MaHaLo Burp Suite extension to Passive Recon Enumeration Domain with public services.
-
Configure Jython in Burp Suite
-
Load plugin from extender option in Burp Suite, download the MaHaLo.py
- Subdomain Enumeration
- Securitytrails API
- Certificate domain Search in CRT.sh
- Hacker Target
- Verify domains online
- If you want to collaborate pull request, or Create Issue.
- Implement context menus.
- Implement Shodan subdomain enumeration.
- Implement Censys subdomain enumeration.
- Comment code to describe functionality.
- Open domain in Browser.
- Send domain from MaHaLo to Site Map.
- Implement Dorks.
- Implment whois retrieve information.
- Implement waf detections.
- Implement API key Tab for remove Harcoded apis.
- Implement selection of services to be used for enumeration subdomains.
- Implement save api keys credentials them in a config file.