登录
下载
技能
编程开发
安全侦察与测试方法论规划
安全侦察与测试方法论规划
v20260506
recon-for-sec
这是针对新目标或未知攻击面设计的起点路由器,用于规划全面的安全评估流程。它指导用户进行范围映射、资产发现、技术指纹识别和端点库存构建,帮助用户在深入漏洞检查前,制定出最高效、高价值的测试路径。
安全
侦察
方法论
渗透测试
资产发现
指纹识别
获取技能
112 次下载
概览
Recon and Methodology Router
This is the starting router for new targets and unknown attack surfaces.
When to Use
You just received a new target and do not yet know what to test first
You need to begin with asset discovery, tech fingerprinting, endpoint inventory, and test-route planning
You want to build follow-up testing on structured methodology instead of random payload enumeration
Skill Map
Recon and Methodology
Insecure Source Code Management
— .git/.svn/.hg exposure detection
Dependency Confusion
— Supply chain reconnaissance for internal package names
Recommended Flow
First confirm in-scope assets and target type
Then perform asset discovery, port/service identification, technology fingerprinting, and endpoint collection
Route based on collected findings to
api-sec
,
auth-sec
,
injection-checking
, or
business-logic-vuln
信息
Category
编程开发
Name
recon-for-sec
版本
v20260506
大小
1.35KB
Source
yaklang/hack-skills
更新时间
2026-05-08
语言
简体中文
English