Web Recon

HTTP/HTTPS application-layer reconnaissance after a web service is identified: fingerprinting, content/API discovery, JS/source maps, proxy/cache topology, WAF, CMS, and known CVE/PoC candidates. Recon only — do not exploit, write files, or obtain a shell. Hand CVE candidates and attack surface to the operator, who may select /web-attack. Non-HTTP ports belong to /recon.

pale-knight 3835b51 6 files · 25.3 KB Updated

File contents

pale-knight/redteam-skill/tree/main/skills/web-recon commit 3835b51f3b

Frequently asked questions

npx skillmds@latest add pale-knight/web-recon