1.4 Explain penetration testing concepts. Flashcards

1
Q

Penetration Testing

A

Pentest
• Simulate an attack
• Similar to vulnerability scanning
• Except we actually try to exploit the vulnerabilities
• Often a compliance mandate
• Regular penetration testing by a 3rd-party

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Verify a threat exists

A
  • Perform regular vulnerability scans
  • Update your signatures
  • Watch the news - Copycats are prevalent
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Passive reconnaissance

A
  • Learn as much as you can from open sources
  • There’s a lot of information out there
  • Remarkably difficult to protect or identify
  • Social media
  • Corporate web site, online forums, Reddit
  • Social engineering, dumpster diving
  • Business organizations
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Active reconnaissance

A
Trying the doors
• Maybe one is unlocked
• Don’t open it yet
• Relatively easy to be seen
• Ping scans, port scans
• DNS queries
• OS scans, OS fingerprinting
• Service scans, version scans
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Exploiting vulnerabilities

A

Try to break into the system
You’ll only be sure you’re vulnerable
if you can bypass security
• If you can get through, the bad guys can get through

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

The process

A

• Initial exploitation• Persistence• The pivot

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

• Black box

A

/ Unknown environment
• The pentester knows nothing
about the systems under attack
• “Blind” test

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

White box /

A

known environment

• Full disclosure

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Grey box /

A

Partially known environment
• A mix of black and white
• Focus on certain systems or applications

How well did you know this?
1
Not at all
2
3
4
5
Perfectly