惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

酷 壳 – CoolShell
酷 壳 – CoolShell
H
Hacker News: Front Page
P
Palo Alto Networks Blog
T
ThreatConnect
Apple Machine Learning Research
Apple Machine Learning Research
博客园_首页
T
True Tiger Recordings
P
Privacy & Cybersecurity Law Blog
B
Blog
IT之家
IT之家
Last Week in AI
Last Week in AI
F
Full Disclosure
Hacker News: Ask HN
Hacker News: Ask HN
C
Comments on: Blog
Microsoft Azure Blog
Microsoft Azure Blog
C
Cybersecurity and Infrastructure Security Agency CISA
Microsoft Security Blog
Microsoft Security Blog
博客园 - 【当耐特】
N
News and Events Feed by Topic
NISL@THU
NISL@THU
腾讯CDC
雷峰网
雷峰网
Security Latest
Security Latest
李成银的技术随笔
M
Microsoft Research Blog - Microsoft Research
L
LangChain Blog
L
Lohrmann on Cybersecurity
cs.CL updates on arXiv.org
cs.CL updates on arXiv.org
C
Check Point Blog
Y
Y Combinator Blog
Recent Announcements
Recent Announcements
博客园 - Franky
N
News | PayPal Newsroom
V
V2EX
A
About on SuperTechFans
The Register - Security
The Register - Security
月光博客
月光博客
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
Google Online Security Blog
Google Online Security Blog
MyScale Blog
MyScale Blog
Cisco Talos Blog
Cisco Talos Blog
Vercel News
Vercel News
WordPress大学
WordPress大学
C
Cyber Attacks, Cyber Crime and Cyber Security
The Hacker News
The Hacker News
IntelliJ IDEA : IntelliJ IDEA – the Leading IDE for Professional Development in Java and Kotlin | The JetBrains Blog
IntelliJ IDEA : IntelliJ IDEA – the Leading IDE for Professional Development in Java and Kotlin | The JetBrains Blog
爱范儿
爱范儿
A
Arctic Wolf
L
LINUX DO - 最新话题
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More

Mapping the <mark>Internet</mark> on Netlas: Comprehensive Internet-Wide Scanning & OSINT Platform

Telegram Bot API Abuse How to find unprotected databases with Netlas.io: Chapter 2 Using OWASP Amass with Netlas Module How we hunt C2 infrastructure at RST Cloud using Netlas Using Uncover with Netlas.io module Netlas Updates Terms and API & Data License Agreement Top 10 Hacking Devices for Ethical Hackers in 2026 Top 10 Critical Threat Actors to Watch in 2026: Ransomware, APTs & Defensive Strategies Bug Bounty 101 - A Complete Bug Bounty Roadmap for Beginners (2026) Supply Chain Attack - How Attackers Weaponize Software Supply Chains The Evolution of C2: Centralized to On-Chain From Starlink to Star Wars - The Real Cyber Threats in Space LLM Vulnerabilities: Why AI Models Are the Next Big Attack Surface When AI Turns Criminal: Deepfakes, Voice-Cloning & LLM Malware Zero-Click Exploits When Patches Fail: An Analysis of Patch Bypass and Incomplete Security I Analysed Over 3 Million Exposed Databases Using Netlas Post-Quantum Now: From AES & RSA to ML-KEM Hybrids Bug Bounty 101: Top 10 Reconnaissance Tools Mapping Dark Web Infrastructure Top Vibe-Coding Security Risks From Chaos to Control: Kanvas Incident Management Tool Bug Bounty 101: The Best Courses to Get Started in 2025 I, Robot + NIST AI RMF = Complete Guide on Preventing Robot Rebellion The $1.5B Bybit Hack & How OSINT Led to Its Attribution Hannibal Stealer: A Deep Technical Analysis Proactive Threat Hunting: Techniques to Identify Malicious Infrastructure The Pyramid of Pain: Beyond the Basics SOCMINT: Intelligence in the Social Media Era Hannibal Stealer vs. Browser Security The Largest Data Breach Ever? How Hackers Stole 16 Billion Credentials DNS Cache Poisoning – Is It Still Relevant? Modern Cybercrime: Who’s Behind It and Who’s Stopping It AI-Driven Attack Surface Discovery Netlas vs Urlscan: Tools Comparison TAI Challenge 2025 Recap What is Threat Intelligence Netlas vs IPinfo: Tools Comparison Best Nmap Alternatives Whois History: How to Check the Domain Owner History Top WHOIS & RDAP Tools for Fast IP Address Lookup ASN Lookup Explained: Tools, Methods & Insights How to Detect CVEs Using Nmap Vulnerability Scan Scripts Nmap Cheat Sheet: Top 10 Scan Techiques Netlas vs ZoomEye: Platforms Comparison Top 6 Most Widely Used Port Scanners in Cybersecurity FAQ: Understanding Root DNS Servers and the Root Zone Domain Recon: Must-Know Tools for Security Professionals DNS History: Exploring Domains Past by Inspecting DNS Trails An Expert’s View on DNSSEC: Pros, Cons, and When to Implement What are the best DNS Servers for Security, Privacy and Speed? theHarvester: a Classic Open Source Intelligence Tool Top 15 OSINT Tools for Expert Intelligence Gathering OWASP: Top 10 Web Application Security Risks Using Subfinder with Netlas Module Netlas vs Censys: Platforms Comparison What Is Open Source Intelligence? Best Honeypots for Detecting Network Threats Using Maltego with Netlas Module Using theHarvester with Netlas Using TLDFinder with Netlas Netlas vs Fofa: Platforms Comparison Netlas vs Shodan: Platforms Comparison Google Dorking in Cybersecurity: Techniques for OSINT & Pentesting 7 Tools for Web Penetration Testing Using DNS History in Cybersecurity Mastering Online Camera Searches Complete Guide on Attack Surface Discovery Best Attack Surface Visualization Tools Inside ClickFix: How Fake Prompts Took Over the Web - Netlas Blog
Netlas Chrome and Firefox Extensions
2025-02-05 · via Mapping the <mark>Internet</mark> on Netlas: Comprehensive Internet-Wide Scanning & OSINT Platform

