Book

Hands-On Web Penetration Testing with Metasploit

Metasploit is one of the best frameworks used for enumeration and exploitation of vulnerabilities. This book will not only give you a practical understanding of Metasploit but will also cover some less known modules and auxiliaries for pentesting Web Applications.

Offered byPackt Logo

Difficulty Level

Intermediate

Completion Time

18h8m

Language

English

About Book

Who Is This Book For?

This book is for web security analysts, bug bounty hunters, security professionals, or any stakeholder in the security sector who wants to delve into web application security testing. Professionals who are not experts with command line tools or Kali Linux and prefer Metasploit’s graphical user interface (GUI) will also find this book useful. No experience with Metasploit is required, but basic knowledge of Linux and web application pentesting will be helpful.

Book content

chapters 18h8m total length

Introduction to Web Application Penetration Testing

Metasploit Essentials

The Metasploit Web Interface

Using Metasploit for Reconnaissance

Web Application Enumeration using Metasploit

Vulnerability scanning using WMAP

Vulnerability Assessment using Metasploit (Nessus)

Pentesting CMSes — WordPress

Pentesting CMSes — Joomla

Pentesting CMSes — Drupal

Penetration Testing on Technological Platforms — JBoss

Penetration Testing on Technological Platforms — Apache Tomcat

Penetration Testing on Technological Platforms — Jenkins

Web Application Fuzzing — Logical Bug Hunting

Writing Penetration Testing Reports

Related Resources

Access Ready-to-Use Books for Free!

Get instant access to a library of pre-built books—free trial, no credit card required. Start training your team in minutes!

No credit card required