> For the complete documentation index, see [llms.txt](https://hacking-notes.jord4n.pro/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://hacking-notes.jord4n.pro/pt-br/hacking-tools/web/web-recon-and-bypass-resources.md).

# Recursos de reconhecimento web e bypass

Use estes recursos para descoberta de superfícies web, perfilamento de tecnologias, pesquisa de payloads, detecção de WAF, referências para bypass de WAF e suporte rápido a provas de conceito.

## Ferramentas e Recursos

<table data-card-size="large" data-column-title-hidden data-view="cards" data-full-width="false" data-search="false"><thead><tr><th>Nome</th><th>Descrição</th><th data-type="content-ref">Link oficial</th><th data-hidden data-card-cover data-type="image">Imagem de capa</th></tr></thead><tbody><tr><td><strong>Fuzzing web</strong></td><td>Metodologia interna para descobrir diretórios ocultos, arquivos, parâmetros e recursos expostos.</td><td><a href="/pages/44fc2b0723d3e0bdce0fe8bf6b0e9ee364b927a8">/pages/44fc2b0723d3e0bdce0fe8bf6b0e9ee364b927a8</a></td><td><a href="/files/7204907931cf386c660f3376c97c77df433ff167">/files/7204907931cf386c660f3376c97c77df433ff167</a></td></tr><tr><td><strong>Perfilamento web</strong></td><td>Metodologia interna para identificar tecnologias, frameworks, CMSs, servidores e versões expostas.</td><td><a href="/pages/9d469a44020a6093297b24d9240fb3fed0209493">/pages/9d469a44020a6093297b24d9240fb3fed0209493</a></td><td><a href="/files/6f47a3d4446cb19d01cfde318ee42ec4955b5158">/files/6f47a3d4446cb19d01cfde318ee42ec4955b5158</a></td></tr><tr><td><strong>Subdomínios</strong></td><td>Metodologia interna para descobrir subdomínios por meio de técnicas passivas, ativas e de fontes públicas.</td><td><a href="/pages/52b762b2e3baf47cc7b2776ef8983543914b6e0f">/pages/52b762b2e3baf47cc7b2776ef8983543914b6e0f</a></td><td><a href="/files/577bb1b2f54473528fdab0dfb888857f59e5151e">/files/577bb1b2f54473528fdab0dfb888857f59e5151e</a></td></tr><tr><td><strong>Google Dorking</strong></td><td>Metodologia interna para encontrar arquivos indexados, painéis expostos, backups e artefatos web públicos.</td><td><a href="/pages/f37132fde88cf30c3fe8b67f26645c1bac5da4ad">/pages/f37132fde88cf30c3fe8b67f26645c1bac5da4ad</a></td><td><a href="/files/224e2175cdfd7438ea5c78c5186e7777c88c0243">/files/224e2175cdfd7438ea5c78c5186e7777c88c0243</a></td></tr><tr><td><strong>PayloadsAllTheThings</strong></td><td>Repositório de referência com exemplos de payloads e notas de metodologia para testes de segurança.</td><td><a href="https://github.com/swisskyrepo/PayloadsAllTheThings">https://github.com/swisskyrepo/PayloadsAllTheThings</a></td><td><a href="/files/d4aefdb3d8cfa780c49ea59476e66f7697117d99">/files/d4aefdb3d8cfa780c49ea59476e66f7697117d99</a></td></tr><tr><td><strong>RevShells</strong></td><td>Gerador de payloads de reverse shell e página de referência para fluxos de trabalho controlados de laboratório e avaliação.</td><td><a href="https://www.revshells.com/">https://www.revshells.com/</a></td><td><a href="/files/5109eac42234a3c1a1e5d4f0a0e61ca4a8095b3f">/files/5109eac42234a3c1a1e5d4f0a0e61ca4a8095b3f</a></td></tr><tr><td><strong>WAFW00F</strong></td><td>Detecta e identifica firewalls de aplicação web que protegem um serviço web-alvo.</td><td><a href="https://github.com/EnableSecurity/wafw00f">https://github.com/EnableSecurity/wafw00f</a></td><td><a href="/files/b375349c03db661545e0e02b56cc545de875663f">/files/b375349c03db661545e0e02b56cc545de875663f</a></td></tr><tr><td><strong>Nemesida WAF Bypass</strong></td><td>Repositório focado em referências para bypass de WAF e exemplos de payloads.</td><td><a href="https://github.com/nemesida-waf/waf-bypass">https://github.com/nemesida-waf/waf-bypass</a></td><td><a href="/files/684d779c170adbbde9dcd34bdb183897dbc0b2ec">/files/684d779c170adbbde9dcd34bdb183897dbc0b2ec</a></td></tr><tr><td><strong>waf-bypass.com</strong></td><td>Referência online para payloads e exemplos de bypass de WAF.</td><td><a href="https://waf-bypass.com/">https://waf-bypass.com/</a></td><td><a href="/files/195a0d95187d9691a292269ecbd18f753ef0fdcd">/files/195a0d95187d9691a292269ecbd18f753ef0fdcd</a></td></tr><tr><td><strong>HackTricks Clickjacking PoC</strong></td><td>Utilitário web para gerar páginas de prova de conceito de clickjacking.</td><td><a href="https://tools.hacktricks.wiki/clickjacking-poc/index.html">https://tools.hacktricks.wiki/clickjacking-poc/index.html</a></td><td><a href="/files/57928e0a6043f319c1ffe0f006253f253ee9a35a">/files/57928e0a6043f319c1ffe0f006253f253ee9a35a</a></td></tr><tr><td><strong>HackTricks Domain Config Analyzer</strong></td><td>Utilitário web para revisar configurações relacionadas a domínios.</td><td><a href="https://tools.hacktricks.wiki/domain-config/index.html">https://tools.hacktricks.wiki/domain-config/index.html</a></td><td><a href="/files/8daa16615f3ba866f87e50349249e8d5040b83e0">/files/8daa16615f3ba866f87e50349249e8d5040b83e0</a></td></tr><tr><td><strong>HackTricks GitHub Leaks</strong></td><td>Utilitário web para encontrar possíveis indicadores de exposição no GitHub.</td><td><a href="https://tools.hacktricks.wiki/github-leaks/index.html">https://tools.hacktricks.wiki/github-leaks/index.html</a></td><td><a href="/files/552a68704be01aebbee7edc1d677cba09d2afc18">/files/552a68704be01aebbee7edc1d677cba09d2afc18</a></td></tr></tbody></table>


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://hacking-notes.jord4n.pro/pt-br/hacking-tools/web/web-recon-and-bypass-resources.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
