As I am getting started with Bug Bounty hunting, I've found that subdomain enumeration is a key component to it. And, there are a lot of tools that can be used for it, each with their own pros and cons. So, I decided to put together a simple script that combines the output of all these tools.
This is a pretty simple script that I've written for my personal use and its certainly not the best one out there. But hey, it works for me.
For this to work, you'll need findomain, sublist3r and assetfinder to be installed in your machine. You can then tweak around with the script to make it usable to you.
Here's a link to the GitHub repo: https://github.com/abhizer/subdomains
What it does:
It takes a domain as input from the user and then runs findomain, assetfinder and sublist3r. It compiles all those outputs together and makes sure that each one of them are unique.
Also, while using sublist3r, I've found that sometimes, it gives
<BR> as well in the output. So, this also replaces it with a newline.
Please make sure to only use it for legal and educational purposes.
I will not be responsible for any misuse of it.