Tools and Website Used For Pen Testing: Website To Check Reverse IP Check Used Is
Tools and Website Used For Pen Testing: Website To Check Reverse IP Check Used Is
Website: http://www.sagarratnamm.wordpress.com/
About This website:
Sagar Ratnamm started its first branch in Defence Colony in 1986 and
since then it has moved on to become the most preferred destination for
South Indian cuisines across the country. Within a short span Sagar
Ratnamm has spread its wings far and wide and today with more than 90
restaurants, Sagar Ratnamm has established its presence in the National
Capital Region (NCR) through company owned restaurants and in
various prominent cities of North India through franchise outlets.
Having won numerous awards in the Hospitality industry in various
categories over the years, Sagar Ratnamm continues to delight its
customers with its authentic South Indian food cooked fresh many times
a day.
IP address of website:
IP address of this website is 192.0.78.12. The website used to find out IP
address is http://whois.domaintools.com .
Vulnerabilities Check
To test and check vulnerabilities present in the website we use a
powerful and free tool called OWASP ZAP.
Start Window of OWASP ZAP
HTML report
In the website, we found total 17 alerts of which 1 alert was a high, 3
were medium and 12 were low reports. Another report was
informational report on our website. Along with alert other data is also
shown like solutions to the alert, URL where vulnerability is present and
other important info.
High alert was found for SQL injection vulnerability. This vulnerability
is widely faced problem in todays web database systems using SQL. It
allows attacker to execute database query in URL and gain access to
some confidential information.
SQL Injection (SQLi) is a type of an injection attack that makes it
possible to execute malicious SQL statements. These statements control
a database server behind a web application. Attackers can use SQL
Injection vulnerabilities to bypass application security measures.
Click to look for OWASP ZAP Report for this website
In this website, SQL injection vulnerability was found at URL:
https://sagarratnamm.wordpress.com/wp-comments-post.php
Some solutions to the problem are:
Do not trust client side input, even if there is client side validation
in place.
If database Stored Procedures can be used, use them
Grant the minimum database access that is necessary for the
application.
Do not create dynamic SQL queries using simple string
concatenation.
DATA Extraction:.
For web data extraction we use a online web tool called Web data
Extractor.
Using this tool we cannot extract any data from this site.
Website: http://www.rmlhospital.wordpress.com/
About This website:
Our mission is keeping you healthy… And fit The Mission of Reading
Hospital is to provide compassionate, accessible, high quality, cost
effective healthcare to the community; to promote health; to educate
healthcare professionals; and to participate in appropriate clinical
research.
IP address of website:
IP address of this website is 192.0.78.12. The website used to find out IP
address is http://whois.domaintools.com .
DATA Extraction
For web data extraction we use a online web tool called Web data
Extractor.
Website of this tool is http://www.webextractor.com/index.htm
Using this tool we cannot extract any data from this site.
Website: http://www.havelee.wordpress.com/
About This website:
Haveli is popular for great Quality food, fairly fast friendly service. Our
2 branches are Karnal Havelli and GT Road Havelli.
IP address of website:
IP address of this website is 192.0.78.12. The website used to find out IP
address is http://whois.domaintools.com .