Skip to content

Latest commit

Β 

History

146 Commits

Folders and files

NameName
Last commit message
Last commit date
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 

Repository files navigation

 β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ•— β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ•— β–ˆβ–ˆβ–ˆβ•—   β–ˆβ–ˆβ•—β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ•—  β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ•— β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ•—
β–ˆβ–ˆβ•”β•β•β•β•β•β–ˆβ–ˆβ•”β•β•β•β–ˆβ–ˆβ•—β–ˆβ–ˆβ–ˆβ–ˆβ•—  β–ˆβ–ˆβ•‘β–ˆβ–ˆβ•”β•β•β–ˆβ–ˆβ•—β–ˆβ–ˆβ•”β•β•β•β–ˆβ–ˆβ•—β–ˆβ–ˆβ•”β•β•β–ˆβ–ˆβ•—
β–ˆβ–ˆβ•‘     β–ˆβ–ˆβ•‘   β–ˆβ–ˆβ•‘β–ˆβ–ˆβ•”β–ˆβ–ˆβ•— β–ˆβ–ˆβ•‘β–ˆβ–ˆβ•‘  β–ˆβ–ˆβ•‘β–ˆβ–ˆβ•‘   β–ˆβ–ˆβ•‘β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ•”β•
β–ˆβ–ˆβ•‘     β–ˆβ–ˆβ•‘   β–ˆβ–ˆβ•‘β–ˆβ–ˆβ•‘β•šβ–ˆβ–ˆβ•—β–ˆβ–ˆβ•‘β–ˆβ–ˆβ•‘  β–ˆβ–ˆβ•‘β–ˆβ–ˆβ•‘   β–ˆβ–ˆβ•‘β–ˆβ–ˆβ•”β•β•β–ˆβ–ˆβ•—
β•šβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ•—β•šβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ•”β•β–ˆβ–ˆβ•‘ β•šβ–ˆβ–ˆβ–ˆβ–ˆβ•‘β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ•”β•β•šβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ•”β•β–ˆβ–ˆβ•‘  β–ˆβ–ˆβ•‘
 β•šβ•β•β•β•β•β• β•šβ•β•β•β•β•β• β•šβ•β•  β•šβ•β•β•β•β•šβ•β•β•β•β•β•  β•šβ•β•β•β•β•β• β•šβ•β•  β•šβ•β•

β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ•—β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ•—  β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ•— β–ˆβ–ˆβ–ˆβ•—   β–ˆβ–ˆβ–ˆβ•—β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ•—β–ˆβ–ˆβ•—    β–ˆβ–ˆβ•— β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ•— β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ•— β–ˆβ–ˆβ•—  β–ˆβ–ˆβ•—
β–ˆβ–ˆβ•”β•β•β•β•β•β–ˆβ–ˆβ•”β•β•β–ˆβ–ˆβ•—β–ˆβ–ˆβ•”β•β•β–ˆβ–ˆβ•—β–ˆβ–ˆβ–ˆβ–ˆβ•— β–ˆβ–ˆβ–ˆβ–ˆβ•‘β–ˆβ–ˆβ•”β•β•β•β•β•β–ˆβ–ˆβ•‘    β–ˆβ–ˆβ•‘β–ˆβ–ˆβ•”β•β•β•β–ˆβ–ˆβ•—β–ˆβ–ˆβ•”β•β•β–ˆβ–ˆβ•—β–ˆβ–ˆβ•‘ β–ˆβ–ˆβ•”β•
β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ•—  β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ•”β•β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ•‘β–ˆβ–ˆβ•”β–ˆβ–ˆβ–ˆβ–ˆβ•”β–ˆβ–ˆβ•‘β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ•—  β–ˆβ–ˆβ•‘ β–ˆβ•— β–ˆβ–ˆβ•‘β–ˆβ–ˆβ•‘   β–ˆβ–ˆβ•‘β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ•”β•β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ•”β•
β–ˆβ–ˆβ•”β•β•β•  β–ˆβ–ˆβ•”β•β•β–ˆβ–ˆβ•—β–ˆβ–ˆβ•”β•β•β–ˆβ–ˆβ•‘β–ˆβ–ˆβ•‘β•šβ–ˆβ–ˆβ•”β•β–ˆβ–ˆβ•‘β–ˆβ–ˆβ•”β•β•β•  β–ˆβ–ˆβ•‘β–ˆβ–ˆβ–ˆβ•—β–ˆβ–ˆβ•‘β–ˆβ–ˆβ•‘   β–ˆβ–ˆβ•‘β–ˆβ–ˆβ•”β•β•β–ˆβ–ˆβ•—β–ˆβ–ˆβ•”β•β–ˆβ–ˆβ•—
β–ˆβ–ˆβ•‘     β–ˆβ–ˆβ•‘  β–ˆβ–ˆβ•‘β–ˆβ–ˆβ•‘  β–ˆβ–ˆβ•‘β–ˆβ–ˆβ•‘ β•šβ•β• β–ˆβ–ˆβ•‘β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ•—β•šβ–ˆβ–ˆβ–ˆβ•”β–ˆβ–ˆβ–ˆβ•”β•β•šβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ•”β•β–ˆβ–ˆβ•‘  β–ˆβ–ˆβ•‘β–ˆβ–ˆβ•‘  β–ˆβ–ˆβ•—
β•šβ•β•     β•šβ•β•  β•šβ•β•β•šβ•β•  β•šβ•β•β•šβ•β•     β•šβ•β•β•šβ•β•β•β•β•β•β• β•šβ•β•β•β•šβ•β•β•  β•šβ•β•β•β•β•β• β•šβ•β•  β•šβ•β•β•šβ•β•  β•šβ•β•

