官术网_书友最值得收藏!

Introduction

Every penetration test, be it for a network or a web application, has a workflow; it has a series of stages that should be completed in order to increase our chances of finding and exploiting every possible vulnerability affecting our targets, such as:

  • Reconnaissance
  • Enumeration
  • Exploitation
  • Maintaining access
  • Cleaning tracks

In a network penetration testing scenario, reconnaissance is the phase where testers must identify all the assets in the network, firewalls, and intrusion detection systems. They also gather the maximum information about the company, the network, and the employees. In our case, for a web application penetration test, this stage will be all about getting to know the application, the database, the users, the server, and the relation between the application and us.

Reconnaissance is an essential stage in every penetration test; the more information we have about our target, the more options we will have when it comes to finding vulnerabilities and exploiting them.

主站蜘蛛池模板: 西丰县| 中阳县| 特克斯县| 嘉荫县| 泗水县| 宁乡县| 上高县| 张家口市| 陕西省| 和平县| 马鞍山市| 舒兰市| 乐陵市| 扶风县| 那曲县| 民乐县| 宝丰县| 罗城| 屯昌县| 南城县| 同德县| 电白县| 三河市| 石林| 大化| 定襄县| 大余县| 三都| 汶上县| 图木舒克市| 浮山县| 江阴市| 广南县| 建宁县| 南江县| 鲁甸县| 尼玛县| 巩留县| 云和县| 游戏| 宁晋县|