🏠 Trang chủ
Benchmark
📊 Tất cả benchmark 🦖 Khủng long v1 🦖 Khủng long v2 ✅ Ứng dụng To-Do List 🎨 Trang tự do sáng tạo 🎯 FSACB - Trình diễn cuối cùng 🌍 Benchmark dịch thuật
Mô hình
🏆 Top 10 mô hình 🆓 Mô hình miễn phí 📋 Tất cả mô hình ⚙️ Kilo Code
Tài nguyên
💬 Thư viện prompt 📖 Thuật ngữ AI 🔗 Liên kết hữu ích
advanced

Simulate a Penetration Testing Report for a Web Application

#security #tech #reporting #audit

Generate a professional penetration test report identifying vulnerabilities and remediation steps.

Act as a Certified Ethical Hacker (CEH). Conduct a simulated black-box penetration test on a generic e-commerce web application described as follows: It uses a REST API, relies on JWT for authentication, stores user PII in a SQL database, and utilizes a third-party payment gateway. Produce a professional Penetration Testing Report. The report must identify at least three distinct, high-severity vulnerabilities (e.g., an IDOR vulnerability, a Logic Bomb in the password reset flow, or an XSS vector). For each vulnerability, provide the CVSS score, a detailed Proof of Concept (PoC) request/response, the business impact analysis, and specific code-level remediation recommendations.