官术网_书友最值得收藏!

Summary

Now that we have reached the end of this chapter, we should have everything that we need for the penetration test. Having had the scoping meeting with all the stakeholders, we were able to get answers to all the questions that we required. This included engagement questions and scoping criteria. A deliverable from the stakeholders after the scoping meeting should have included any documentation that you would find beneficial for the penetration test. We typically require a network diagram, organization chart, and any important data flow diagrams.

Once we completed the planning portion, we moved onto the preparation phase. In this case, the preparation phase involved setting up Kali Linux on both the Raspberry Pi as well as setting it up as a VM on the laptop. We went through the steps of installing and updating the software on each platform, as well as some basic administrative tasks.

In Chapter 2, Information Gatheringwe will start diving into the information gathering task. In this task, we will look at the various types of information to investigate, and where to look for additional information. We can't always rely on the stakeholder documentation being correct, and there may even be undocumented systems that even they don't know about. It is our job to find those systems. We will use various tools to get this information in order to help us understand the security and systems in place so that we know where to start the penetration tests later.

主站蜘蛛池模板: 金寨县| 龙岩市| 宜川县| 乐山市| 广河县| 铜鼓县| 商水县| 阳城县| 交城县| 卢氏县| 昌宁县| 会宁县| 永昌县| 大新县| 三台县| 运城市| 平邑县| 石阡县| 牡丹江市| 桑日县| 江永县| 桂平市| 郧西县| 长宁区| 高淳县| 浪卡子县| 蛟河市| 民勤县| 东乡族自治县| 温宿县| 靖江市| 子长县| 宁津县| 巴林右旗| 大理市| 嘉祥县| 错那县| 固阳县| 温州市| 海丰县| 梁山县|