<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>WPT | KC's Blog</title>
	<atom:link href="https://www.kjctech.net/tag/wpt/feed/" rel="self" type="application/rss+xml" />
	<link>https://www.kjctech.net</link>
	<description></description>
	<lastBuildDate>Tue, 24 Jan 2023 18:20:58 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	

<image>
	<url>https://i0.wp.com/www.kjctech.net/wp-content/uploads/2016/12/cropped-KC-Logo.png?fit=32%2C32&#038;ssl=1</url>
	<title>WPT | KC's Blog</title>
	<link>https://www.kjctech.net</link>
	<width>32</width>
	<height>32</height>
</image> 
<site xmlns="com-wordpress:feed-additions:1">24634607</site>	<item>
		<title>Web Application Penetration Testing Cheat Sheet</title>
		<link>https://www.kjctech.net/web-application-penetration-testing-cheat-sheet/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=web-application-penetration-testing-cheat-sheet</link>
					<comments>https://www.kjctech.net/web-application-penetration-testing-cheat-sheet/#respond</comments>
		
		<dc:creator><![CDATA[Kent Chen]]></dc:creator>
		<pubDate>Wed, 11 Apr 2018 05:51:38 +0000</pubDate>
				<category><![CDATA[Network]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[WPT]]></category>
		<guid isPermaLink="false">https://www.kjctech.net/?p=3864</guid>

					<description><![CDATA[<p>This is a very nicely written cheat sheet by JDow.io for web application penetration testing. This cheat sheet is intended to run down the typical steps performed when conducting a web application penetration test. I will break these steps down into sub-tasks and describe the tools I recommend using at each level. Many of the ideas presented in this sheet [&#8230;]</p>
The post <a href="https://www.kjctech.net/web-application-penetration-testing-cheat-sheet/">Web Application Penetration Testing Cheat Sheet</a> first appeared on <a href="https://www.kjctech.net">KC's Blog</a>.]]></description>
										<content:encoded><![CDATA[<p>This is a very nicely written cheat sheet by JDow.io for web application penetration testing.</p>
<blockquote><p>This cheat sheet is intended to run down the typical steps performed when conducting a web application penetration test. I will break these steps down into sub-tasks and describe the tools I recommend using at each level.</p>
<p>Many of the ideas presented in this sheet come from the <strong>fantastic</strong> teachings of <a href="https://lanmaster53.com/">Tim “lanmaster53” Tomes</a>, who has kindly allowed me to share them with you here. If you or anyone you know is interested in web application penetration testing <a href="https://lanmaster53.com/training">Training</a> I <strong>highly</strong> recommend that you or your company consider Tim.</p>
<p>Please bear in mind that these steps are <strong>iterative</strong> so in a typical engagement you can expect to do them multiple times. This is particularly true if you manage to traverse different levels of access in an application (e.g. elevate from a regular user to an admin).</p>
<p>Finally, throughout this sheet, I will heavily discuss tools included in PortSwigger’s <a href="https://portswigger.net/burp">Burp Suite Professional</a> which is a paid product intended for professional use. I apologize if this dissuades you, but at the price they offer the tool for I consider it a bargain.</p></blockquote>
<p>/via <a href="https://jdow.io/blog/2018/03/18/web-application-penetration-testing-methodology/">JDow.io</a>/</p>The post <a href="https://www.kjctech.net/web-application-penetration-testing-cheat-sheet/">Web Application Penetration Testing Cheat Sheet</a> first appeared on <a href="https://www.kjctech.net">KC's Blog</a>.]]></content:encoded>
					
					<wfw:commentRss>https://www.kjctech.net/web-application-penetration-testing-cheat-sheet/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">3864</post-id>	</item>
	</channel>
</rss>
