration, passive gathering, and certificate transparency mining. Identify misconfigurations, discover subdomains, and build comprehensive target profiles for security assessments.

What You'll Learn

  • Analyze DNS record types and resolution processes for security assessment
  • Identify and exploit DNS misconfigurations including zone transfer vulnerabilities
  • Execute active DNS enumeration using zone transfers, brute force, and reverse lookups
  • Implement subdomain discovery through dictionary, permutation, and alteration methods
  • Mine certificate transparency logs for comprehensive subdomain intelligence
  • Leverage search engines and specialized databases for passive reconnaissance
  • Master command-line tools including dig, nslookup, and host for DNS analysis
  • Deploy automated frameworks like Sublist3r, Amass, and DNSrecon for efficient enumeration

Prerequisites

  • TCP/IP Protocol Suite Fundamentals
  • Basic networking concepts
  • Command-line proficiency

Course Curriculum