Last updated: September 2, 2024
Le Footprint is a security audit technique that consists of find information about a person or on computer systems and all the entities to which they are attached.
This technique makes it possible to obtain information about the infrastructure of a target network, only from information to which access is free and authorized.
- Network enumeration;
- Identification of the operating system;
- Organization queries;
- Ping scan;
- Queries on contact points;
- WHOIS queries;
- SNMP requests;
There is an open source graphical application that allows you to perform all these methods in a simple and fast way, it is called Maltego.
Maltego allows you to easily and visually find information such as the various potential e-mail addresses of a person, telephone numbers that could be associated with him, IP addresses, DNS, mail server, host, company employees and much more.
This relatively comprehensive tool saves time in the long and tedious task of collecting information and will allow you to work more accurately and smarter.
Main features of Maltego
Maltego allows you to list important information such as:
- Domain names.
- Whois information.
- The architecture of the entire network.
- Person's IP address.
- Email addresses associated with a person's name.
- Account Facebook of somebody.
- Websites associated with a person's name.
- Phone number associated with a person's name.
- Businesses and organizations associated with a person's name.
- Blogs for specific tags and phrases.
- File metadata from target domains.
How to use Maltego?
In this part we will see how to use Maltego for find information about a person, we will then use it to get information about the server FunInformatique.
So to get started, go to the official website of the tool and download the Maltego version adapted to your operating system. But be careful, there are two versions of Maltego: community edition (free version) and commercial version (paid version).
Find information about a person
After installation, launch Maltego, and click the Personal / Person icon. Enter the name of the person you want to have information about. In my case, I will list the information about Ahmed. 🙂 Here is the interface you will have on your screens:
To view all the information about a person, just click the right mouse button and select the type of info we want to have. For example his email address, his phone number, or his profile Facebook.
As you can see in the picture, we have found more information about this person, we got email addresses, phone numbers, and social media profiles.
Collect information on a server
To collect information on a server, we must follow the same process as we did for find information about a person, simply :
- Click on "Website" in the palette
- Drag the icon onto the Graph,
- Double click on the icon in the graph
- Enter the domain name of the target server
- Right click the mouse to select the type of info you would like to have.
At the end, you will get all the information about the website in one graph, and this is the strong point of Maltego. As you can see in the picture, I was able to have the IP address of the server, the owner's email address, his name, DNS servers, mail server and many other important information. It's all organized in a hierarchical fashion.
Conclusion
In this post, I explained to you simply a few Maltego software features with two examples. There are other functions that are not discussed in this article. As for example, how to define the entities and the specific transformations? How? 'Or' What use a proxy under Maltego? How to query a clean database to look for information etc. Either way, the goal of this tutorial is to show you the basic functionality of the Maltego tool. 😉
Hello
I installed Maltego Communyti Edition 4.2.19
I clicked on Person, only I have a search window and as soon as I type my name or yours or another, nothing is indicated except a trash can, so I can't get information.
I will put a capture of what I have as an image
Any help from where is it wrong?
We look forward to seeing you!
Hello,
To view a person's information, I invite you to follow these steps:
In the left column, scroll down until you find the Person section. Now drag the Person icon to the dashboard.
Enter the name of the person you want to view the information.
Finally click on the right button of the mouse and select the type of info you want to have.
Hello. Can we use it on Apple? Thank you
Yes of course. Maltego is available for MAC OS.
Hello, I would like maltego .apks
Please
Thanks very much. Very interesting
Hello, I am new to Maltego. So when Maltego starts I get an error message ( login server could not be contacted ). So I can't go any further. please help me
The second image is when I launch the installation
Any suggestion would be welcome
Thank you
Hello Rodolph,
What version of Maltego are you using? Do you use maltego on linux or Windows ?
If you are on linux, just update maltego with the command:
sudo apt-get install maltego
hello could you hack me an account please I can't do it because my man is too careful
the software is really cool but i can't get the victim data to enter.
a window of start machine I choose a thing for example e'mail OK
another required inputs window there I crash (domain/TLD) and (additional term).
the procedure is not as you described it.
thank you for the answer and a thousand times congratulations for the work you do.
Interesting article, thank you 🙂
It was actually from my Java version.
Here is the link the site sent me.
http://www.oracle.com/technetwork/java/javase/downloads/jdk7-downloads-1880260.html .
I can't run the machine
I just installed this software on windows, he's cool