Difference between revisions of "Pentest"

From YobiWiki
Jump to navigation Jump to search
Line 6: Line 6:
 
<br>Because I'm reading [http://www.ed-diamond.com/produit.php?produit=511 MISC HS 1] (in french) and I want to make some scrapbooking.
 
<br>Because I'm reading [http://www.ed-diamond.com/produit.php?produit=511 MISC HS 1] (in french) and I want to make some scrapbooking.
 
<br>So I'll try to write down anything I do on that matter since now...
 
<br>So I'll try to write down anything I do on that matter since now...
  +
==Recording==
  +
* Write down what we've found, how and when
 
==Collecting information==
 
==Collecting information==
 
* website
 
* website
Line 18: Line 20:
 
** Reverse IP (all known domains, not just reverse lookup)<br><nowiki>http://whois.webhosting.info/11.22.33.44</nowiki> from [http://whois.webhosting.info]
 
** Reverse IP (all known domains, not just reverse lookup)<br><nowiki>http://whois.webhosting.info/11.22.33.44</nowiki> from [http://whois.webhosting.info]
 
* Search engines
 
* Search engines
** [http://blog.searchthetail.com/2007/08/rankings-top-100-alternative-search_05.html Big list of the top 100 alternative search engines]
+
** [http://blog.searchthetail.com/2007/08/rankings-top-100-alternative-search_05.html Big list of the top 100 alternative search engines], see also [http://altsearchengines.com/2007/08/01/the-top-100-alternative-search-engines-august/]
  +
** [http://www.alexa.com Alexa]: traffic ranking & other infos

Revision as of 12:18, 24 March 2008

Intro

Well a large subject...
You'll not find a howto here, more a checklist.
So why such a page?
Because I'm not doing pentests that often so when it happens, it's a bit unstructured.
Because I'm reading MISC HS 1 (in french) and I want to make some scrapbooking.
So I'll try to write down anything I do on that matter since now...

Recording

  • Write down what we've found, how and when

Collecting information

  • website
    • postal address, about us,...
    • robots.txt
    • WayBack machine
      http://web.archive.org/web/*/http://www.example.com from [1]
    • Google cache
      http://209.85.135.104/search?q=cache:http://www.example.com
    • Coralize
      http://www.example.com.nyud.net from [2]
    • traceroute
      http://www.dnsstuff.com/tools/tracert.ch?ip=http://www.example.com from [3]
    • Other online DNS tools
    • whois
      http://whois.webhosting.info/example.com from [4]
    • Reverse IP (all known domains, not just reverse lookup)
      http://whois.webhosting.info/11.22.33.44 from [5]
  • Search engines