In this section, we will focus on the reconnaissance and enumeration of JBoss servers. There are various methods for identifying a JBoss server, such as the fact that JBoss, by default, listens on HTTP port 8080. Let's look at some common techniques used for JBoss reconnaissance.
Reconnaissance and enumeration
Detection via the home page
One of the very basic techniques we can use is to visit the web server home page, which shows the JBoss logo, as we can see in the following screenshot:
When we open the JBoss home page, the default JBoss setup shows other hyperlinks that we can browse to get further information.