当前位置:网站首页>Penetration test information collection - site architecture and construction
Penetration test information collection - site architecture and construction
2022-07-06 18:35:00 【Aspirin. two thousand and two】
List of articles
information gathering — framework 、 Construction, etc
1、 Site construction analysis
1.1、 Directory site
xxx.com and xxx.com/bbs There are two different pages , It can be regarded as two sets of procedures , But the vulnerability of any page has an impact on the website
The home page may be in D Under the plate www In the directory root Catalog ,bbs The page is on root in bbs Catalog
1.2、 Port class site
xxx.com:8080
The default home page is 80 port , however 8080 Port vulnerabilities will also affect 80 port , Both are on the same server
Port settings , Different ports correspond to different applications . such as ssh The default port is 22
1.3、 Subdomain site
goodlift-www.bbs
master station :www.goodlift.net
substation :bbs.goodlift.net
bbs.goodlift.net Yes, it is Discuz Built , and www.goodlift.net Yes, it is destoon b2b Built . Two websites are not necessarily on the same server
1.4、 Similar domain name sites
It must be on the same server
1.4、 Similar domain name sites
Different domain name , Same website
边栏推荐
- epoll()无论涉及wait队列分析
- 使用block实现两个页面之间的传统价值观
- Self supervised heterogeneous graph neural network with CO comparative learning
- POJ 2208 已知边四面体六个长度,计算体积
- C语言高校实验室预约登记系统
- Implementation of queue
- STM32+ENC28J60+UIP协议栈实现WEB服务器示例
- Rb157-asemi rectifier bridge RB157
- Introduction and case analysis of Prophet model
- Five data structures of redis
猜你喜欢

MySQL查询请求的执行过程——底层原理

Blue Bridge Cup real question: one question with clear code, master three codes

Interesting - questions about undefined

Maixll dock camera usage

监控界的最强王者,没有之一!

Self-supervised Heterogeneous Graph Neural Network with Co-contrastive Learning 论文阅读
![Jerry is the custom background specified by the currently used dial enable [chapter]](/img/32/6c22033bda8ff1b53993bacef254cd.jpg)
Jerry is the custom background specified by the currently used dial enable [chapter]

Rb157-asemi rectifier bridge RB157

UDP protocol: simple because of good nature, it is inevitable to encounter "city can play"

44 colleges and universities were selected! Publicity of distributed intelligent computing project list
随机推荐
Docker installation redis
[sword finger offer] 60 Points of N dice
2019 Alibaba cluster dataset Usage Summary
[the 300th weekly match of leetcode]
Easy to use PDF to SVG program
Cocos2d Lua 越来越小样本 内存游戏
Jdbc driver, c3p0, druid and jdbctemplate dependent jar packages
44所高校入选!分布式智能计算项目名单公示
Cobra 快速入门 - 专为命令行程序而生
Excel usage record
Distiller les connaissances du modèle interactif! L'Université de technologie de Chine & meituan propose Virt, qui a à la fois l'efficacité du modèle à deux tours et la performance du modèle interacti
A method of sequentially loading Unity Resources
Some understandings of tree LSTM and DGL code implementation
bonecp使用数据源
STM32+HC05串口蓝牙设计简易的蓝牙音箱
Comparative examples of C language pointers *p++, * (p++), * ++p, * (++p), (*p) + +, +(*p)
具体说明 Flume介绍、安装和配置
Atcoder a mountaineer
图之广度优先遍历
测试行业的小伙伴,有问题可以找我哈。菜鸟一枚~