官术网_书友最值得收藏!

Introduction

Every penetration test, be it for a network or a web application, has a workflow; it has a series of stages that should be completed in order to increase our chances of finding and exploiting every possible vulnerability affecting our targets, such as:

  • Reconnaissance
  • Enumeration
  • Exploitation
  • Maintaining access
  • Cleaning tracks

In a network penetration testing scenario, reconnaissance is the phase where testers must identify all the assets in the network, firewalls, and intrusion detection systems. They also gather the maximum information about the company, the network, and the employees. In our case, for a web application penetration test, this stage will be all about getting to know the application, the database, the users, the server, and the relation between the application and us.

Reconnaissance is an essential stage in every penetration test; the more information we have about our target, the more options we will have when it comes to finding vulnerabilities and exploiting them.

主站蜘蛛池模板: 长子县| 新巴尔虎右旗| 九寨沟县| 安乡县| 西丰县| 周宁县| 老河口市| 清徐县| 梨树县| 方城县| 盐亭县| 大竹县| 江北区| 凭祥市| 南丹县| 化州市| 沙湾县| 修文县| 衢州市| 新河县| 呼图壁县| 蓬安县| 金坛市| 吴忠市| 吴川市| 和顺县| 共和县| 宜黄县| 新巴尔虎左旗| 武乡县| 上饶县| 阜阳市| 安岳县| 托克托县| 六枝特区| 都昌县| 永宁县| 密山市| 乐至县| 屯门区| 固阳县|