隐藏在显而易见之处——利用注释代码和网页元数据进行网站研究.pdf

编号:991956 PDF 27页 2.18MB 下载积分:VIP专享
下载报告请您先登录!

1、Hidden in Plain SiteLeverage Commented Code and Web Metadata for Website ResearchCristopher Uglea,Founder,No Nonsense IntelligenceFebruary 2025Summary1.Hidden website data2.Findings from OSINT research3.Automating data collection4.More findings from OSINT researchNo Nonsense IntelligenceAbout meCris

2、topher Uglea,Founder,No Nonsense Intelligence OSINT FOCUS AREAS:due diligence and corporate investigationsuserOSINT-shell:$whoami JUDISDICTIONS:01 Asia(Chinese speaking)02 EU(particularly Romania)EXPERIENCE:01 4 years investigations firm in Hong Kong02 3 years running IT and due diligence firmNo Non

3、sense IntelligenceI use this term to refer to information about a webpage that isnt visible in the browsers display-and can only be found in the source code.1.Hidden website data Its basically a collection of commented code,metadata and file-based clues.No Nonsense IntelligenceTypes of hidden dataTy

4、pePotential OSINT ApplicationsHTML CommentsCan reveal hidden information,like developer notes,removed content,or comments that expose sensitive details.File namesFile paths and names(e.g.,.pdf,.doc,.xls)may reveal sensitive data like creation dates,authors,or locations.Root filesFiles(/robots.txt,/s

5、itemap.xml,/ads.txt etc.)that give information on the sites structure,security policies,and other technical details.Meta tagsContain page descriptions,keywords,and social media preview data.Outdated tags can reveal abandoned projects or legacy information.HTML attributesProvides metadata about the p

6、age,such as language,framework,software versions,or technologies in use.JavaScript commentsInformation about debugging,old features,or developer notes that reveal functionality or vulnerabilities.Can reveal the background of the developers.JSON-LDDisplays structured data such as the organizations co

友情提示

1、下载报告失败解决办法
2、PDF文件下载后,可能会被浏览器默认打开,此种情况可以点击浏览器菜单,保存网页到桌面,就可以正常下载了。
3、本站不支持迅雷下载,请使用电脑自带的IE浏览器,或者360浏览器、谷歌浏览器下载即可。
4、本站报告下载后的文档和图纸-无水印,预览文档经过压缩,下载后原文更清晰。

本文(隐藏在显而易见之处——利用注释代码和网页元数据进行网站研究.pdf)为本站 (可不可以) 主动上传,三个皮匠报告文库仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对上载内容本身不做任何修改或编辑。 若此文所含内容侵犯了您的版权或隐私,请立即通知三个皮匠报告文库(点击联系客服),我们立即给予删除!

温馨提示:如果因为网速或其他原因下载失败请重新下载,重复下载不扣分。
客服
商务合作
小程序
服务号
折叠