Web Attacks: Enumeration
This lab will teach you web application enumeration and sub-domain discovery. You'll gain hands-on experience in identifying and examining web application structures.
Terms and conditions apply.
Lab info
Lab author
Challenge
Getting Started in the Lab Environment
Here are the initial instructions and explanation of the lab environment. Read this while your environment is busy creating itself from nothing. Yes, this violates physics; we know. How fun!
Challenge
Web Application Reconnaissance and Fingerprinting
In this challenge, you analyze a web application using manual and automated techniques. Conduct preliminary enumeration by identifying technologies and subdomains to understand the web app structure.
Challenge
Directory and File Enumeration
In this challenge, you dive deeper into the Dark Kittens web application. You will use tools such as DirBuster and FFUF to uncover hidden files and directories that could be additional entry points.
Challenge
The Last Challenge
Welcome to the final challenge! This is your last chance to experiment in the environment. Clicking Finish Lab will end this little world that flittered into existence just for you.
Provided environment for hands-on practice
We will provide the credentials and environment necessary for you to practice right within your browser.
Guided walkthrough
Follow along with the author’s guided walkthrough and build something new in your provided environment!
Did you know?
On average, you retain 75% more of your learning if you get time for practice.
Recommended prerequisites
- Basic Linux Operating System experience
- Basic understanding of how networking and applications work