Domain name as a source of information.
Telegram channel: https://t.me/protectioninformation
Telegram Group: https://t.me/informationprotection1
Website: https://legascom.ru
Email: online@legascom.ru
Another technical digression from the topic of social engineering, nevertheless related to it. By having the name of the corporate website, an attacker can collect a number of information of interest to him using a publicly accessible network resource. Let's go to the page http://www.ripn.net/whois . In the query string, you must specify the domain name of the company you are interested in. Here is an example of a search result for information on a domain name:
Domain: mydomain.com
Type: CORPORATE
Nserver: a.ns.mydomain.com. 82.198.xx.xx
Nserver: ns4.nic.ru.
Nserver: b.ns.mydomain.com. 212.33.xx.xx
State: REGISTERED, DELEGATED
Org: Joint Stock Company …
We have received information about DNS records registered for this domain. You can use another Russian-language service - leader.ru . On this site, a domain name is required in the Whois field.
Here the result is more interesting. In addition to the information provided by the previous portal, we also received information about the range of addresses, the owner, and contact information, including the first and last name
of the responsible person, the email address, and the organization's phone number.
The information obtained can also be used to collect information using the methods described earlier on my channel. For example, you can search for information about a responsible specialist on social media.




