Jump to content

emailrep.io - Simple Email Reputation


cwade12c
 Share

Recommended Posts

emailrep.io is a simple tool with a nice API that will tell you information about an email address, including:

  • Reputation Level
  • Is it suspicious?
  • References
  • Is it blacklisted?
  • Has its credentials been leaked?
  • Has it been part of any data breach?
  • Is it a spammer?
  • Is it spoofable?

And much more. A further description from their website states:

Quote

EmailRep uses hundreds of factors like domain age, traffic rankings, presence on social media sites, professional networking sites, personal connections, public records, deliverability, data breaches, dark web credential leaks, phishing emails, threat actor emails, and more to answer these types of questions: Is this email risky? Is this a throwaway account? What kind of online presence does this email have? Is this a trustworthy sender?

As this is posted in pentesting, some of the offensive usecases of this tool might include:

  • Conduct recon on a target to prepare for credential bruteforcing
  • Constructing targeted phishing attacks
  • Avoid the spam folder

There are also defenses ways in which this tool might be used, like to detect phishing attacks, prevent fraud, require additional layer of verification during registration, etc.

Check it out!

Link to site: https://emailrep.io/

Edited by cwade12c
Link to comment
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
 Share

  • Similar Content

    • JollyRiggers
      By JollyRiggers
      I've checked out several like snusbase and weleakdata etc, but this one is by far the best, because it's free. All you have to do is register to perform searches. I've found some good databases from 2024 and i like the wildcard and you can search by password.
       
      Also useful is phone search with wild card example 802-*  to view every phone number with 802 area code.
       
      https://breach.vip
       
       
    • killab
      By killab
      https://github.com/Alb-310/Geogramint
       
      git clone https://github.com/Alb-310/Geogramint.git
      Geogramint is an OSINT tool that uses Telegram's API to find nearby users and groups. Inspired by Tejado's Telegram Nearby Map, which is no longer maintained, it aims to provide a more user-friendly alternative.
      Geogramint only finds Telegram users and groups which have activated the nearby feature. Per default it is deactivated.
      The tool is fully supported on Windows and partially supported on Mac OS and Linux distributions.

       
      On Windows 
      With the installer: Click here!
      With Github:
      git clone https://github.com/Alb-310/Geogramint.git cd Geogramint/ pip3 install -r requirements.txt python3 geogramint.py Or depending on your installation :
      git clone https://github.com/Alb-310/Geogramint.git cd Geogramint/ pip install -r requirements.txt python geogramint.py On Mac OS  and Linux 
      With Github:
      git clone https://github.com/Alb-310/Geogramint.git cd Geogramint/ pip3 install -r requirements.txt python3 geogramint.py Or depending on your installation :
      git clone https://github.com/Alb-310/Geogramint.git cd Geogramint/ pip install -r requirements.txt python geogramint.py More details in the Wiki.
      📡 Example
      Start by creating an API key for your Telegram account here. You will also need to put a profile picture on your account and, in your Privacy and Security settings, enable the profile picture for everyone.
      Launch Geogramint In the settings, write your information (api_id, api_hash and phone number) and then save  
      Choose the location where you want to search, either by moving around the map or by using the search feature with coordinates in lat, lon format
      Telegram will send you a verification code, write it in the pop-up window (+ your two-step verification password if you have one)
      Then click Start Search All results will be displayed following: green for 500m yellow for 1000m orange for 2000m red for >3000m (NB: results can also be found in Geogramint/cache_telegram/ in json format + profiles pictures)

      Reset will clear the results and erase the cache_telegram More details in the Wiki.
    • cwade12c
      By cwade12c
      A lot of people use "people" search engines and Google dorks to find people or information about people, but you can actually find out quite a bit of information via public registries. Consider some of these:
      The Knot - Wedding Registry Search RegistryFinder - Baby Shows and Graduation Search MyRegistry - Wedding, Baby, and Gift List Search Amazon - Registries for Any Occasion Search Bed, Bath, and Beyond - Gift Registry Search The Bump - Baby Registry Search You can also find out PII of anyone in the United States who is registered to vote, by looking at local election registries. Does anyone know other registries to include?
    • cwade12c
      By cwade12c
      Sn1per is an opensource AIO offensive security framework that includes features such as:
      Attack Surface Discovery Penetration Testing Visual Recon IT Asset Inventory Vulnerability Management Web Application Scans Reporting OSINT Collection Continuous Scan Coverage Domain Takeover Tools There are also many help topics and integration guides listed directly in the README.
      Link to repository: https://github.com/1N3/Sn1per
    • cwade12c
      By cwade12c
      URLCrazy is a domain typo generator that looks useful for testing domain typos and variations, which can have a ton of uses: typo squatting, URL hijacking, phishing, etc. Other use cases might include detecting who is using variations of your domain name (to inform your users), which can help protect your brand and inform your users.

      Link to the repository: https://github.com/urbanadventurer/urlcrazy
×
×
  • Create New...