Open navigation

Maltego SecurityTrails Transforms

Modified on: Tue, 8 Oct, 2024 at 8:30 AM

Overview

Maltego's SecurityTrails Transforms are provided to Maltego users as part of the Maltego Standard Transforms which any Maltego Graph Client has access to. The Maltego Standard Transforms support a vast variety of investigative tasks, including network footprinting, social media investigations, digital forensics, enriching threat intelligence, analyzing web content and more. They can be used on their own to conduct investigations, or supplement other specialized integrations available in the Data Hub.


For more information about Maltego Standard Transforms click here.


Maltego SecurityTrails Transforms

To DNS Name (interesting) [SecurityTrails]

Description

This Transform will search for a set of interesting DNS names in the DNS zone using SecurityTrails.


Transform Settings

Display NameSetting TypeDefault ValueOptionalPopupAuthentication
API Keystring TrueFalsefalse
Interesting Sub Domainsstringvpn,webmail,mail,firewall,test,scada,intranet,secure,ssh,databasetruefalsefalse

Transform Meta Info

InformationValue
Display NameTo DNS Name (interesting) [SecurityTrails]
Owner 
AuthorMaltego Technologies
Data SourceSecurityTrails
Transform NameDomainToDNSName_DB_interest
Input Entitiesmaltego.Domain
Output Entitiesmaltego.DNSName
Short DescriptionThis Transform will search for a set of interesting DNS names in the DNS zone using SecurityTrails.

To DNS Name [SecurityTrails]

Description

This Transform will search for a given DNS name in the passive DNS database of SecurityTrails.


Transform Settings

Display NameSetting TypeDefault ValueOptionalPopupAuthentication
API Keystring TrueFalsefalse

Transform Meta Info

InformationValue
Display NameTo DNS Name [SecurityTrails]
Owner 
AuthorMaltego Technologies
Data SourceSecurityTrails
Transform NameDomainToDNSName_DB
Input Entitiesmaltego.Domain
Output Entitiesmaltego.DNSName
Short DescriptionThis Transform will search for a given DNS name in the passive DNS database of SecurityTrails.

To DNS Name from passive DNS [SecurityTrails]

Transform Settings

Display NameSetting TypeDefault ValueOptionalPopupAuthentication
API Keystring TrueFalsefalse

Transform Meta Info

InformationValue
Display NameTo DNS Name from passive DNS [SecurityTrails]
Owner 
AuthorMaltego Technologies
Data SourceSecurityTrails
Output Entitiesmaltego.DNSName

Variants

Transform NameInput EntitiesShort Description
IPAddressToDNSName_SharedIPmaltego.IPv4AddressThis Transform will search for DNS names for a given IPv4 address in the passive DNS database of SecurityTrails.
IP6AddressToDNSName_SharedIPmaltego.IPv6AddressThis Transform will search for DNS names for a given IPv6 address in the passive DNS database of SecurityTrails.

To DNS Names in Netblock [SecurityTrails]

Transform Settings

Display NameSetting TypeDefault ValueOptionalPopupAuthentication
API Keystring TrueFalsefalse

Transform Meta Info

InformationValue
Display NameTo DNS Names in Netblock [SecurityTrails]
Owner 
AuthorMaltego Technologies
Data SourceSecurityTrails
Output Entitiesmaltego.DNSName

Variants

Transform NameInput EntitiesShort Description
NetblockToDNSName_SSmaltego.NetblockThis Transform will search for DNS names in a given IP address range using SecurityTrails passive DNS.
CIDRToDNSName_SSmaltego.CIDRThis Transform will search for DNS names in a given IP subnet using SecurityTrails passive DNS.

To Domains [Sharing this MX]

Description

This transform determines which other domains share this MX record by looking at historical/passive DNS


Transform Settings

Display NameSetting TypeDefault ValueOptionalPopupAuthentication
API Keystring TrueFalsefalse

Transform Meta Info

InformationValue
Display NameTo Domains [Sharing this MX]
Owner 
AuthorMaltego Technologies
Data SourceSharing this MX
Transform NameMXrecordToDomain_SharedMX
Input Entitiesmaltego.MXRecord
Output Entitiesmaltego.Domain
Short DescriptionThis transform determines which other domains share this MX record by looking at historical/passive DNS

To Domains [Sharing this NS]

Description

This transform determines which other domains share this NS record by looking at historical/passive DNS.


Transform Settings

Display NameSetting TypeDefault ValueOptionalPopupAuthentication
API Keystring TrueFalsefalse

Transform Meta Info

InformationValue
Display NameTo Domains [Sharing this NS]
Owner 
AuthorMaltego Technologies
Data SourceSharing this NS
Transform NameNSrecordToDomain_SharedNS
Input Entitiesmaltego.NSRecord
Output Entitiesmaltego.Domain
Short DescriptionThis transform determines which other domains share this NS record by looking at historical/passive DNS.

Did you find it helpful? Yes No

Send feedback
Sorry we couldn't be helpful. Help us improve this article with your feedback.