Enumeration as a Service (eaas.py) in a script that queries the DNS server of a particular domain looking for indications that the domain may be utilizing SaaS offerings. This analysis is performed on TXT, CNAME, A and MX Records. Query results, as well as highlighted results of interest are returned to the user.
./eaas.py <domain.com>
- Add known IP address ranges for lookups for SPF records (currently reliant on DNS)
- Checking for dependencies and prompting for install if not available on current machine
- Add "Verbose Mode" to allow user to decide whether or they want detailed responses
- Summary of findings at the end of the query for easier viewing
- Add any additional SaaS offerings which may have been overlooked (There are likely many)
google-site-verification
TXT Record [Documentation]google.com
in SPF Recordgoogle.com
in MX Recordgooglemail.com
in MX Record- A records which have the term
GOOGLE
in the ASN Provider - CNAME records that point to
lync.com
MS
TXT record Documentation- CNAME Record pointing to
outlook
protection.outlook.com
in SPF recordprotection.outlook.com
in SPF Record- A records which have the term
MICROSOFT
in the ASN Provider
docusign
TXT Record Documentation
facebook-domain-verification
TXT Record Documentation
adobe-sign-verification
TXT Record Documentationadobe-idp-site-verification
TXT Record Documentation
atlassian-domain-verification
TXT Record Documentation
yandex-verification
TXT Record
_amazonses
TXT Record Documentation
logmein-verification-code
TXT Record Documentation
citrix-verification-code
TXT Record
pardot
TXT Recordsalesforce.com
in SPF Record
zuora
TXT Record
- A records which have
AirWatch LLC
in ASN Provider - CNAME records that point to
awmdm.com
pphosted.com
in SPF Recordpphosted
in MX Record
service-now.com
in SPF Record
mailsenders.netsuite.com
in SPF Record
mktomail.com
in SPF Record
spf.mandrillapp.com
in SPF Recordmcsv.net
in SPF Record
zendesk.com
in SPF Record
freshdesk.com
in SPF Record
zoho.com
in MX Record