社会工程学——进行IP追踪

发布时间 2024-01-12 17:02:33作者: 得失乐与悲与梦儿

如果目标对象有一个公开的邮箱,可以往这个邮箱地址发试探性的Email,然后看看该邮件是否有【回信】,从而了解对象是否在线。(注:这招是社会工程学的基本伎俩)
说一个稍微高级点的邮件技巧——【不依赖回信】也能玩探测的把戏。
  在发送的邮件中使用 HTML格式;邮件正文中包含一个肉眼不易看见的小图片(大小为:1x1像素);该图片位于邮件发送者自己控制的服务器上。
  邮件接收者只要打开/查看这封信,就会导致图片被加载,那么在图片所在的服务器上就会留下一个访问记录。于是探测者就收集到了目标对象的在线时间了及其IP。
 (注:这招是垃圾邮件发送者惯用的招数,通过这招,投放广告的商家就可以了解垃圾邮件有多大比例被受众打开/查看)
现在有众多现成的工具,如Grabify IP logger:https://grabify.link/
使用也非常简单:
Grabify IP logger will help you find and track the IP address of any person with just three simple steps:
1.Enter any URL that you want Grabify to shorten and track.
2.Share the shortened link with another user. Have them click on the link.
3.Grab IP address and other analytical data via the tracking page associated to the Grabify link.
image
image
image
为一个url创建一个短链,将短链发送给目标,当目标访问后便可以收集各种信息。当然也可以在邮件插入一个不可见的图片。
Invisible Image logger——Just like a Grabify link, but invisible!
The website admin or sender of an message/email adds the tracking pixel using a code in the website’s HTML code or email (As shown above). This code contains an external invisible link to Grabify. If a user visits the destination website, the HTML code is processed by the client – usually the user’s browser. The browser follows the link and opens the invisible image. This is registered and logged on the tracking page.
In addition, various information about the user is also transmitted using this method.
陌生域名可以伪装后再发送给好友,https://link.zhihu.com/?target=https://grabify.link/YOUR_CODE
image