- Hands-On Red Team Tactics
- Himanshu Sharma Harpreet Singh
- 100字
- 2021-08-13 15:36:36
Methodology
Red-teaming is based on the PTES standard as the foundation. However, there's much more to it. It can be said that the penetration testing activity is performed with the aim of finding as many vulnerabilities in the given amount of time as possible. However, red-teaming is performed with only one goal and by staying discreet.
The methodology used in a red-team activity involves the following:
- Reconnaissance
- Compromise
- Persistence
- Command and control
- Privilege escalation
- Pivoting
- Reporting and cleanup
The following cycle basically repeats for every new piece of information that is found about the client until the goal is met:
推薦閱讀
- Axure RP8入門手冊(cè):網(wǎng)站和App原型設(shè)計(jì)從入門到精通
- Axure RP 7.0從入門到精通:Web + APP產(chǎn)品經(jīng)理原型設(shè)計(jì)
- 矛與盾:黑客就這幾招
- 巧學(xué)巧用Dreamweaver CS6、Flash CS6、Fireworks CS6網(wǎng)站制作
- 混合云架構(gòu)
- pfSense 2.x Cookbook
- 計(jì)算機(jī)網(wǎng)絡(luò)技術(shù)及應(yīng)用
- 軟件定義網(wǎng)絡(luò):SDN與OpenFlow解析
- 對(duì)話大數(shù)據(jù) 政府/工業(yè)/金融/醫(yī)療/人才行業(yè)創(chuàng)新與應(yīng)用案例分析
- 深入淺出ASP.NET Core
- INSTANT Migration to HTML5 and CSS3 How-to
- Wireshark網(wǎng)絡(luò)分析從入門到實(shí)踐
- web應(yīng)用程序設(shè)計(jì):ASP.NET/PHP/JSP技術(shù)教程
- 系統(tǒng)工程的藝術(shù):用基于模型的系統(tǒng)工程方法構(gòu)建復(fù)雜系統(tǒng)(原書第2版)
- Bootstrap響應(yīng)式Web前端開發(fā)