
جمع آوری اطلاعات اولین مرحله از هر آزمون تست نفوذ است و مسلماً مهمترین مرحله است زیرا تمام مراحل دیگر بر اطلاعات به دست آمده در مورد هدف، متکی به مرحله جمع آوری اطلاعات می باشد. دوره Web Application Penetration Testing: Web Fingerprinting and Enumeration شما را با Enumeration وب و نحوه جمعآوری اطلاعات آشنا میکند و فرآیند جمعآوری اطلاعات غیرفعال و فعال در وبسایتها و برنامههای کاربردی تحت وب را با استفاده از ابزارها و تکنیکهای مختلف به منظور به دست آوردن هرچه بیشتر اطلاعات از یک برنامه وب هدف را پوشش میدهد.
لینک دانلود دوره آموزشی INE – Web Application Penetration Testing: Web Fingerprinting and Enumeration
حجم: 1.7 گیگابایت
دانلود – بخش اول
دانلود – بخش دوم
رمز فايل: technet24.ir
Website Fingerprinting with Netcraft
Date: 2023
Publisher: INE
By: Alexis Ahmed
Course Duration: 10h 38m
Difficulty Level: Professional
Information gathering is the first step of any penetration test and is arguably the most important as all other phases rely on the information obtained about the target during the information gathering phase. This course will introduce you to web enumeration and information gathering and will cover the process of performing both passive and active information gathering on websites and web applications by leveraging various tools and techniques in order to obtain as much information as possible from a target web application.
Introduction
Activities:1
Course Introduction
Lessons
Web Enumeration & Information Gathering
Activities:4
Introduction to Web Enumeration & Information Gathering
Test your knowledge: Introduction to Web Enumeration & Information Gathering
OWASP Web Security Testing Guide
Test your knowledge: OWASP Web Security Testing Guide
Finding Ownership & IP Addresses
Activities:6
WHOIS
Test your knowledge: WHOIS
Website Fingerprinting with Netcraft
Test your knowledge: Website Fingerprinting with Netcraft
Passive DNS Enumeration
Test your knowledge: Passive DNS Enumeration
Reviewing Webserver Metafiles for Information Leakage
Activities:2
Reviewing Webserver Metafiles
Test your knowledge: Reviewing Webserver Metafiles
Search Engine Discovery
Activities:2
Google Dorks
Test your knowledge: Google Dorks
Web App Fingerprinting
Activities:4
Web App Technology Fingerprinting
Test your knowledge: Web App Technology Fingerprinting
WAF Detection
Test your knowledge: WAF Detection
Source Code Analysis
Activities:4
Copying Websites with HTTRack
Test your knowledge: Copying Websites with HTTRack
Website Screenshots with EyeWitness
Test your knowledge: Website Screenshots with EyeWitness
Website Crawling & Spidering
Activities:3
Passive Crawling & Spidering with Burp Suite & OWASP ZAP
Test your knowledge: Passive Crawling & Spidering with Burp Suite & OWASP ZAP
Passive Crawling with Burp Suite
Web Servers
Activities:3
Web Server Fingerprinting
Test your knowledge: Web Server Fingerprinting
Apache Recon: Basics
DNS Enumeration
Activities:3
DNS Zone Transfers
Test your knowledge: DNS Zone Transfers
DNS: Zone Transfer Enabled
Subdomains
Activities:2
Subdomain Enumeration
Test your knowledge: Subdomain Enumeration
Web Server Vulnerability Scanning
Activities:3
Web Server Scanning with Nikto
Test your knowledge: Web Server Scanning with Nikto
Scanning Web Application with Nikto
File & Directory Enumeration
Activities:3
File & Directory Brute-Force
Test your knowledge: File & Directory Brute-Force
Directory Enumeration with Gobuster
Automated Recon Frameworks
Activities:2
Automated Web Recon with OWASP Amass
Test your knowledge: Automated Web Recon with OWASP Amass
Goodbye
Conclusion
Activities:1
Course Conclusion