官术网_书友最值得收藏!

Summary

Now that we have reached the end of this chapter, we should have everything that we need for the penetration test. Having had the scoping meeting with all the stakeholders, we were able to get answers to all the questions that we required. This included engagement questions and scoping criteria. A deliverable from the stakeholders after the scoping meeting should have included any documentation that you would find beneficial for the penetration test. We typically require a network diagram, organization chart, and any important data flow diagrams.

Once we completed the planning portion, we moved onto the preparation phase. In this case, the preparation phase involved setting up Kali Linux on both the Raspberry Pi as well as setting it up as a VM on the laptop. We went through the steps of installing and updating the software on each platform, as well as some basic administrative tasks.

In Chapter 2, Information Gatheringwe will start diving into the information gathering task. In this task, we will look at the various types of information to investigate, and where to look for additional information. We can't always rely on the stakeholder documentation being correct, and there may even be undocumented systems that even they don't know about. It is our job to find those systems. We will use various tools to get this information in order to help us understand the security and systems in place so that we know where to start the penetration tests later.

主站蜘蛛池模板: 尼玛县| 朝阳区| 山东省| 类乌齐县| 藁城市| 怀安县| 嘉善县| 黎川县| 湛江市| 醴陵市| 集安市| 邯郸县| 噶尔县| 六枝特区| 咸阳市| 娄底市| 社旗县| 大庆市| 苏尼特左旗| 大兴区| 海城市| 潢川县| 改则县| 麟游县| 尖扎县| 买车| 垫江县| 满城县| 铁力市| 古丈县| 乐山市| 安塞县| 西和县| 山西省| 忻城县| 垦利县| 松滋市| 犍为县| 江安县| 宜丰县| 绵竹市|