Pentesting Web checklist
Supaya kamu ga pusing harus ngapain aja kalo mau pentest web ya.
Sumber: Pentest Book six2dez
Recon phase
Large scope
Medium scope
Small scope
Network
Preparation
User management
Registration
Authentication
Session
Profile/Account details
Forgot/reset password
Input handling
Error handling
Application Logic
Other checks
Infrastructure
CAPTCHA