Unisciti a noi in un viaggio nel mondo dei libri!
Aggiungi questo libro allo scaffale
Grey
Scrivi un nuovo commento Default profile 50px
Grey
Iscriviti per leggere l'intero libro o leggi le prime pagine gratuitamente!
All characters reduced
Penetration Testing of Computer Networks Using BurpSuite and Various Penetration Testing Tools - cover

Penetration Testing of Computer Networks Using BurpSuite and Various Penetration Testing Tools

Dr. Hedaya Alasooly

Casa editrice: BookRix

  • 0
  • 0
  • 0

Sinossi

Burp Suite is an integrated platform/graphical tool for performing security testing of web applications. Burp suite is a java application that can be used to secure or crack web applications. The suite consists of different tools, like a proxy server, a web spider an intruder and a so-called repeater, with which requests can be automated. You can use Burp's automated and manual tools to obtain detailed information about your target applications.
Damn Vulnerable Web App (DVWA) is a PHP/MySQL web application that is damn vulnerable. Its main goals are to be an aid for security professionals to test their skills and tools in a legal  environment, help web developers better understand the processes of securing web applications and aid teachers/students to teach/learn web application security in a class room environment.
In this report I am using a combination of Burp tools to detect and exploit vulnerabilities in Damn Vulnerable Web App (DVWA) with low security. By default, Burp Scanner scans all requests and responses that pass through the proxy. Burp lists any issues that it identifies under Issue activity on the Dashboard. You can also use Burp Scanner to actively audit for vulnerabilities. Scanner sends additional requests and analyzes the application's traffic and behavior to identify issues.
Various examples are outlined in this report for different types of vulnerabilities such as: SQL injection, Cross Site Request Forgery (CSRF), Cross-site scripting, File upload, Local and Remote File Inclusion. I tested various types of penetration testing tools in order to exploit different types of vulnerabilities. The report consists from the following parts:
1. Installing and Configuring BurpSuite
2. BurpSuite Intruder.
3. Installing XMAPP and DVWA App in Windows System.
4.  Installing PHP, MySQL, Apache2, Python and DVWA App in Kali Linux.
5. Scanning Kali-Linux and Windows Using  .  
6. Understanding Netcat, Reverse Shells and Bind Shells.
7. Adding Burps Certificate to Browser.
8. Setting up Target Scope in BurpSuite.
9. Scanning Using BurpSuite.
10. Scan results for SQL Injection Vulnerability with BurpSuite and Using SQLMAP to Exploit the SQL injection.
11. Scan Results for Operating System Command Injection Vulnerability with BurpSuite and Using Commix to Exploit the OS Command Injection.
12. Scan Results for Cross Side Scripting (XSS) Vulnerability with BurpSuite, Using Xserve to exploit XSS Injection and Stealing Web Login Session Cookies through the XSS Injection.
13. Exploiting File Upload Vulnerability.
14: Exploiting Cross Site Request Forgery (CSRF) Vulnerability.
15. Exploiting File Inclusion Vulnerability.
16. References.
Disponibile da: 24/02/2023.
Lunghezza di stampa: 66 pagine.

Altri libri che potrebbero interessarti

  • ASMR to Ease Insomnia: Fall Asleep Instantly - cover

    ASMR to Ease Insomnia: Fall...

    Whispering Voice

    • 0
    • 0
    • 0
    ASMR to Ease Insomnia: Fall Asleep Instantly is your solution to a peaceful, restful night when insomnia keeps you awake. Designed to gently guide you into a deep slumber, this audiobook combines the calming effects of ASMR with soothing whispers and sounds to quiet your mind and ease tension. Whether you're struggling with racing thoughts, stress, or simply can’t seem to fall asleep, this audiobook is here to help you unwind and drift off effortlessly. 
    As you listen, each soft whisper helps you release the anxiety and mental clutter that stand in the way of sleep. The relaxing sounds lull you into a deep state of relaxation, signaling your body that it’s time to rest. ASMR to Ease Insomnia is designed to clear your mind, reduce stress, and help you enter a tranquil state where sleep comes naturally and quickly. 
    Perfect for anyone dealing with insomnia or restless nights, this audiobook provides the tools you need to reset your sleep cycle. Just press play, close your eyes, and let the whispers guide you into a peaceful, restful night of sleep.
    Mostra libro
  • Joseph Bazalgette - A Life from Beginning to End - cover

    Joseph Bazalgette - A Life from...

    Hourly History

    • 0
    • 0
    • 0
    Discover the remarkable life of Sir Joseph Bazalgette...Sir Joseph Bazalgette was a visionary engineer, a master city planner, and a pioneer of public health whose work transformed Victorian London. Best known for designing London's sewer network, he played a crucial role in eliminating deadly epidemics and turning the polluted River Thames into one of the cleanest urban waterways in the world. His remarkable achievements not only saved countless lives but also reshaped the city's infrastructure, leaving a lasting impact that endures to this day.Discover topics such as:
    
    Early Years
    The Big Stink
    Bazalgette's Plan
    The Embankments
    Bridges across the Thames
    Mostra libro
  • Celtic Hedge Witchery—A Modern Approach - cover

    Celtic Hedge Witchery—A Modern...