Herramienta de Reconocimiento Pasivo

Python React Node.js License Status OSINT


ΒΏQuΓ© es CΓ³ndor Framework?

CΓ³ndor Framework es un monorepo de reconocimiento pasivo (OSINT) compuesto por tres mΓ³dulos integrados que cubren todo el ciclo de un anΓ‘lisis de seguridad: desde la recolecciΓ³n automatizada de inteligencia, pasando por la visualizaciΓ³n interactiva de resultados, hasta la generaciΓ³n de informes profesionales con scoring CVSS 3.1.

EstΓ‘ diseΓ±ado para profesionales de ciberseguridad, pentesters y analistas que necesitan un flujo de trabajo estructurado, reproducible y documentado - sin depender de herramientas comerciales ni exponer el objetivo a trΓ‘fico activo.

β”Œβ”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”
β”‚                      CΓ“NDOR FRAMEWORK                          β”‚
β”‚                                                                 β”‚
β”‚  β”Œβ”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”    JSON/API    β”Œβ”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”              β”‚
β”‚  β”‚   condor-    β”‚ ─────────────► β”‚   condor-    β”‚              β”‚
β”‚  β”‚   cli        β”‚                β”‚   dashboard  β”‚              β”‚
β”‚  β”‚              β”‚                β”‚              β”‚              β”‚
β”‚  β”‚ RecolecciΓ³n  β”‚                β”‚ VisualizaciΓ³nβ”‚              β”‚
β”‚  β”‚ automatizada β”‚                β”‚ interactiva  β”‚              β”‚
β”‚  β””β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”˜                β””β”€β”€β”€β”€β”€β”€β”¬β”€β”€β”€β”€β”€β”€β”€β”˜              β”‚
β”‚                                         β”‚ Export                β”‚
β”‚                                         β–Ό                       β”‚
β”‚                                  β”Œβ”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”              β”‚
β”‚                                  β”‚   condor-    β”‚              β”‚
β”‚                                  β”‚   report     β”‚              β”‚
β”‚                                  β”‚              β”‚              β”‚
β”‚                                  β”‚ Fichas vuln. β”‚              β”‚
β”‚                                  β”‚ CVSS 3.1     β”‚              β”‚
β”‚                                  β””β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”˜              β”‚
β””β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”˜

ΒΏPor quΓ© existe este proyecto?

Durante el desarrollo de auditorΓ­as de seguridad reales en entornos acadΓ©micos y profesionales, se identificΓ³ un problema recurrente: el reconocimiento pasivo es tedioso, fragmentado y difΓ­cil de documentar.

Las herramientas actuales como Maltego, Shodan o FOCA son poderosas pero aisladas. El analista termina copiando datos entre ventanas, construyendo informes a mano y sin trazabilidad del proceso. CΓ³ndor Framework resuelve esto al unificar la cadena completa en un ecosistema cohesionado, open source y extensible.

Casos de uso:

  • AuditorΓ­as de seguridad en organizaciones (pre-engagement)
  • Ejercicios acadΓ©micos de ethical hacking
  • Bug bounty (reconocimiento inicial)
  • Monitoreo de exposiciΓ³n de activos propios

MΓ³dulos

condor-cli β€” OSINT Automator CLI

Motor de recolecciΓ³n pasiva de inteligencia. Script Python con interfaz de lΓ­nea de comandos que consulta mΓΊltiples fuentes pΓΊblicas y APIs sin generar trΓ‘fico directo al objetivo.

