🕸️Web Discovery

Methodology, tools and wordlists needed to perform a correct web discovery.

Discovery Tools

Feroxbuster

feroxbuster -w /usr/share/wordlists/dirb/big.txt -u http://0.0.0.0 -o feroxbuster.md

Gobuster

gosbuter dir -u http://0.0.0.0 -w /usr/share/dirb/wordlists/big.txt -o gobuster.md

FFUF

ffuf -c -w /usr/share/wordlists/dirb/big.txt -u http://0.0.0.0/FUZZ

Discovery Wordlists

Sometimes, we need to use several wordlists for one web scan to discover all endpoints.

/usr/share/wordlists/dirb/big.txt
/usr/share/wordlists/dirb/common.txt
/usr/share/wordlists/dirbuster/directory-list-2.3-medium.txt

Methodology

Last updated