官术网_书友最值得收藏!

Introduction

Every penetration test, be it for a network or a web application, has a workflow; it has a series of stages that should be completed in order to increase our chances of finding and exploiting every possible vulnerability affecting our targets, such as:

  • Reconnaissance
  • Enumeration
  • Exploitation
  • Maintaining access
  • Cleaning tracks

In a network penetration testing scenario, reconnaissance is the phase where testers must identify all the assets in the network, firewalls, and intrusion detection systems. They also gather the maximum information about the company, the network, and the employees. In our case, for a web application penetration test, this stage will be all about getting to know the application, the database, the users, the server, and the relation between the application and us.

Reconnaissance is an essential stage in every penetration test; the more information we have about our target, the more options we will have when it comes to finding vulnerabilities and exploiting them.

主站蜘蛛池模板: 阿图什市| 仁寿县| 阿拉尔市| SHOW| 凤翔县| 景洪市| 渝中区| 云阳县| 柘荣县| 抚宁县| 金阳县| 洱源县| 沙河市| 青岛市| 阿克陶县| 沭阳县| 汕尾市| 兴城市| 昌宁县| 科尔| 峡江县| 个旧市| 河西区| 昌平区| 靖远县| 长治县| 时尚| 临汾市| 双鸭山市| 德化县| 全南县| 霞浦县| 五寨县| 中宁县| 丹寨县| 邻水| 古丈县| 文成县| 宣化县| 横山县| 高邑县|