| Login/out | PW change | PW reset | Contact Support | View product | View cart | Check out | |||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Learn app | Done | To-do | |||||||||||||||||||||||||||||
| Check app tech | To-do | To-do | |||||||||||||||||||||||||||||
Use app manually
|
|
|
|||||||||||||||||||||||||||||
| Automatic attacks | To-do | To-do | |||||||||||||||||||||||||||||
Manual attacks
|
|
|
| Tools: | |
| Burp Suite: | |
| OWASP ZAP: 2 Sessions, 1 Vuln, 1 Report, Open new Session | |
| Metasploit: | |
| nmap: | |
| App URLS: | |
| http://www.example.com/login?redirect=badstuffhere | |
| App documentation: | |
| http://www.example.com/docs/HowToLogin.html | |
| Bug-bounty reports: | |
| Report1.md |