killchain-compendium/enumeration/docs/websites.md

384 B

Website Enumeration

  • robots.txt
  • Favicon, curl target and md5sum
  • sitemap.xml
  • Headers, curl <site> including -I or -v parameters
  • Check Components of the website, like blog frameworks, shops.
  • User Wappalyzer
  • Snapshots of the site via waybackmachine
  • Check repos of the site
  • Check buckets
  • Fuzz