DigitalStakeout Footprint

DigitalStakeout Footprint

DigitalStakeout Footprint

DigitalStakeout Footprint provides on-demand search to the billions of records of technical Internet data. With global visibility into DNS traffic with DigitalStakeout Securd and DigitalStakeout Scout proprietary data collectors, we continuously scan and crawl the Internet.

DigitalStakeout Footprint Use Cases

  • Brand Protection: Discover phishing, brand abuse and copyright infringement.
  • Incident Response: Enrich IP and domain information to find and correlate threats faster.
  • Threat Hunting: Leverage linked domain and IP data to track down C2 servers.
  • External Attack Surface Management: Discover vulnerabilities to your external digital attack surface.
  • Due Diligence: Identify risks that could directly impact your business transaction.
  • Web Research: Discover web technology use, market share and trends.


DigitalStakeout Footprint Indexes

DigitalStakeout Footprint is organized in domain and content-specific search engines.

ASNs & Networks

Search through an inventory of network names associated to Autonomous System Numbers.  Use this index to discover IP space your organization owns or discover third-party assets to support an investigation.

Registered Domain Names

Search 300 million+ registered domains. Pivot to IP address, network, and linked DNS A, AAAA, MX, NS and TXT records. Use this index to discover where domains point to with records or to find similar domains.  For example, pivoting and "Focusing" on the IP address field will show you all domains pointed to the IP.

Example Searches:
paypal.com~1
*paypal*
You can also clear filters, open the filter editor and use entities.
Select an entity "Object", choose Must Equal and add: paypal

Forward DNS Names & Subdomains

Search through 1.5 billion+ host name records. Each forward DNS record is continuously updated for its corresponding CNAME or A record, IP address and linked properties such as subdomain, TLD and other meta-data. As the Registered domain index, you this index to discover where hostnames point to with records or to find similar domains. Pivoting and "Focusing" on the IP address field will show you all hostname pointed to the IP.

Example Searches:
*.paypal.com
You can also clear filters, open the filter editor and use entities.
Select an entity "Object", choose Must Equal and add: paypal
Select an entity "Domain", choose Must Equal and add: paypal.com

Certificate Transparency Logs

Search new certificate trust log entries from Cloudflare, Google, DigiCert, and Let’s Encrypt to discover hosts, phishing sites and shadow-IT. Use this index to discover where domains are being enabled with certificates. This index will help you discover active hostnames that are either re-keying certificates or enabling a new site to be hosted.

Example Searches:
*paypal*
As you will see in the search result, you will see many suspect hostnames with this query result (i.e. www-paypal1-hostvps4best-pw).

Typosquat Domains

Search the top 1 million most popular domains for bitsquatting, homoglyph, hyphenation, insertion, omission, repetition, replacement, subdomain, transposition and vowel-swapping. This index will help you discover hosts that may be used to target your organization or customers with phishing attacks or may be used to infringe on your brand. The "context" entity is the target of the typosquatting.

Example Searches:
Clear filters, open the filter editor and use entities.
Select an entity "Context", choose Must Equal and add: paypal.com

Frontpage Content

Search the current front page of the most popular sites on the web (200 million+ sites). Pivot to IP address, network, social media, and other meta-data. This index will help you discover websites with a particular description, topic or brand on their home page.

Example Searches:
Step 1:
paypal
Step 2:
Open the filter editor and use entities.
Select an entity "URL", choose Must Equal and add: *linkedin.com* (This will filter Domains with links pointed to LinkedIn)

IoT Content / Direct IP Server Exposures

Search HTTPS content from IP exposed services. Pivot to IP address, network, third-party elements, and other meta-data. This index will help you discover HTTP/HTTPS services being hosted directly on an IP address. HTTPS services being defended by a web application firewall should not be exposed over IP. Secondly, if you are investigating an Domain that is hidden behind a service like Cloudflare, you may be able to discover the real IP address by searching for a code fragment.

For example:
Open your browser add to the URL bar: view-source:https://example.com/
Select the fragment: "<h1>Example Domain</h1>"
Paste the fragment in Bookean Search
The result will show you where the example.com code fragment is hosted.



    Need help with this?

    The DigitalStakeout team is happy to help! To request assistance, open a ticket .





      • Related Articles

      • About DigitalStakeout Archiver

        DigitalStakeout Archiver is a powerful browser extension built to augment the capabilities of DigitalStakeout's OSINT and threat intelligence platform. This feature bolsters your collection, documentation, investigation, and web archiving ...
      • DigitalStakeout Support Policy

        Getting Support DigitalStakeout's policy is to acknowledge all DigitalStakeout customer as quickly as possible. An incident ticket is assigned a priority based on the nature of the issue. What Qualifies as Support vs Services Support issues are ...
      • Welcome to DigitalStakeout

        Who is DigitalStakeout for? For security operations and threat intelligence analysts that need to monitor, investigate and analyze data from the web, social media and cyber sources to make better security decisions. What is DigitalStakeout? With our ...
      • Platform Overview

        When you login, you will land on the DigitalStakeout home screen. From the home screen, you can navigate to different parts of the DigitalStakeout platform. Scout Monitor/Console Scout is where you create monitors to collect and analyze open, social ...
      • Create a Frontpage Monitor

        Creating a Frontpage Monitor Create a Frontpage Monitor to detect the presence of a brand or keyword in the primary description of a website.  Once you have created your Frontpage Monitor, DigitalStakeout will query our Footprint database and publish ...