Performing an Initial Discovery on the Targeted Website
The first step in a website assessment is to identify the components that make up the website and that will be tested. In security terms, this discovery activity is also referred to as fingerprinting and enumeration—identifying and listing various components of a website platform that need to be tested or attacked. A variety of tools and techniques determine the following types of elements:
-
Internet Protocol (IP) addresses associated with the website platform
-
Services and/or applications that are running on the servers in the website platform, for example, Hypertext Transfer Protocol (HTTP), Domain Name System (DNS), File Transfer Protocol (FTP), Telnet, and Simple Mail Transfer Protocol ...
Get Internet and Web Application Security, 3rd Edition now with the O’Reilly learning platform.
O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.