“Day 2: Reconnaissance — How I Found My First Real Bug (And How You Can Too)”
文章讲述了作者学习网络渗透测试的过程,从基础到实战,通过侦察技术发现了一个真实的漏洞——暴露的管理面板。作者强调了目标选择的重要性,并介绍了常用的工具Sublist3r,分享了如何通过寻找隐藏子域名发现安全问题的经验。 2025-8-4 04:45:13 Author: infosecwriteups.com(查看原文) 阅读量:23 收藏

Aman Sharma

On Day 1, I learned the basics. On Day 2, I got real. I remember staring at a company’s website, completely lost — where do I even start? Then I discovered reconnaissance, and everything changed. That’s when I found my first real-world bug: an exposed admin panel that shouldn’t have been public. Here’s exactly how I did it — step by step.

free link

Zoom image will be displayed

Most beginners (including me) jump straight into hacking forms and inputs. Big mistake.

Real-World Example:

A hacker named @TomNomNom once found a subdomain takeover on a Fortune 500 company. How? He simply listed all their subdomains and checked for misconfigurations. Payout? $15,000.

Lesson: 90% of hacking is finding the right target.

Forget complicated setups. Here’s what I use daily:

1. Sublist3r (The Subdomain Finder)

  • What it does: Finds hidden subdomains (like admin.example.com, dev.example.com).
  • How to use:

文章来源: https://infosecwriteups.com/day-2-reconnaissance-how-i-found-my-first-real-bug-and-how-you-can-too-dbf81cb44069?source=rss----7b722bfd1b8d---4
如有侵权请联系:admin#unsafe.sh