Enumeration as a Service (eaas.py) in a script that queries the DNS server of a particular domain looking for indications that the domain may be utilizing SaaS offerings. This analysis is performed on TXT, CNAME, A and MX Records. Query results, as well as highlighted results of interest are returned to the user.
./eaas.py <domain.com>
- Add known IP address ranges for lookups for SPF records (currently reliant on DNS)
- Checking for dependencies and prompting for install if not available on current machine
- Add "Verbose Mode" to allow user to decide whether or they want detailed responses
- Summary of findings at the end of the query for easier viewing
- Add any additional SaaS offerings which may have been overlooked (There are likely many)
google-site-verificationTXT Record [Documentation]google.comin SPF Recordgoogle.comin MX Recordgooglemail.comin MX Record- A records which have the term
GOOGLEin the ASN Provider - CNAME records that point to
lync.com
MSTXT record Documentation- CNAME Record pointing to
outlook protection.outlook.comin SPF recordprotection.outlook.comin SPF Record- A records which have the term
MICROSOFTin the ASN Provider
docusignTXT Record Documentation
facebook-domain-verificationTXT Record Documentation
adobe-sign-verificationTXT Record Documentationadobe-idp-site-verificationTXT Record Documentation
atlassian-domain-verificationTXT Record Documentation
yandex-verificationTXT Record
_amazonsesTXT Record Documentation
logmein-verification-codeTXT Record Documentation
citrix-verification-codeTXT Record
pardotTXT Recordsalesforce.comin SPF Record
zuoraTXT Record
- A records which have
AirWatch LLCin ASN Provider - CNAME records that point to
awmdm.com
pphosted.comin SPF Recordpphostedin MX Record
service-now.comin SPF Record
mailsenders.netsuite.comin SPF Record
mktomail.comin SPF Record
spf.mandrillapp.comin SPF Recordmcsv.netin SPF Record
zendesk.comin SPF Record
freshdesk.comin SPF Record
zoho.comin MX Record