These commands can be used to gather information
- Host
- Ping
- whois
- fierce --dns << url >>
- theharvester
- whatweb <<url>>
- Fuff *
- dirb <<url>>, by default it chooses common.txt wordlist
- Use burp to crawl the URL.
- Check HTTP or HTTPS - use wireshark.
- Google hack/dork:-
- Go to settings >> advanced settings
- Query language - inurl, allinurl, intext, allintext, intitle, allintitle, site, source,filetype, related, define, “”, - , _, *, (), AND, OR, #..#
- Example : -
- site: << >>
- site: << >> AND (inurl:login)
Comments
Post a Comment