We expect a high standard of professionalism from you at all times while you are taking any of our courses. We expect all students to act in good faith at all times
TLDR: Don’t be a jerk
* not exactly
the good stuff
pentesting / vulnerability report
check out waugh.zip/6443/resources/recon
these should always be your first steps
important to expand & understand your attack surface
recon that doesn’t involve interacting with the service
website.com (don’t try it at home)
interacting with the application
nobody exposes information in HTML…
grab a big list of words, and see if any of them resolve:
if you use automated tools, pls dont use uni DNS servers, use these :)
BurpSuite and ProxySwitchy oh my