官术网_书友最值得收藏!

Chapter 2. Efficient Discovery

Content discovery and information gathering are typically the first steps when attacking an application. The goal is to figure out as much as possible about the application in the quickest manner possible. Time is a luxury we don't have and we must make the most of our limited resources.

Efficiency can also help us to remain a bit quieter when attacking applications. Smart wordlists will reduce the number of requests we make to the server and return results faster. This isn't a silver bullet, but it's a good place to start.

In this chapter, we will cover the following topics:

  • The different types of penetration testing engagements
  • Target mapping with various network and web scanners
  • Efficient brute-forcing techniques
  • Polyglot payloads
主站蜘蛛池模板: 漳州市| 文山县| 额敏县| 民勤县| 南宁市| 伊吾县| 蕉岭县| 横峰县| 南通市| 陇南市| 平江县| 牡丹江市| 定安县| 盘锦市| 九江县| 宁晋县| 冀州市| 永泰县| 百色市| 拉孜县| 新建县| 鄄城县| 辉县市| 侯马市| 资溪县| 金川县| 新营市| 新巴尔虎右旗| 奎屯市| 四子王旗| 渭南市| 将乐县| 方正县| 成安县| 诸城市| 南丰县| 同江市| 长海县| 镇原县| 云南省| 萨迦县|