Detection via unique fingerprinting (hashing)

We saw in previous chapters that most web applications can be detected using their favicons. The md5 hash of the favicon for different versions can be compared to identify the version of Tomcat being used:

The following screenshot shows the hash in the OWASP favicon database list:

We can also maintain our favicon database to check for different versions of Apache Tomcat installations.

Get Hands-On Web Penetration Testing with Metasploit now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.