官术网_书友最值得收藏!

Chapter 1. Understanding the Penetration Testing Methodology

Before jumping in too quick, in this chapter, we will actually define what penetration testing is and is not, what the Penetration Testing Execution Standard (PTES) is, and the tools that would be used. This information will be useful as a guideline for future engagements that you may be part of. This chapter will help guide new assessors and organizations who want to set up their own engagements. If you want to jump right into the code and the nitty gritty details, I suggest jumping to Chapter 2, The Basics of Python Scripting. I caution you though that the benefit of reading this chapter is that it will provide a framework and mindset that will help you to separate a script kiddie from a professional. So, let's start with what a penetration test is.

Most important, these tools and techniques should only be executed in environments you own or have permission to run these tools in. Never practice these techniques in environments in which you are not authorized to do so; remember that penetration testing without permission is illegal, and you can go to jail for it.

Note

To practice what is listed in the initial chapters, install a virtualization suite such as VMware Player (http://www.vmware.com/products/player) or Oracle VirtualBox (http://www.oracle.com/technetwork/server-storage/virtualbox/downloads/index.html). Create Virtual Machines (VMs) out of the current version of Kali Linux (https://www.kali.org/downloads/), Samurai Web Testing Framework (http://samurai.inguardians.com/), and Metasploitable (http://www.offensive-security.com/metasploit-unleashed/Requirements). You can execute tests against these by using the Metasploitable box from the Kali system. The last link provided has a number of tutorials and configuration notes related to these tools; if additional tool are necessary for each chapter, they will be highlighted there.

主站蜘蛛池模板: 邯郸县| 乐都县| 剑阁县| 历史| 阜城县| 福清市| 黄大仙区| 灯塔市| 德安县| 平阳县| 临汾市| 辽宁省| 邳州市| 三江| 金平| 泰州市| 明水县| 白朗县| 五指山市| 海盐县| 和静县| 巴青县| 嘉祥县| 涡阳县| 邯郸市| 瑞安市| 中西区| 佛山市| 永登县| 亚东县| 沈阳市| 双鸭山市| 子洲县| 玉门市| 阜城县| 如皋市| 富锦市| 荆州市| 贞丰县| 中阳县| 牙克石市|