CHAPTER 6Website Information Gathering

As we move on to the next step of intelligence gathering, we can now start to look at websites themselves. Fingerprinting a website is the absolute first step in developing a game plan for further investigation. When performing attack surface discovery against a target, or even an entire organization, you can learn a tremendous amount of information by performing a little bit of passive reconnaissance. This is where our journey begins.

BuiltWith

As a starting point, it is generally a good idea to understand which technologies are in use on your target's web app. Builtwith.com is a great place to start. BuiltWith is designed to be a lead generation and sales tool that allows salespeople to identify technologies present on a website or web application. As it happens, it's also great for initial recon on a website or ...

Get Hunting Cyber Criminals now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.