Podcast
Questions and Answers
penetration tester
penetration tester
a penetration tester or a pentester is a white hat hacker employed to do a penetration test. It involves surveying, assessing and testing the security of a given organisation by using the same tools and techniques that a malicious hacker would use.
Penetration testing methodology
Penetration testing methodology
- a pentester and a client should meet and discuss the objectives and scope of the test.
- Choosing the type of test. Black-box testing, Grey-Box testing, White-Box Testing.
- Gaining permission via a contract.
- perform the penetration test.
- create a risk mitigation plan.
- Cleaning up all the changes made during the test.
Process of Penetration Testing
Process of Penetration Testing
Information (Intelligence) Gathering: Gather information about a target before performing active attacks. Scanning: Based on the information gathered, target the attack much more precisely Exploitation: Following enumeration, execute the attack Covering tracks: Make all attempts to remove evidence of being in a system Maintaining Access: Plant backdoors or other means to leave something behind
Types of information to be gathered
Types of information to be gathered
Signup and view all the answers
Information gathering methods
Information gathering methods
Signup and view all the answers
DNS hierarchy
DNS hierarchy
Signup and view all the answers
three classes of DNS servers
three classes of DNS servers
Signup and view all the answers
DNS scenario
DNS scenario
Signup and view all the answers