Week 2 Qs Flashcards

1
Q

Reconnaissance

A

Also known as information gathering, refers to the preparatory phase where a penetration tester seeks to gather as much information as possible about a target prior to launching a simulated attack.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Active Reconnaissance

A

Includes interacting directly with the target, as such the target may record our IP address and log our activity.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Passive Reconnaissance

A

makes use of the vast amount of information available on the web. The type does not interact directly with the target.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Search Methods

A

Locate the target web presence;
Gather search engine results regarding the target;
Look for web groups containing employee/company comments;
Examine the personal web sites of employees;
Search archival sites for additional information;
Look for job postings submitted by the target;
Search newsgroups;
Query the domain registrar.
Trade papers, financial databases, users groups and blogs, alternative websites, Google hacking, etc.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Job Postings

A

Often reveal very detailed information about the technology being used by an organization. Often it will define specific hardware and software.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

archive.org

A

Used to browse archived web pages dating back to 1996. It’s a useful tool for looking for information no longer on a site.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

whois

A

Allows access to specific information about a target including the IP addresses or host names of the company’s domain name systems (DNS) servers and contact information usually containing an address and phone number.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

nslookup

A

A tool that can be used to query DNS servers and potentially obtain records about the various hosts of which it is aware.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

robots.txt

A

Restricts access to a site by search engine bots that crawl the web, by preventing them accessing certain pages.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Google hacking

A

The art of creating complex search engine queries in order to filter through large amounts of search results.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Google directive

A

Keywords that enable us to more accurately extract information from the Google index. You need: the name of the directive you want to use; a colon; and the term you want to use in the directive. For example, to utilize the “site:” directive: site:domain term(s) to search.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly