An individual has created an open-source command-line interface (CLI) tool for DNS audits. The tool's development stems from the creator's experience in DevSecOps across multiple companies over several years. This tool addresses issues flagged by SOC tools and supports basic black-box penetration testing. Dnsight checks CAA, DMARC, DKIM, SPF, MX, DNSSEC, and basic header settings. The tool's output formats include rich terminal, JSON, Markdown, and SARIF. An included SDK lets users create custom tools leveraging the Python objects. The project's genesis was influenced by a deceptive sales tactic targeting a company's CEO, highlighting the importance of accessible security tools. The next phase will involve a dockerized application for recurring audits based on configurations, with alert capabilities. The creator welcomes feedback and contributions from the community to improve Dnsight. This is the creator's first open-source project and they are eager to learn. The tool's documentation can be found online for further information.
reddit.com
reddit.com
