Mastering Thick Client Pentesting

Ramkrishna Sawant
1 min readNov 27, 2023

--

Hello everyone, myself Ramkrishna Sawant. So, while learning thick client pentesting, I have gone through many resources, which I have attached below with a proper path for learning.

Thick client architecture

Before deepening the dive into thick client pentesting, let's understand thick client architecture.

Understanding the architecture
Difference between thick and thin client application

Youtube resource

Go through the video to understand the methodology

Thick Client Pentesting with Harsh Bothra

NETSPI Thick client blogs

I recommend reading all 6 blogs that I provided below.
Blog 1
Blog 2
Blog 3
Blog 4
Blog 5
Blog 6

Pentesting Checklist

You can find the thick client pentesting checklist here

Vulnerable applications

Below is the vulnerable application to practice the thick client attacks.

DVTA

Additional resource

You can refer to the below resources for more.
cobalt
cyberark
payatu
Threat_intelligence
medium

I hope you guys enjoy reading my write-up! , if you have any doubts, you can reach me on twitter and Linkedin.

--

--

Ramkrishna Sawant
Ramkrishna Sawant

Written by Ramkrishna Sawant

Senior Security Analyst | Bug bounty hunter

Responses (2)