diff --git a/lazyrecon.sh b/lazyrecon.sh index 3d9c4db..a96240e 100755 --- a/lazyrecon.sh +++ b/lazyrecon.sh @@ -1,5 +1,7 @@ #!/bin/bash +tools_dir="$HOME/tools" + discovery(){ hostalive $1 screenshot $1 @@ -35,12 +37,12 @@ hostalive(){ screenshot(){ echo "taking a screenshot of $line" - python ~/tools/webscreenshot/webscreenshot.py -o ./$1/$foldername/screenshots/ -i ./$1/$foldername/responsive-$(date +"%Y-%m-%d").txt --timeout=10 -m + python2 $tools_dir/webscreenshot/webscreenshot.py -o ./$1/$foldername/screenshots/ -i ./$1/$foldername/responsive-$(date +"%Y-%m-%d").txt --timeout=10 -m } recon(){ - python ~/tools/Sublist3r/sublist3r.py -d $1 -t 10 -v -o ./$1/$foldername/$1.txt + python2 $tools_dir/Sublist3r/sublist3r.py -d $1 -t 10 -v -o ./$1/$foldername/$1.txt curl -s https://certspotter.com/api/v0/certs\?domain\=$1 | jq '.[].dns_names[]' | sed 's/\"//g' | sed 's/\*\.//g' | sort -u | grep $1 >> ./$1/$foldername/$1.txt discovery $1 cat ./$1/$foldername/$1.txt | sort -u > ./$1/$foldername/$1.txt @@ -48,7 +50,7 @@ recon(){ } dirsearcher(){ - python3 ~/tools/dirsearch/dirsearch.py -e php,asp,aspx,jsp,html,zip,jar,sql -u $line + python3 $tools_dir/dirsearch/dirsearch.py -e php,asp,aspx,jsp,html,zip,jar,sql -u $line } @@ -68,7 +70,7 @@ report(){ echo "
" >> ./$1/$foldername/reports/$line.html echo "

Dirsearch

" >> ./$1/$foldername/reports/$line.html echo "
" >> ./$1/$foldername/reports/$line.html
-  cat ~/tools/dirsearch/reports/$line/* | while read rline; do echo "$rline" >> ./$1/$foldername/reports/$line.html
+  cat $tools_dir/dirsearch/reports/$line/* | while read rline; do echo "$rline" >> ./$1/$foldername/reports/$line.html
   done
   echo "
" >> ./$1/$foldername/reports/$line.html