Hands-On Application Penetration Testing with Burp Suite
by Carlos A. Lozano, Dhruv Shah, Riyaz Ahemed Walikar
Default credentials
As mentioned previously, in this section, there are applications that have default credentials when they are installed. With some of them, this is because they are not installed directly, but use packages with the OS or because they are part of another application. For example, some integrated development environments (IDE) have web or application servers in their installations, which are used for testing purposes.
Also, there are testing tools or packages that use database management systems (DBMS), but these systems have vulnerabilities or default access that exposes them.
After doing some scouting, you will be able to know the applications, servers, and technology behind an application, and just looking for the term ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access