80/443 - HTTP(s)
Enumeration process
1. Manual review
2. Scan for vulnerabilities
nikto -h 10.11.1.5
BurpSuite Pro active/live scan
ZAP active scan
Nessus web application scan3. Identify underlying server technologies
4. Scan for open directories
Directory busting methodology (order of precedence)
The following tools (and others) all have similar forced browsing functionality.
Dirsearch
Dirb
ffuf
BurpSuite
5. Finally, review and test interesting items
Testing SSL
Nmap scripting engine
SSLscan
Qualys SSL labs
Last updated