Selasa, 01 September 2015

WEB APLICATION PENETRATION TESTING

At this meeting I will discuss about web application penetration testing while the steps are as follows: the initial stage we gather as much information as possible, or commonly called IG stage here I will use google hacking application, whatweh, joomscan, wpscan.

==> The first phase opened in brouser you google hacking
 ==>I demonstrated above information is needed in the search with google hacking, searching for all the information and store it in your records
 ==>after getting information that in a sense is enough then do the next stage filtration stage informasi.lalu enter the terminal and typing your target ling terminal
 ==above I use sql sql injection by typing the command map>
 ==>next mode wpscan my sample wpscan --url tniad.mil.id
next you must scan with whatwbe -v tniad.mil.id
next you loking data base from target


for example loking owasp 10


next sterp in direktori owasp 10


next step you open the password and the jhon aplication

Tidak ada komentar:

Posting Komentar