    Joey Morris

    • 1
    • 0
    • 0
    “An invaluable tool for anyone wanting to deepen their connection not only to themselves but also to nature and the spirits that are all around. Joey Morris provides practical advice and techniques that offer a diverse and different way of connecting to the three worlds that are associated with Celtic beliefs.” —Jane Matthews, director of the World Divination Association   A revolutionary take on hedge witchery that focuses on what it means to reconnect with the sacred hedge in a modern world, Celtic Hedge Witchery—A Modern Approach teaches the ways, ideas, and methods of the hedgerow, so they become accessible even to those who cannot visit the physical locations themselves. Delving into secret liminal spaces, Morris expands the knowledge and understanding of what it means to truly embody the witchcraft life. She connects readers to the wildcrafting elements of plants and natural remedies, realigning the soul to the vibrations of the spiritual ecosystem to reconnect with the Earth and all her spirits. In a time when modernity, technology, and disconnection from the land has caused so many of us to feel lost and disheartened, Morris helps foster our kinship with the land.   Weaving together Morris’s personal witchcraft gnosis, Celtic Hedge Witchery focuses on embracing the shadows within ourselves as a reflection of sacred spaces. Morris offers a revolutionary take on what it means to be a hedge witch in the modern era and empowers us to “come home” to both the Earth and to ourselves. Spell work, recipes, meditative guides, and evocative poetry help guide us in connecting with Celtic deities of land, sea, and sky and in crossing the hedge into the Otherworld. Learn how to connect to your own natural witchcraft.Find the sacred landscape within yourself. Connect with plant and animal spirit allies within the hedge and benefit from their spiritual power.
    Mostra libro
  • Solfeggio Healing Frequency 174Hz Meditation 60 minutes - RELIEVE PHYSICAL AND EMOTIONAL PAIN - cover

    Solfeggio Healing Frequency...

    Sara Dylan

    • 0
    • 0
    • 0
    Solfeggio Healing Frequency 174Hz Meditation 60 minutes 
    In this audio listening experience, Sara Dylan will be leading you gently into a quiet healing meditation using 174Hz frequency: 174Hz Frequency music can help relieve both physical and emotional pain and stress. 
    If you struggle with pain, stress, and poor sleep, a single note could change everything. Solfeggio frequencies are specific pitches known for their healing properties among people of different cultures for millennia. The 174 hertz frequency is a powerful healing tone that can alleviate pain and stress and help you sleep better. 
     
    Relax and enjoy.
    Mostra libro
  • Microservices with Spring Boot and Spring Cloud - Develop modern resilient scalable and highly available apps using microservices with Java Spring Boot 30 and Spring Cloud - cover

    Microservices with Spring Boot...

    Tejaswini Jog

    • 0
    • 0
    • 0
    Microservices has emerged as a powerful solution to build flexible, scalable, and resilient applications. This Book is the go-to-guide to understanding, designing, and implementing microservice architectures using Spring Boot. It takes you on a journey through the intricacies of microservices to create robust and efficient microservice-based applications.
    This book helps you to understand the motivations and the entire process behind migrating from monolithic to microservice architectures. It covers essentials like REST basics, advanced topics such as centralized configuration, inter-service communication, Eureka Server, resilience mechanisms, security, and Docker deployment.
    Readers will be equipped to effortlessly find and access instances within a microservice architecture without disrupting clients. You will delve into distributed tracing and its importance in monitoring the interactions among microservices. Finally, we will discuss strategies for ensuring the reliability of your microservices architecture.
    Whether you're new to microservices or seeking to enhance your existing expertise, this book is your comprehensive guide to navigating the intricacies of modern application development. Embark on your microservices journey today and unlock the potential of Spring Boot in crafting efficient, scalable, and resilient software solutions.
    Mostra libro
  • A Stroke of Grace - A Guide to Understanding and Living with an Acquired Brain Injury - cover

    A Stroke of Grace - A Guide to...

    Julianne Heagy

    • 0
    • 0
    • 0
    Julianne Heagy experienced a stroke on May 21, 2019. 
    Following her stroke, she felt unsupported by the systems in place to care for post-stroke victims. She knew there were resources available but with an inability to hold a thought or comprehend written words, Julianne became frustrated with her search for information. Aside from her family doctor, she seemed to be alone in her struggle to find information about therapies, services, and policies. 
    As Julianne began to heal, she could recall some of what she needed to know and committed to taking notes and sharing her findings with others on the same acquired brain injury path. This book is a roadmap of what Julianne learned on her journey. 
    It is Julianne’s firm belief that everything in our lives happens for us and not to us. She wrote this book now because she found improvement in her health, peace, and joy and wanted to use her experience to help others. 
    The author’s goal is to educate, empower and encourage others with an acquired brain injury. This book provides the information, easily and simply, for those struggling to ask the questions and find the resources.
    Mostra libro