Limit search to available items
Book Cover
E-book
Author Ali, Shakeel

Title BackTrack 4 : assuring security by penetration testing / Shakeel Ali, Tedi Heriyanto
Published Birmingham, UK : Packt, ©2011

Copies

Description 1 online resource (vii, 371 pages) : illustrations
Series Community experience distilled
Community experience distilled.
Contents All-in-one intelligence gatheringMaltego -- Documenting the information -- Dradis -- Summary -- 5. Target Discovery -- Introduction -- Identifying the target machine -- ping -- arping -- arping -- 2. -- fping -- genlist -- hping -- 2. -- hping -- 3. -- lanmap -- nbtscan -- nping -- onesixtyone -- OS fingerprinting -- p -- 0. f -- xprobe -- 2. -- Summary -- 6. Enumerating Target -- Port scanning -- AutoScan -- Netifera -- Nmap -- Nmap target specification -- Nmap TCP scan options -- Nmap UDP scan options -- Nmap port specification -- Nmap output options -- Nmap timing options -- Nmap scripting engine -- Unicornscan -- Zenmap -- Service enumeration -- Amap -- Httprint -- Httsquash
BackTrack 4: Assuring Security by Penetration Testing -- BackTrack 4: Assuring Security by Penetration Testing -- Credits -- About the Authors -- About the Reviewers -- www.PacktPub.com -- Support files, eBooks, discount offers and more -- Why Subscribe -- Free Access for Packt account holders -- What this book covers -- What you need for this book -- Who this book is for -- Conventions -- Reader feedback -- Customer support -- Errata -- Piracy -- Questions -- I. Lab Preparation and Testing Procedures -- 1. Beginning with BackTrack -- History -- BackTrack purpose -- Getting BackTrack -- Using BackTrack -- Live DVD
Installing to hard diskInstallation in real machine -- Installation in VirtualBox -- Portable BackTrack -- Configuring network connection -- Ethernet setup -- Wireless setup -- Starting the network service -- Updating BackTrack -- Updating software applications -- Updating the kernel -- Installing additional weapons -- Nessus vulnerability scanner -- WebSecurify -- Customizing BackTrack -- Summary -- 2. Penetration Testing Methodology -- Types of penetration testing -- Black-box testing -- White-box testing -- Vulnerability assessment versus penetration testing -- Security testing methodologies
Open Source Security Testing Methodology Manual (OSSTMM)Key features and benefits -- Information Systems Security Assessment Framework (ISSAF) -- Key features and benefits -- Open Web Application Security Project (OWASP) Top Ten -- Key features and benefits -- Web Application Security Consortium Threat Classification (WASC-TC) -- Key features and benefits -- BackTrack testing methodology -- Target scoping -- Information gathering -- Target discovery -- Enumerating target -- Vulnerability mapping -- Social engineering -- Target exploitation -- Privilege escalation -- Maintaining access -- Documentation and reporting
The ethicsSummary -- II. Penetration Testers Armory -- 3. Target Scoping -- Gathering client requirements -- Customer requirements form -- Deliverables assessment form -- Preparing the test plan -- Test plan checklist -- Profiling test boundaries -- Defining business objectives -- Project management and scheduling -- Summary -- 4. Information Gathering -- Public resources -- Document gathering -- Metagoofil -- DNS information -- dnswalk -- dnsenum -- dnsmap -- dnsmap-bulk -- dnsrecon -- fierce -- Route information -- 0. trace -- dmitry -- itrace -- tcpraceroute -- tctrace -- Utilizing search engines -- goorecon -- theharvester
Summary Annotation BackTrack is a penetration testing and security auditing platform with advanced tools to identify, detect, and exploit any vulnerabilities uncovered in the target network environment. Applying appropriate testing methodology with defined business objectives and a scheduled test plan will result in robust penetration testing of your network.<br /><br />BackTrack 4: Assuring Security by Penetration Testing is a fully focused, structured book providing guidance on developing practical penetration testing skills by demonstrating the cutting-edge hacker tools and techniques in a coherent step-by-step strategy. It offers all the essential lab preparation and testing procedures to reflect real-world attack scenarios from your business perspective in today's digital age.<br /><br />The authors' experience and expertise enables them to reveal the industry's best approach for logical and systematic penetration testing.<br /><br />The first and so far only book on BackTrack OS starts with lab preparation and testing procedures, explaining the basic installation and configuration set up, discussing types of penetration testing (black-box and white-box), uncovering open security testing methodologies, and proposing the BackTrack specific testing process. The authors discuss a number of security assessment tools necessary to conduct penetration testing in their respective categories (target scoping, information gathering, discovery, enumeration, vulnerability mapping, social engineering, exploitation, privilege escalation, maintaining access, and reporting), following the formal testing methodology. Each of these tools is illustrated with real-world examples to highlight their practical usage and proven configuration techniques. The authors also provide extra weaponry treasures and cite key resources that may be crucial to any professional penetration tester.<br /><br />This book serves as a single professional, practical, and expert guide to developing hardcore penetration testing skills from scratch. You will be trained to make the best use of BackTrack OS either in a commercial environment or an experimental test bed.<br /><br />A tactical example-driven guide for mastering the penetration testing skills with BackTrack to identify, detect, and exploit vulnerabilities at your digital doorstep
Bibliography Includes bibliographical references and index
Notes Print version record
SUBJECT Linux. http://id.loc.gov/authorities/names/n94087892
Linux. blmlsh
Linux fast
Subject Penetration testing (Computer security)
Computer security.
Computers -- Access control -- Testing
COMPUTERS -- Internet -- Security.
COMPUTERS -- Networking -- Security.
COMPUTERS -- Security -- General.
Computer security
Computers -- Access control -- Testing
Penetration testing (Computer security)
Form Electronic book
Author Heriyanto, Tedi
ISBN 9781849513951
1849513953
Other Titles BackTrack four
Back Track 4
Assuring security by penetration testing