-
I know Gobuster have plenty of functionalities, but some of them just don't appear on "--help", like "-b".
Why?
-
i've adjusted my config file to use 50 threads and only the common.txt wordlist which is a lot shorter. my scans still run for hours and often never finish at all, thus never generating the nice markd…
-
https://app.hackthebox.com/machines/CozyHosting
```
$ nmap -sC -sV -Pn 10.10.11.230
Starting Nmap 7.94SVN ( https://nmap.org ) at 2024-05-15 23:46 JST
Nmap scan report for 10.10.11.230
Host is up…
-
https://app.hackthebox.com/machines/Analytics
```
$ nmap -sC -sV -Pn 10.10.11.233
Starting Nmap 7.94SVN ( https://nmap.org ) at 2024-05-13 22:20 JST
Nmap scan report for 10.10.11.233
Host is up…
-
I have had contact with some cases that althouth the response is 200 OK, it is non interesting, because it is the way the web server responds by default, but then you check the page and it says Error.…
-
Subdomains enumeration:
Amass
Assetfinder
Crobat
Findomain
Github-subdomains
Subfinder
Sudomy
subdomainizer
sublister
findomain
Subdomain Takeover:
Subover
Autosubtakeover
Tko-…
-
I took the example command from the readme and replaced the wordlist and this error happened:
```
gobuster dns -d mysite.com -w /root/SecLists-master/Discovery/DNS/namelist.txt
2024/09/03 TIME …
-
https://app.hackthebox.com/machines/Nibbles
```
$ nmap -sC -sV -Pn 10.10.10.75
Starting Nmap 7.94SVN ( https://nmap.org ) at 2024-03-10 21:50 JST
Nmap scan report for 10.10.10.75
Host is up (0.…
-
https://app.hackthebox.com/machines/Bashed
```
$ nmap -sC -sV -Pn 10.10.10.68
Starting Nmap 7.94SVN ( https://nmap.org ) at 2024-02-24 17:22 JST
Nmap scan report for 10.10.10.68
Host is up (0.3…
-
Key points:
- Ladon server ---> https://www.exploit-db.com/exploits/43113
- webdav passwd.dav -> credential info --> upload php reverse file to webdav with the credential info
- PE: path is /dev/t…