Advanced Penetration Testing for Highly-Secured Environments: The Ultimate Security GuideAn intensive hands-on guide to perform professional penetration testing for highly-secured environments from start to finish. You will learn to provide penetration testing services to clients with mature security infrastructure. Understand how to perform each stage of the penetration test by gaining hands-on experience in performing attacks that mimic those seen in the wild. In the end, take the challenge and perform a virtual penetration test against a fictional corporation. If you are looking for guidance and detailed instructions on how to perform a penetration test from start to finish, are looking to build out your own penetration testing lab, or are looking to improve on your existing penetration testing skills, this book is for you. Although the books attempts to accommodate those that are still new to the penetration testing field, experienced testers should be able to gain knowledge and hands-on experience as well. The book does assume that you have some experience in web application testing and as such the chapter regarding this subject may require you to understand the basic concepts of web security. The reader should also be familiar with basic IT concepts, and commonly used protocols such as TCP/IP. |
From inside the book
Results 1-5 of 70
Page i
... virtual machine 16 Preparing the virtual guest machine for BackTrack 16 Installing BackTrack on the virtual disk image 20 Exploring BackTrack 24 Logging in 24 Changing the default password 24 Updating the applications and operating ...
... virtual machine 16 Preparing the virtual guest machine for BackTrack 16 Installing BackTrack on the virtual disk image 20 Exploring BackTrack 24 Logging in 24 Changing the default password 24 Updating the applications and operating ...
Page ii
... virtual machine to our lab 80 Configuring and testing our Vlab_1 clients 82 BackTrack — Manual ifconfig 82 Ubuntu — Manual ifconfig 83 Verifying connectivity 83 Maintaining IP. [ii] Table of Contents.
... virtual machine to our lab 80 Configuring and testing our Vlab_1 clients 82 BackTrack — Manual ifconfig 82 Ubuntu — Manual ifconfig 83 Verifying connectivity 83 Maintaining IP. [ii] Table of Contents.
Page iii
... virtual machine 116 Manual exploitation 118 Enumerating services 119 Quick scan with Unicornscan 120 Full scan with Nmap 121 Banner grabbing with Netcat and Ncat 123 Banner grabbing with Netcat 123 Banner grabbing with Ncat 124 Banner ...
... virtual machine 116 Manual exploitation 118 Enumerating services 119 Quick scan with Unicornscan 120 Full scan with Nmap 121 Banner grabbing with Netcat and Ncat 123 Banner grabbing with Netcat 123 Banner grabbing with Ncat 124 Banner ...
Page iv
... virtual machine 164 Installing and configuring pfSense 166 Preparing the virtual machine for pfSense 166 pfSense virtual machine persistence 168 Configuring the pfSense DHCP server 171 Starting the virtual lab 172 pfSense DHCP ...
... virtual machine 164 Installing and configuring pfSense 166 Preparing the virtual machine for pfSense 166 pfSense virtual machine persistence 168 Configuring the pfSense DHCP server 171 Starting the virtual lab 172 pfSense DHCP ...
Page 15
... host machine for your virtual test environment. GO '[0 http: //www.virtualbox . org/. Click on the Downloads link on the left side of the page. Download the latest version of VirtualBox for Windows hosts x86/ amd64. PP'N!' Begin the ...
... host machine for your virtual test environment. GO '[0 http: //www.virtualbox . org/. Click on the Downloads link on the left side of the page. Download the latest version of VirtualBox for Windows hosts x86/ amd64. PP'N!' Begin the ...
Contents
1 | |
7 | |
43 | |
Enumeration Choosing
Your Targets Wisely | 79 |
Remote Exploitation | 115 |
Web Application Exploitation | 159 |
Exploits and
ClientSide Attacks | 201 |
PostExploitation | 239 |
Bypassing Firewalls and Avoiding Detection | 287 |
Data Collection
Tools and Reporting | 313 |
Setting Up Virtual Test
Lab Environments | 333 |
Take the Challenge Putting It All Together | 355 |
Index | 379 |
Other editions - View all
Advanced Penetration Testing for Highly-Secured Environments Lee Allen,Kevin Cardwell Limited preview - 2016 |
Common terms and phrases
administrator allow application attacker BackTrack BackTrack machine brute forcing chapter client command configuration connection create database default DHCP disk domain Dradis enable ensure enumeration example example.com exploit firewall FreeBSD guest machine HAProxy host installed interface Internal Network Name Internet IP address Kioptrix Level Kioptrix machine Linux load balancing login MAC Address MagicTree menu Metasploit Meterpreter Mutillidae MySQL nameserver nano Network Adapter Never logged Nmap Nmap scan operating system option output packets password penetration test perform pfSense plugins port press Enter root root root root@bt Samba script shell SNMP SQL injection take a look tester Ubuntu update username virtual machine VirtualBox VLAN1 vulnerabilities w3af web application firewalls Windows Wireshark WordPress