Information Gathering
The more you know about the target, the more successful you will be in the next stages of penetration test
What information are we looking for?
Pasive Information Gathering
Get an IP address
host $IPCheck for hidden files
robots.txt
sitemap.xml
/crossdomain.xml
/clientaccesspolicy.xml
/.well-known/Extensions
Version/Tech
Analyze the source code

Domain enumeration without engage the target
Active Information Gathering
Host Discovery
DNS Zone Transfer
Port Scanning

Banner Grabbing
Last updated