Ethical Hacking & Penetration Testing en Sitios Web CMS [Udemy]

activo el ssh  o si no est´lo instalo

sudo apt install ssh
sudo service ssh restart  
sudo service ssh status
sudo systemctl enable ssh.service
  1. Reconocimiento
  2. Escaneo
  3. Obtener acceso
  4. Mantenar acceso
  5. Borrado de huellas
     

Detección de CMS

Codigo fuente, el robots.txt

Nmap cheetshet https://www.stationx.net/nmap-cheat-sheet/

 

ESCANEOS

nmap

sudo su

nmap -help

nmap -sn about.fb.com

nmap -sS about.fb.com

nmap -sS floristerianoe.com

nmap --top-ports 10 floristerianoe.com

nmap -sV floristerianoe.com

 

VER LOS SCRITPS

locate /user/share/nmap/scrips/

 

nmap -p 80,443 -sV --script vuln  floristerianoe.com

 

nmap --script http-sitemap-generator  floristerianoe.com

nmap --script http-wordpress-users  floristerianoe.com

 

ESCANEO DEL SISTEMA OPERATIVO

nmap --A  floristerianoe.com