Fuentes consultadas:

  • DNS pasivo (registros A, MX, NS, TXT, CNAME)
  • WHOIS histΓ³rico y actual
  • Censys.io (puertos, servicios, certificados TLS)
  • Shodan (banners, tecnologΓ­as expuestas)
  • Hunter.io (emails corporativos filtrados)
  • FOCA-like (metadatos de documentos pΓΊblicos vΓ­a Google Dorks)
  • Have I Been Pwned API (brechas asociadas al dominio)
  • Wayback Machine / Archive.org (URLs histΓ³ricas)
  • Certificate Transparency Logs (subdominios via crt.sh)

Output: JSON estructurado, listo para ser consumido por el dashboard o exportado directamente.

# Uso bΓ‘sico
python condor.py --target ejemplo.com --output recon_ejemplo.json

# Con mΓ³dulos especΓ­ficos
python condor.py --target ejemplo.com --modules dns,whois,censys,crt

# Output HTML standalone
python condor.py --target ejemplo.com --format html --output reporte.html

# Verbose + guardar logs
python condor.py --target ejemplo.com --verbose --log condor.log

TecnologΓ­as: Python 3.11+, argparse, dnspython, python-whois, requests, rich (CLI styling), jinja2 (HTML output)


condor-dashboard β€” Passive Recon Dashboard

Interfaz web interactiva que consume el JSON generado por condor-cli y presenta los resultados de forma visual y navegable.

CaracterΓ­sticas:

  • Carga de archivos JSON desde el CLI o ingesta directa vΓ­a API local
  • Mapa de red interactivo (nodos: dominio β†’ subdominios β†’ IPs β†’ puertos)
  • Timeline de cambios histΓ³ricos (Wayback + DNS pasivo)
  • Tabla de puertos y servicios con filtros
  • Heatmap de exposiciΓ³n por categorΓ­a de riesgo
  • ExportaciΓ³n de vistas seleccionadas hacia condor-report

TecnologΓ­as: React 18, D3.js (grafos de red), Recharts (charts), Tailwind CSS, Vite


condor-report β€” Vulnerability Ficha Generator

Generador de informes de auditorΓ­a. Toma los datos del dashboard y produce fichas de vulnerabilidad formateadas con scoring CVSS 3.1 automΓ‘tico y recomendaciones.

CaracterΓ­sticas:

  • Fichas individuales por hallazgo con campos: descripciΓ³n, evidencia, impacto, vector CVSS 3.1
  • Calculadora CVSS 3.1 integrada (AV, AC, PR, UI, S, C, I, A)
  • ClasificaciΓ³n automΓ‘tica: CrΓ­tico / Alto / Medio / Bajo / Informativo
  • Recomendaciones predefinidas por categorΓ­a de vulnerabilidad
  • Export a PDF, DOCX y HTML
  • Portada, Γ­ndice, resumen ejecutivo y fichas tΓ©cnicas generados automΓ‘ticamente

TecnologΓ­as: Node.js / Express, Puppeteer (PDF), docx library, Vue.js 3 (frontend del generador)


condor-framework/ β”œβ”€β”€ .gitignore β”œβ”€β”€ docker-compose.yml β”œβ”€β”€ README.md β”œβ”€β”€ AGENTS.md β”œβ”€β”€ Book.md β”œβ”€β”€ guia-de-arranque.md β”‚ β”œβ”€β”€ condor-cli/ β”‚ β”œβ”€β”€ condor.py β”‚ β”œβ”€β”€ requirements.txt β”‚ β”œβ”€β”€ .env.example β”‚ └── modules/ β”‚ β”œβ”€β”€ dns_recon.py β”‚ β”œβ”€β”€ whois_lookup.py β”‚ β”œβ”€β”€ wayback.py β”‚ β”œβ”€β”€ crt_sh.py β”‚ β”œβ”€β”€ censys_query.py β”‚ β”œβ”€β”€ shodan_query.py β”‚ └── hunter_lookup.py β”‚ β”œβ”€β”€ condor-dashboard/ β”‚ β”œβ”€β”€ Dockerfile β”‚ β”œβ”€β”€ package.json β”‚ β”œβ”€β”€ vite.config.js β”‚ β”œβ”€β”€ tailwind.config.js β”‚ β”œβ”€β”€ postcss.config.js β”‚ β”œβ”€β”€ index.html β”‚ └── src/ β”‚ β”œβ”€β”€ main.jsx β”‚ β”œβ”€β”€ index.css β”‚ β”œβ”€β”€ App.jsx β”‚ └── components/ β”‚ β”œβ”€β”€ Overview.jsx β”‚ β”œβ”€β”€ DnsView.jsx β”‚ β”œβ”€β”€ WhoisView.jsx β”‚ β”œβ”€β”€ WaybackView.jsx β”‚ β”œβ”€β”€ CensysView.jsx β”‚ β”œβ”€β”€ ShodanView.jsx β”‚ └── HunterView.jsx β”‚ └── condor-report/ β”œβ”€β”€ README.md β”œβ”€β”€ backend/ β”‚ β”œβ”€β”€ Dockerfile β”‚ β”œβ”€β”€ package.json β”‚ └── src/ β”‚ β”œβ”€β”€ server.js β”‚ β”œβ”€β”€ cvss/ β”‚ β”‚ β”œβ”€β”€ calculator.js β”‚ β”‚ └── vectors.js β”‚ β”œβ”€β”€ lib/ β”‚ β”‚ β”œβ”€β”€ importer.js β”‚ β”‚ └── recommender.js β”‚ β”œβ”€β”€ generators/ β”‚ β”‚ └── pdf.js β”‚ └── routes/ β”‚ β”œβ”€β”€ report.js β”‚ β”œβ”€β”€ cvss.js β”‚ └── ficha.js └── frontend/ β”œβ”€β”€ Dockerfile β”œβ”€β”€ package.json β”œβ”€β”€ vite.config.js β”œβ”€β”€ index.html β”œβ”€β”€ main.js β”œβ”€β”€ App.vue └── components/ β”œβ”€β”€ ImportPanel.vue β”œβ”€β”€ FichaEditor.vue β”œβ”€β”€ CvssCalculator.vue └── ReportPreview.vue

