Reconnaissance & Scanning
Learn passive and active reconnaissance — strictly within authorized scope — using Nmap, Amass, and OSINT tooling.
OSINT workflow
The document is part of the OWASP Web Security Testing Guide (v4.2) focusing on Information Gathering for web application security testing. It outlines various techniques to gather information about web applications, including: conducting search engine reconnaissance to find information leaks, fingerprinting web servers, reviewing metafiles for sensitive information, enumerating applications on the server, examining webpage content, identifying application entry points, mapping execution paths through the application, fingerprinting web application frameworks and applications, and mapping the overall application architecture. Each technique aims to identify vulnerabilities and improve the security posture of web applications.
Source synthétisée — 6/4/2026
Ressources complémentaires