πWeb Enumeration & Exploitation
π― Overview
Web applications present the largest attack surface during External Penetration Tests. Focus on high-risk vulnerabilities (RCE, data exposure) rather than minor issues. Use EyeWitness for efficient application discovery and systematic testing of each discovered service.
π Web Application Discovery
π EyeWitness Automation
# Subdomain list preparation
cat > ilfreight_subdomains << EOF
inlanefreight.local
blog.inlanefreight.local
careers.inlanefreight.local
dev.inlanefreight.local
gitlab.inlanefreight.local
ir.inlanefreight.local
status.inlanefreight.local
support.inlanefreight.local
tracking.inlanefreight.local
vpn.inlanefreight.local
monitoring.inlanefreight.local
EOF
# Automated screenshot capture
eyewitness -f ilfreight_subdomains -d ILFREIGHT_subdomain_EyeWitnessπ Application-by-Application Analysis
π blog.inlanefreight.local - Drupal 9
πΌ careers.inlanefreight.local - Job Portal
π§ dev.inlanefreight.local - Key Vault
πΊ Unrestricted File Upload Chain
π° ir.inlanefreight.local - WordPress
π status.inlanefreight.local - Log Search
π« support.inlanefreight.local - IT Support Portal
π¦ tracking.inlanefreight.local - PDF Generator
π vpn.inlanefreight.local - Fortinet SSL VPN
π¦ gitlab.inlanefreight.local - GitLab Instance
π shopdev2.inlanefreight.local - Shopping Cart
π monitoring.inlanefreight.local - Monitoring Console
π― Key Vulnerabilities Discovered
π΄ High Risk Findings
π‘ Medium Risk Findings
π Attack Chain Summary
π― External β Internal Pivot Path
π§ Tools & Techniques Used
π Web Enumeration
βοΈ Exploitation Techniques
π― HTB Academy Labs
π Lab Solutions Summary
π Key Learning Points
π‘οΈ Defensive Recommendations
π Application Security
Last updated