First Step of VA/PT - Foot Printing


In order to perform VA/PT, it is very important to understand all possible areas which could give some information on vulnerability.  Foot Printing is one such part which is described below.


Foot Printing (Phase 1-VAPT)

             EXTERNAL PT                                                                               INTERNAL PT       
  • Phone Number (Identify Phone No and do Social Eng.)      Internal DNS
  • Network                                                                                       Private Websites
  • Public Websites                                                                          Dumpster Diving
  • Email (Use for Phishing)                                                            Shoulder Surfing
  • Who is                                                                                          Eaves Dropping
  • DNS
  • IP Blocks
  • Net Blocks
  • WebSrv Content
  • Source Code
  • Website Mirroring
  • OS Detecting
  • Public Directory
  • Public Database
  • Search Engine
  • URL Analysis
  • Social Networks
  • Financial Web
  • Job sites
  • Alert Websites
  • Achieve Sites
  • Web Monitoring
  • Customers
  • Google Hacking

Comments

Popular posts from this blog

Payment Gateway Security Testing Checklist

Network Security VAPT Checklist

How to dump Database using Sqlmap