05133nam 2200781 a 450 991081183710332120200520144314.097866133767569781283376754128337675X97818495139511849513953(CKB)2670000000089229(EBL)950518(OCoLC)797916375(SSID)ssj0000521050(PQKBManifestationID)11361210(PQKBTitleCode)TC0000521050(PQKBWorkID)10517708(PQKB)10028033(Au-PeEL)EBL950518(CaPaEBR)ebr10467620(CaONFJC)MIL337675(PPN)228036399(OCoLC)780165941(OCoLC)ocn780165941 (FR-PaCSA)88851741(CaSebORM)9781849513944(MiAaPQ)EBC950518(EXLCZ)99267000000008922920110518d2011 uy 0engur|n|---|||||txtccrBackTrack 4 assuring security by penetration testing : master the art of penetration testing with BackTrack /Shakeel Ali, Tedi Heriyanto1st editionBirmingham, U.K. Packt Open Source20111 online resource (599 p.)Community experience distilledIncludes index.9781849513944 1849513945 BackTrack 4: Assuring Security by Penetration Testing; BackTrack 4: Assuring Security by Penetration Testing; Credits; About the Authors; About the Reviewers; www.PacktPub.com; Support files, eBooks, discount offers and more; Why Subscribe?; Free Access for Packt account holders; Preface; What this book covers; What you need for this book; Who this book is for; Conventions; Reader feedback; Customer support; Errata; Piracy; Questions; I. Lab Preparation and Testing Procedures; 1. Beginning with BackTrack; History; BackTrack purpose; Getting BackTrack; Using BackTrack; Live DVDInstalling to hard diskInstallation in real machine; Installation in VirtualBox; Portable BackTrack; Configuring network connection; Ethernet setup; Wireless setup; Starting the network service; Updating BackTrack; Updating software applications; Updating the kernel; Installing additional weapons; Nessus vulnerability scanner; WebSecurify; Customizing BackTrack; Summary; 2. Penetration Testing Methodology; Types of penetration testing; Black-box testing; White-box testing; Vulnerability assessment versus penetration testing; Security testing methodologiesOpen Source Security Testing Methodology Manual (OSSTMM)Key features and benefits; Information Systems Security Assessment Framework (ISSAF); Key features and benefits; Open Web Application Security Project (OWASP) Top Ten; Key features and benefits; Web Application Security Consortium Threat Classification (WASC-TC); Key features and benefits; BackTrack testing methodology; Target scoping; Information gathering; Target discovery; Enumerating target; Vulnerability mapping; Social engineering; Target exploitation; Privilege escalation; Maintaining access; Documentation and reportingThe ethicsSummary; II. Penetration Testers Armory; 3. Target Scoping; Gathering client requirements; Customer requirements form; Deliverables assessment form; Preparing the test plan; Test plan checklist; Profiling test boundaries; Defining business objectives; Project management and scheduling; Summary; 4. Information Gathering; Public resources; Document gathering; Metagoofil; DNS information; dnswalk; dnsenum; dnsmap; dnsmap-bulk; dnsrecon; fierce; Route information; 0trace; dmitry; itrace; tcpraceroute; tctrace; Utilizing search engines; goorecon; theharvesterAll-in-one intelligence gatheringMaltego; Documenting the information; Dradis; Summary; 5. Target Discovery; Introduction; Identifying the target machine; ping; arping; arping2; fping; genlist; hping2; hping3; lanmap; nbtscan; nping; onesixtyone; OS fingerprinting; p0f; xprobe2; Summary; 6. Enumerating Target; Port scanning; AutoScan; Netifera; Nmap; Nmap target specification; Nmap TCP scan options; Nmap UDP scan options; Nmap port specification; Nmap output options; Nmap timing options; Nmap scripting engine; Unicornscan; Zenmap; Service enumeration; Amap; Httprint; HttsquashVPN enumerationMaster the art of penetration testing with BackTrackBackTrack fourBack Track 4Assuring security by penetration testingComputer networksSecurity measuresComputer securityEvaluationComputer networksSecurity measures.Computer securityEvaluation.005.8Ali Shakeel1703425Heriyanto Tedi1703426MiAaPQMiAaPQMiAaPQBOOK9910811837103321BackTrack 44088604UNINA