Knary: Canary with HTTP(S) and #DNS

You are currently viewing Knary: Canary with HTTP(S) and #DNS

Slack/Discord/MS Teams/Lark & Pushover support for a simple HTTP(S) and DNS Canary bot.

When incoming HTTP(S) or DNS queries match a particular domain or any of its subdomains, knary sends a notification to a Slack/Discord/Teams/Lark channel (or other webhook). Subdomain denylisting, interacting with Burp Collaborator, and quick TLS certificate production are all features that are important in offensive engagements.

Canaries are used by redteamers to be notified when someone (or something) tries to interact with a server they are in charge of. The canaries aid in providing visibility into previously unknown processes. They can assist in locating locations to probe for RFI or SSRF vulnerabilities, revealing previously unknown servers, revealing evidence of an intercepting device, or simply announcing someone communicating with your server.

Disclaimer: The intended use for the tool is strictly educational and should not be used for any other purpose.

Download Link: https://github.com/sudosammy/knary

Leave a Reply