<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Soroush Dalili - Computer Security Is My Interest! &#187; Mapping directory</title>
	<atom:link href="http://soroush.secproject.com/blog/tag/mapping-directory/feed/" rel="self" type="application/rss+xml" />
	<link>http://soroush.secproject.com/blog</link>
	<description>Soroush Dalili&#039;s blog - بلاگ سروش دلیلی</description>
	<lastBuildDate>Tue, 10 Jan 2012 22:54:43 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>New Method: Role of the “/” character in mapping the website directories! &#8211; Webservers fault?</title>
		<link>http://soroush.secproject.com/blog/2010/05/new-method-role-of-the-%e2%80%9c%e2%80%9d-character-in-mapping-the-website-directories/</link>
		<comments>http://soroush.secproject.com/blog/2010/05/new-method-role-of-the-%e2%80%9c%e2%80%9d-character-in-mapping-the-website-directories/#comments</comments>
		<pubDate>Thu, 06 May 2010 23:54:44 +0000</pubDate>
		<dc:creator>Soroush Dalili</dc:creator>
				<category><![CDATA[Security Articles]]></category>
		<category><![CDATA[Security Posts]]></category>
		<category><![CDATA[Mapping directory]]></category>
		<category><![CDATA[Mapping folder]]></category>
		<category><![CDATA[Slash role]]></category>
		<category><![CDATA[using slash as a signature]]></category>

		<guid isPermaLink="false">http://soroush.secproject.com/blog/?p=240</guid>
		<description><![CDATA[One of the first steps of a black-box penetration testing of a website is mapping its files and directories.  And in order to do that, security scanners crawl into the website first, and then try to guess the possible directories and files. These scanners use the response header or body of the page to investigate [...]]]></description>
			<content:encoded><![CDATA[<p style="text-align: justify;">One of the first steps of a black-box penetration testing of a website is mapping its files and directories.  And in order to do that, security scanners crawl into the website first, and then try to guess the possible directories and files. These scanners use the response header or body of the page to investigate a valid file or directory. For instance, the header status “404” can be the sign of “File Not Found” and “200” can be the sign of a valid file. Also, the status “403 Forbidden” can be the sign of a valid directory without any index page. However, many websites such as Yahoo, Google, Facebook, Microsoft, and so on do not like to show the “403 Forbidden” errors for a valid directory, and instead, they show a “Page Not found” or another default page to the users. Although this functionality makes the website more user-friendly, it is not good for the scanners at all; as there is no difference between a valid and an invalid directory then.</p>
<p style="text-align: justify;">Therefore, we need something else as a signature to improve the scanners result. And as a solution we can use a “/” as an identifier. In case of requesting a valid directory without adding a slash at the end of it, the web-server will add an slash automatically, and in case of having an invalid directory there will not be any slash at the end of the directory name.</p>
<p>Some examples:</p>
<p>Invalid Directory: <a href="http://www.microsoft.com/foobars">http://www.microsoft.com/foobars</a></p>
<p>Valid Directory: <a href="http://www.microsoft.com/test">http://www.microsoft.com/test</a></p>
<p>&#8212;&#8212;&#8211;</p>
<p>Invalid Directory: <a href="http://code.google.com/foobars">http://code.google.com/foobars</a></p>
<p>Valid Directory: <a href="http://code.google.com/js">http://code.google.com/js</a></p>
<p>&#8212;&#8212;&#8211;</p>
<p>Invalid Directory: <a href="http://www.facebook.com/foobars">http://www.facebook.com/foobars</a></p>
<p>Valid Directory: <a href="http://www.facebook.com/admin">http://www.facebook.com/admin</a></p>
<p>&#8212;&#8212;&#8211;</p>
<p>Invalid Directory: <a href="http://uk.yahoo.com/foobars">http://uk.yahoo.com/foobars</a></p>
<p>Valid Directory: <a href="http://uk.yahoo.com/private">http://uk.yahoo.com/private</a></p>
<p>&#8212;&#8212;&#8211;</p>
<p>Cheers,</p>
<p><strong>Soroush Dalili</strong></p>
]]></content:encoded>
			<wfw:commentRss>http://soroush.secproject.com/blog/2010/05/new-method-role-of-the-%e2%80%9c%e2%80%9d-character-in-mapping-the-website-directories/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