Flujo de trabajo completo

1. OBJETIVO DEFINIDO
        β”‚
        β–Ό
2. condor-cli --target objetivo.com --output scan.json
   β€’ Consulta DNS, WHOIS, Censys, crt.sh, Wayback...
   β€’ Genera: scan.json
        β”‚
        β–Ό
3. condor-dashboard (carga scan.json)
   β€’ Visualiza red de activos, puertos, tecnologΓ­as
   β€’ Analista revisa, filtra, selecciona hallazgos
   β€’ Exporta: hallazgos_seleccionados.json
        β”‚
        β–Ό
4. condor-report (carga hallazgos)
   β€’ Genera fichas por vulnerabilidad
   β€’ Calcula CVSS 3.1 automΓ‘ticamente
   β€’ Produce: informe_final.pdf / .docx
        β”‚
        β–Ό
5. INFORME ENTREGADO AL CLIENTE

InstalaciΓ³n

Requisitos previos

  • Python 3.11+
  • Node.js 20+
  • npm o yarn
  • Docker (opcional, para levantar todo el stack)

OpciΓ³n A β€” Con Docker (recomendado)

git clone https://github.com/villaalextor/condor-framework.git
cd condor-framework
docker-compose up -d

OpciΓ³n B β€” Manual por mΓ³dulo

# Clonar repositorio
git clone https://github.com/villaalextor/condor-framework.git
cd condor-framework

# --- condor-cli ---
cd condor-cli
pip install -r requirements.txt
python condor.py --help

# --- condor-dashboard ---
cd ../condor-dashboard
npm install
npm run dev

# --- condor-report ---
cd ../condor-report/backend
npm install
npm run start

cd ../frontend
npm install
npm run dev

Variables de entorno

Copiar .env.example en cada mΓ³dulo y completar las API keys:

# condor-cli/.env
CENSYS_API_ID=tu_api_id
CENSYS_API_SECRET=tu_api_secret
SHODAN_API_KEY=tu_shodan_key
HUNTER_API_KEY=tu_hunter_key
HIBP_API_KEY=tu_hibp_key

Todas las APIs tienen tier gratuito suficiente para uso acadΓ©mico. Censys ofrece 250 queries/mes gratis. Shodan tiene plan acadΓ©mico gratuito.


Consideraciones Γ©ticas y legales

ADVERTENCIA: Esta herramienta estΓ‘ diseΓ±ada exclusivamente para reconocimiento pasivo. No genera trΓ‘fico directo al objetivo mΓ‘s allΓ‘ de consultas a APIs y bases de datos pΓΊblicas.

  • βœ… Usar ΓΊnicamente en dominios propios o con autorizaciΓ³n escrita del propietario
  • βœ… El uso acadΓ©mico debe enmarcarse en prΓ‘cticas supervisadas
  • ❌ Prohibido usar contra objetivos sin consentimiento
  • ❌ No usar para actividades ilegales o maliciosas

El autor no se responsabiliza por el uso indebido de esta herramienta. Ver LICENSE y Γ‰TICA.md.


Autor

Alexander Villarroel Torrico Estudiante de IngenierΓ­a InformΓ‘tica β€” Universidad Mayor de San AndrΓ©s (UMSA) La Paz, Bolivia

GitHub Portfolio Email


Licencia

MIT License β€” ver LICENSE para detalles.


About

No description, website, or topics provided.

Resources

Stars

0 stars

Watchers

0 watching

Forks

Releases

Packages

Contributors

Languages