Although Kali contains multiple tools to facilitate reconnaissance, many of the tools contain features that overlap, and importing data from one tool into another is usually a complex manual process. Most testers select a subset of tools and invoke them with a script.
Comprehensive tools focused on reconnaissance were originally command-line tools with a defined set of functions; one of the most commonly used was Deep Magic Information Gathering Tool (DMitry). DMitry could perform whois lookups, retrieve netcraft.com information, search for sub-domains and email addresses, and perform TCP scans. Unfortunately, it wasn't extensible beyond these functions.
The following screenshot provides details on running DMitry on www.cyberhia.com:
dmitry -winsepo out.txt www.cyberhia.com
![](https://static.packt-cdn.com/products/9781789340563/graphics/assets/e1c51269-74d7-4cc4-992f-4d87d44a6213.png)
Recent advances have created comprehensive framework...