Extensions for browsers are very convenient. You can use the services without leaving the site you are currently on. The Netlas team thought the same, so today we bring you the Netlas extension for the Chrome and Firefox browsers.

This article will tell you how to install and configure it, as well as what it does.

Installing for Google Chrome

Installing the plugin is quite simple and familiar to anyone who has ever used extensions for Google Chrome. It consists of several points:

  1. Find the plugin in the Google Chrome extension store. You can do this by the name “Netlas.io” or go to the link.

  2. Click on the “Add to Chrome” button, then confirm adding the extension.

Add Button

Add Confirmation

  1. The item is not mandatory, but it simplifies the work: attach the plugin. This will allow you to quickly see if the site you are currently on is vulnerable to any CVEs.

Pin Plugin

Installing for Mozilla Firefox

  1. Find the plugin in the Firefox add-ons. You can do this by the name “Netlas.io” or go to the link.

  2. Click on the “Add to Firefox” button, then confirm adding.

Add Button

Add Confirmation

  1. Like in Chrome case I recommend you to pin extension to your toolbar.

placeholder Settings->Pin to Toolbar

Setup

After the extension has been installed, you can use it within thirty demo requests. If you want to connect your account to it, you must (as always) enter your API key. It is very easy.

Open the extension settings and enter the key in the corresponding field. Then click “Save” and refresh the page.

placeholder Enter your key here

After your API key has been connected, you can start working with the extension.

Usage

The extension supports two modes of operation: manual and automatic vulnerability detection (the so-called Default Logo and Smart Logo). In the first mode, the user fully controls all the functionality and sees only what he needs, in the second, the utility will work in the background and notify about vulnerabilities found on sites. Below, the modes and main functionality will be discussed in more detail.

This mode of operation of the extension is enabled by default after it is installed. Working with it, you will get information about the site by clicking on the extension icon. Here’s what it looks like:

Default Logo

Firstly, this is the IP address data already visible to you in the next image.

IP Information

Here you can see which organization hosts this address, where it is located, and what ports are used with it. In addition, by clicking “View on Netlas.io”, you can get more detailed information, such as a list of related domains and services at this address. The second tab of the extension contains information about the domain name. Let’s consider it too:

Domain Information

What information can be found on this tab? First, A record for domain. Secondly, the name of the registrar company and the location of the domain name. Thirdly, the list of responses for which this domain is a host. Fourth, and most interesting, the services that are installed on this domain, as well as the CVEs to which the resource may be vulnerable.

Let’s take a closer look at the last two points. To do this, let’s open a site potentially vulnerable to some recent CVE and see what the extension shows.

CVE Information

So, the site potentially has fourth vulnerabilities, the rating of the most dangerous of which is 7.5 points. To get more detailed information, just hover over a vulnerable response.

CVE Information in Details

After hovering over, we saw exactly what vulnerabilities the host is exposed to, as well as what services are installed on it.

To enable the second mode, open the extension settings and select Smart Logo there.

placeholder

Now, during operation, the extension automatically searches every site you visit in the Netlas database and checks it for known vulnerabilities. If there are any, the extension changes the color of the logo depending on the degree of threat. For example, it will look like this:

placeholder placeholder placeholder

Note: Smart Logo works only if your subscription supports CVE data. In addition, you need to keep in mind that in this mode, the extension sends a request to Netlas every time you open a new site/reload the page. Therefore, carefully monitor the number of your coins!

Conclusion

So, we can say that today a new use case for Netlas has appeared — through an extension for Google Chrome. Yes, it doesn’t provide the full power of the search engine, and you’ll often have to fall back to the web version of the app. However, for small checks, such as when browsing websites from the attack perimeter in a pen test, this option can be very useful.

What is your choise

I can show you how deep the Internet really goes

Discover exposed assets, infrastructure links, and threat surfaces across the global Internet.