官术网_书友最值得收藏!

What this book covers

Chapter 1, Planning and Preparation, gets you started with the penetration testing process by using real world examples of what is required to prepare. This allows you to build the foundation of the penetration test by discussing what the goals are as well as getting buy-in from management.

Chapter 2, Information Gathering, shows the reader how to start gathering information about the environment as well as the type of information to obtain.  Reconnaissance is a very important step and can make or break the penetration test.

Chapter 3, Setting up and maintaining the Command and Control Server, works with getting set up with connectivity to a C&C server that can help you with intelligence gathering and offsite processing.

Chapter 4, Vulnerability Scanning and Metasploit, focuses on scanning the environment for vulnerabilities and then using this information to try and exploit the targets that are found.

Chapter 5, Traffic Sniffing and Spoofing, gets you started on how to sniff the network and then utilize this information to run various attacks like Man-in-the-Middle  attacks and spoofing attacks to gain even more insight and intelligence of what is happening on the network.

Chapter 6, Password-based Attacks, shows you the process of running various password-based attacks, obtaining credentials, and utilizing this information for future penetration testing attacks.

Chapter 7, Attacks on the Network Infrastructure, looks at the infrastructure as part of the penetration test. We will explore tools to find various holes within the infrastructure before the bad guys do.

Chapter 8, Web Application Attacks, explores how to probe and exploit web applications as part of our penetration test.

Chapter 9, Cleaning Up and Getting Out, focuses on the importance of cleaning up your tracks left behind after the penetration test is complete.

Chapter 10, Writing Up the Penetration Testing Report, the final culmination of the book, shows not only the importance of the penetration testing report but also how to format it and fill with data that was obtained during our tests.

主站蜘蛛池模板: 宿州市| 栾城县| 册亨县| 松滋市| 沙雅县| 许昌市| 长阳| 安乡县| 阿拉善右旗| 池州市| 西吉县| 勃利县| 安化县| 林芝县| 吉安县| 吴旗县| 朔州市| 六安市| 临清市| 高安市| 厦门市| 辽宁省| 凌源市| 武安市| 高尔夫| 大名县| 湟源县| 广元市| 马尔康县| 尼玛县| 内江市| 德兴市| 育儿| 望谟县| 宁远县| 交城县| 清远市| 垦利县| 墨脱县| 缙云县| 南丹县|