mirror of
https://github.com/SHOGGOTH-SECTOR/sica-fondt.git
synced 2026-08-01 16:40:24 +00:00
Place useful parts of the surrounding repos into sica-fondt by layer, per the
body model (Ada = membrane; brain/endocrine/capabilities/knowledge non-Ada):
- brain/ LLM reasoning + providers (dapr, hermes, MoMoA)
- capabilities/ REPRAG sidecars: hermes tools/skills, dapr tools, parallel
dispatch, A51 channels, and the OSINT cluster
- knowledge/ LORAG corpus: 754 cyber-skills, agency personas, secure-coding,
MITRE ATT&CK data
- reference/ defensive threat-reference (C3, shhbruh doc) + AdaYaml parser
License handling: AGPL sources (worldosint, advanced_evolution, mercury,
Reticulum) and GPL DeTTECT are SPEC-only clean-room/port descriptions — no
copyleft code copied. MIT/Apache/data parts copied as working trees.
Safety: shhbruh escape/persistence material and C3 covert-C2 kept as reference
only, not wired into the running organism. See CONSOLIDATION.md.
https://claude.ai/code/session_01UehUqEXXJJCsHoA4voCU5c
2.1 KiB
2.1 KiB
API Reference: Performing DNS Enumeration and Zone Transfer
dnspython Library
| Function/Class | Description |
|---|---|
dns.resolver.resolve(domain, rdtype) |
Query DNS records by type |
dns.zone.from_xfr(xfr_response) |
Parse zone transfer response |
dns.query.xfr(nameserver, domain) |
Perform AXFR zone transfer |
dns.rdatatype.to_text(rdtype) |
Convert record type to string |
dns.resolver.Resolver() |
Custom resolver with timeout settings |
DNS Record Types
| Type | Description |
|---|---|
| A | IPv4 address record |
| AAAA | IPv6 address record |
| MX | Mail exchange server |
| NS | Authoritative nameserver |
| TXT | Text record (SPF, DKIM, DMARC) |
| SOA | Start of Authority |
| CNAME | Canonical name alias |
| SRV | Service location record |
| CAA | Certificate Authority Authorization |
| AXFR | Full zone transfer request |
Email Security Records
| Record | Location | Description |
|---|---|---|
| SPF | domain TXT |
Authorized mail sender IPs |
| DMARC | _dmarc.domain TXT |
Email authentication policy |
| DKIM | selector._domainkey.domain TXT |
Email signing public key |
Key Libraries
- dnspython (
pip install dnspython): Full-featured DNS toolkit for Python - python-nmap (optional): Network port scanning for DNS services
- sublist3r (optional): Subdomain enumeration using search engines
Configuration
| Variable | Description |
|---|---|
| Target domain | Authorized target domain for enumeration |
| Resolver timeout | DNS query timeout (default 3 seconds) |
| Wordlist | Subdomain brute-force dictionary |
Common Subdomain Wordlists
| Source | Description |
|---|---|
| SecLists DNS | Discovery/DNS/subdomains-top1million-5000.txt |
| Assetnote | Best-DNS-Wordlist from Assetnote |
| Custom | Industry-specific subdomain patterns |