certgraph

v 20220513 Updated: 1 year, 6 months ago

An open source intelligence tool to crawl the graph of certificate Alternate Names

CertGraph crawls SSL certificates creating a directed graph where each domain is a node and the certificate alternative names for that domain's certificate are the edges to other domain nodes. New domains are printed as they are found. In Detailed mode upon completion the Graph's adjacency list is printed. Crawling defaults to collecting certificate by connecting over TCP, however there are multiple drivers that can search Certificate Transparency logs. This tool was designed to be used for host name enumeration via SSL certificates, but it can also show you a "chain" of trust between domains and the certificates that re-used between them.

https://github.com/lanrat/certgraph

To install certgraph, paste this in macOS terminal after installing MacPorts

sudo port install certgraph

Add to my watchlist

Installations 0
Requested Installations 0