Pentesting Web checklist

Recon phase

Small scope

Medium scope

Large scope

Network

Preparation

User management

Registration

Authentication

Session

Profile/Account details

Forgot/reset password

Input handling

Error handling

Application Logic

Other checks

Infrastructure

CAPTCHA

Security Headers

Last updated