TryHackMe - Nahamstore
Recon
tips and general things to try
wfuzz
┌─[✗]─[gabrielle@parrot]─[~]
└──╼ $wfuzz -c -f sub-fighter -w /usr/share/seclists/Discovery/DNS/subdomains-top1million-5000.txt -u 'http://nahamstore.thm/' -H "HOST:FUZZ.nahamstore.thm" --hw 65
/usr/lib/python3/dist-packages/wfuzz/__init__.py:34: UserWarning:Pycurl is not compiled against Openssl. Wfuzz might not work correctly when fuzzing SSL sites. Check Wfuzz's documentation for more information.
********************************************************
* Wfuzz 3.1.0 - The Web Fuzzer *
********************************************************
Target: http://nahamstore.thm/
Total requests: 4989
=====================================================================
ID Response Lines Word Chars Payload
=====================================================================
000000001: 301 7 L 13 W 194 Ch "www - www"
000000037: 301 7 L 13 W 194 Ch "shop - shop"
000000254: 200 41 L 92 W 2025 Ch "marketing - marketing"
000000960: 200 0 L 1 W 67 Ch "stock - stock"
Total time: 206.7410
Processed Requests: 4989
Filtered Requests: 4985
Requests/sec.: 24.13163


gobuster

nmap

Summary
Subdomains
Pages to keep aside for later and notes
XSS
Vulnerable endpoint


User-Agent



Id parameter


Hidden parameter




H1 tag


Other hidden parameter


Open Redirect
Parameter 1
Parameter 2



CSRF


csrf_protect token analysis
Exploitation
Password field


Email field

IDOR
Address


Orders


LFI

SSRF

COMING SOON

Resources
Last updated


