Automic VaultAutomic Vault

brew

使用 Homebrew, Nix 安装 theharvester

查看 theharvester 的安装路径、可执行文件、元数据以及面向 AI 代理工作流的安全说明。

安装

其他安装命令

macOS

Homebrew已验证 · 100%
brew install theharvester

local Homebrew formula metadata

Linux

Nix已验证 · 92%
nix profile install nixpkgs#theharvester

nixpkgs package indexes · pkgs/by-name/th/theharvester/package.nix · 来源: api.github.com

概览

软件包摘要

Gather materials from public sources (for pen testers)

命令和别名

  • restfulHarvest
  • theHarvester
  • theharvester

历史

项目历史与用法

theHarvester is an OSINT and reconnaissance tool for gathering emails, names, subdomains, IPs, and URLs from public data sources during the early stages of a penetration test. The official wiki describes it as simple but effective for mapping an organization's external threat landscape.

项目历史

The project is maintained in the laramies/theHarvester repository and is described by its README as an emails, subdomains, and names harvester for OSINT. Over time it has become a Python security tool with a long module list: the README enumerates passive data sources such as search engines, certificate transparency services, threat-intelligence APIs, code search, and internet-exposure databases.

采用历史

The official installation wiki explicitly says the easiest way to use theHarvester is through Kali Linux, where users can run `theHarvester -h`. The same page also documents pipx, Docker, and source-based installation, while the repository page shows a large GitHub audience and dozens of official releases. In package-manager culture, its presence in Homebrew and Nix gives macOS and reproducible-environment users a route to a tool historically associated with security distributions.

使用方式

Typical use is passive reconnaissance: users configure API keys when needed, select modules or data sources, and collect public-facing identifiers for a target domain. The README's passive module list shows why API-key management matters: many useful sources have quotas, pricing, or authenticated access, and the wiki documents where `api-keys.yaml` lives under packaged and cloned installs.

为什么软件包爱好者会关心

theHarvester matters to package nerds because it is a classic security CLI that crosses the boundary between specialist pentest distros and general-purpose package managers. A Homebrew formula turns a Kali-associated recon workflow into a one-command install on macOS, while the tool's module list creates a constant packaging concern around Python dependencies, browser automation, and optional API credentials.

时间线

  • 2020: Official GitHub wiki home page revision describes the tool's early-pentest OSINT role.
  • 2025-2026: Official GitHub tags page shows active 4.x releases.
  • 2026: Installation wiki documents Kali, pipx, Docker, and source workflows.
  • 2026: Repository page shows release 4.11.1 as the latest release on June 3, 2026.

Related projects

  • Related tools include other OSINT and recon CLIs such as subdomain enumerators, certificate-transparency query tools, internet search APIs, Shodan-like asset search tools, and Kali Linux reconnaissance utilities. theHarvester's niche is aggregating many public sources behind one command-line interface.

来源

安全态势

尚未找到受保护工具覆盖

没有找到 theharvester 的匹配本地密钥处理 manifest。Nucleus 软件包元数据仍在此发布,以便未来覆盖拥有稳定的软件包 URL。

安装行为

  • formula 元数据中未记录 Homebrew post-install 钩子。
  • Homebrew bottle 元数据适用于 6 个平台目标。
  • 安装时包含 5 个运行时依赖。
  • 构建元数据列出 1 个构建依赖。

建议审查

在无人值守的代理使用前,请检查该工具是否读取明文凭据、写入远程状态、发布制品或调用插件。

local files

Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.

Credential files

Credential-bearing paths to review before unattended agent runs.

Linux
/etc/theHarvester/api-keys.ymlapi-keys.yaml
macOS
/usr/local/etc/theharvester/api-keys.yamlapi-keys.yaml

可执行文件

已安装的可执行文件

命令类型暴露范围备注
restfulHarvestcli全局可执行文件
theHarvestercli全局可执行文件
theharvestercli全局可执行文件

新鲜度

版本和新鲜度

这些信号区分页生成时间、软件包管理器活动和上游发布比较。只有存在证据 URL 和可比较版本时,才会提示版本落后。

页面生成时间2026-07-25
管理器版本4.11.1
管理器更新时间2026-06-16
本地数据OK
上游当前
检测到的最新版本4.11.1

https://github.com/laramies/theHarvester

  • OK没有生成新鲜度警告。

安装元数据

软件包元数据

软件包键brew:theharvester
版本4.11.1
软件包管理器Homebrew
软件包管理器页面https://formulae.brew.sh/formula/theharvester
主页https://www.edge-security.com
仓库https://github.com/laramies/theHarvester
上游文档https://github.com/laramies/theHarvester#readme
许可证GPL-2.0-only
源码归档https://github.com/laramies/theHarvester/archive/refs/tags/4.11.1.tar.gz
最后更新2026-06-16T13:15:41Z
Pulseupdated
依赖certifi, cffi, libyaml, pydantic, python@3.14
构建依赖cmake
macOS 提供的库libffi, libxml2, libxslt
Bottle可用 (于 arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux)
Homebrew post-install未定义
服务未声明

注册表事实

源数据库详情

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Nametheharvester
Version Scheme0
Revision1
Head VersionHEAD
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedno
Disabledno
Keg Onlyno
URL Keys
  • head
  • stable

源数据库匹配

其他软件包管理器记录

匹配项来自外部软件包管理器索引,并与本地 Automic Vault 软件包链接分开显示。

Nix95%

theharvester

nix profile install nixpkgs#theharvester
  • normalized package name match
  • 匹配方式:Theharvester
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/th/theharvester/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1

来源线索

由仓库数据生成

此页面由 av-webscripts/generate-pkg-sqlite.py 生成的私有软件包 SQLite 工件提供。

使用的来源

  • Geiger risk classifier
  • Nucleus package database
  • av.db category and tag curation
  • cross-ecosystem install command graph
  • curated configuration and credential file locations
  • curated package history
  • external package-manager database matches
  • package relationship graph
  • package version freshness
  • package-page enrichment