Penetration Testing mailing list archives
Word lists, again...
From: Alberto Grazi <Alberto.Grazi () citria com>
Date: Wed, 23 May 2001 10:53:39 +0100
Hi, during a pen-test I have found a directory which probably has exec permission. Since I didn't have any name of files (listing is not allowed) my approach was to try a sort of "dictionary attack" on the URL. I tried with a normal English dictionary but it didn't find anything (each word was truncated to the 8th char and ".exe" was appended)... does anyone know if there is a list of common names of CGIs available (for Unix and win platforms) ? Thx Alberto
Attachment:
smime.p7s
Description:
Current thread:
- Word lists, again... Alberto Grazi (May 23)
- Re: Word lists, again... Ryan Russell (May 23)
- Re: Word lists, again... H D Moore (May 23)
- Re: Word lists, again... Philip Stoev (May 24)
- <Possible follow-ups>
- RE: Word lists, again... Chris Tobkin (May 24)
- RE: Word lists, again... R. DuFresne (May 24)
- RE: Word lists, again... Barber, Chris (May 24)