Pentesting
Pentesting is an authorized simulated attack on a computer system, performed to evaluate the security of the system.
Links
Useful Commands
Searching a range of IP Address
root@kali:~# netdiscover -i eth2 -r 192.168.0.0/24
Currently scanning: Finished! | Screen View: Unique Hosts
4 Captured ARP Req/Rep packets, from 3 hosts. Total size: 240
_____________________________________________________________________________
IP At MAC Address Count Len MAC Vendor / Hostname
-----------------------------------------------------------------------------
192.168.0.1 f8:1a:67:5a:fe:24 1 60 TP-LINK TECHNOLOGIES CO.,LTD
192.168.0.100 a8:60:b6:3a:56:ce 2 120 Apple, Inc.
192.168.0.101 e0:3f:49:14:a9:0d 1 60 Unknown vendorUseful Tools
DIRB
Searches all the directory contents on a website
Usage
Resources
gobuster
Directory/file & DNS busting tool written in Go.
Resources
Hydra
Exploiting Username and Password forms.
Usage
Resources
sqlmap
Used for doing SQL injection stuff.
Usage
When having to log into an PHPSESSIONID auth:
Last updated