Email Harvesting
MITRE ATT&CK™ Account Discovery - Technique T1087
Theory
Practice
# Recursively get emails on a website with wget
wget -r -O crawl.txt https://target.url
grep -haio "\b[a-z0-9.-]\+@[a-z0-9.-]\+\.[a-z]\{2,4\}\+\b" crawl.txt
# Get emails one a specific page with curl
curl -kfsSL https://target.url | grep -hio "\b[a-z0-9.-]\+@[a-z0-9.-]\+\.[a-z]\{2,4\}\+\b"#Search using bing
theHarvester -d target.url -b bingwhois target.urlLast updated