Skip to main content

Command Palette

Search for a command to run...

CTF Pentesting Methodology

Updated
1 min read
CTF Pentesting Methodology

Enumeration

Directory Enumeration

  • Dirsearch

  • Gobuster

  • Dirbuster

  • wfuzz wfuzz -w /usr/share/seclists/Discovery/Web-Content/raft-medium-directories.txt <https://domain.com/api/FUZZ\>

  • ffuf Fast: ffuf -c -w /usr/share/wordlists/dirb/big.txt -u <http://10.10.10.10/FUZZ\>

  • chameleon

    • install: curl -sL <https://raw.githubusercontent.com/iustin24/chameleon/master/install.sh> | bash

    • execute ./chameleon --url <url> -a --fc 403

Vhost Enumeration

  • ffuf

  • gobuster vhost

  • sublist3r

  • Feroxbuster

Website Enumeration

  • caido

  • burp suite

  • wappalyzer

  • nikto

  • Look for:

    • /robots.txt

    • /sitemap.xml

Additional Enumeration

Website functionality

Common Attack Vectors

  • Web Application vulnerabilities

    • SQLi

    • No SQL

    • XSS

    • File Upload

    • IDOR

  • Default credentials

  • Misconfigured services

  • Known CVE exploits