
1. Enumeration:
- Nmap scan:

let’s add academy.htb to our hostnames:

Wfuzz:
$ wfuzz -u http://academy.htb/FUZZ.php -w /usr/share/dirb/wordlists/common.txt --hc 404,403 -t 100



let’s add academy.htb to our hostnames:

Wfuzz:
$ wfuzz -u http://academy.htb/FUZZ.php -w /usr/share/dirb/wordlists/common.txt --hc 404,403 -t 100
