Module 2 - Footprinting and Reconnaissance Flashcards
The first step of any attack on information systems in which an attacker collects information about a target network for identifying various ways to intrude into the system.
a. Banner Grabbing
b. Scanning/Enumeration
c. Reconnaissance/Footprinting
d. Gaining Access
e. Maintaining Access
c. Reconnaissance/Footprinting
Refers to the use of advanced Google search operators for creating complex search queries in order to extract sensitive or hidden information that helps attackers to find vulnerable targets.
Google Hacking
Footprinting through Search Engines:
Displays the web pages stored in the Google cache.
a. cache
b. link
c. related
d. info
e. site
f. allintitle
g. intitle
h. allinurl
i. inurl
j. location
a. cache
Footprinting through Search Engines:
Lists web pages that have links to the specified web page.
a. cache
b. link
c. related
d. info
e. site
f. allintitle
g. intitle
h. allinurl
i. inurl
j. location
b. link
Footprinting through Search Engines:
Restricts the results to those websites in the given domain.
a. cache
b. link
c. related
d. info
e. site
f. allintitle
g. intitle
h. allinurl
i. inurl
j. location
e. site
Footprinting through Search Engines:
Restricts the results to those with all of the search keywords in the URL.
a. cache
b. link
c. related
d. info
e. site
f. allintitle
g. intitle
h. allinurl
i. inurl
j. location
h. allinurl
Footprinting through Search Engines:
- An authoritative source for querying the ever-widening reach of the Google search engine.
- Common Vulnerabilities and Exposures (CVE) compliant archive of public exploits and corresponding vulnerable software.
Google Hacking Database (GHDB)
Website Footprinting:
Extracts metadata of public documents (pdf, doc, xls, ppt, docx, pptx, xlsx, etc.) belonging to a target company.
a. Burp Suite
b. Netcraft.com
c. Archive.org
d. Metagoofil
d. Metagoofil
Whois Footprinting:
Whois databases are maintained by ______ ______ _______ and contain personal information of domain owners.
Regional Internet Registries
Whois Footprinting:
Regional Internet Registries (RIRs): ARIN
a. North America & Canada
b. Africa
c. Europe
d. Latin America and Caribbean Islands
e. Asian/Pacific
a. North America & Canada
Whois Footprinting:
Regional Internet Registries (RIRs): AFRINIC
a. North America & Canada
b. Africa
c. Europe
d. Latin America and Caribbean Islands
e. Asian/Pacific
b. Africa
Whois Footprinting:
Regional Internet Registries (RIRs): RIPE NCC
a. North America & Canada
b. Africa
c. Europe
d. Latin America and Caribbean Islands
e. Asian/Pacific
c. Europe
Whois Footprinting:
Regional Internet Registries (RIRs): lacnic
a. North America & Canada
b. Africa
c. Europe
d. Latin America and Caribbean Islands
e. Asian/Pacific
d. Latin America & Caribbean
Whois Footprinting:
Regional Internet Registries (RIRs): APNIC
a. North America & Canada
b. Africa
c. Europe
d. Latin America and Caribbean Islands
e. Asian/Pacific
e. Asian/Pacific
DNS Footprinting:
Points to a host’s IP address:
a. A / AAAA (IPv6)
b. MX
c. CNAME
d. SOA
e. PTR
a. A / AAAA (IPv6)