ENGLISH

Mastering Kali Linux for Advanced Penetration Testing

Book information

Publisher
Packt Pub Limited
Year
2014
ISBN
1782163123, 9781782163121
Language
english
Format
PDF
Filesize
9 MB (9485769 bytes)
Series
Community Experience Distilled
Volume
all
Pages
356\356
Time added
2021-12-01 16:57:34

Description

This book provides an overview of the kill chain approach to penetration testing, and then focuses on using Kali Linux to provide examples of how this methodology is applied in the real world. After describing the underlying concepts, step-by-step examples are provided that use selected tools to demonstrate the techniques.If you are an IT professional or a security consultant who wants to maximize the success of your network testing using some of the advanced features of Kali Linux, then this book is for you. This book will teach you how to become an expert in the pre-engagement, management, and documentation of penetration testing by building on your understanding of Kali Linux and wireless concepts. Cover Copyright Credits About the Author About the Reviewers www.PacktPub.com Table of Contents Preface Part 1: The Attacker's Kill Chain Chapter 1: Starting with Kali Linux Kali Linux Configuring network services and secure communications Adjusting network proxy settings Securing communications with Secure Shell Updating Kali Linux The Debian package management system Packages and repositories Dpkg Using Advanced Packaging Tools Configuring and customizing Kali Linux Resetting the root password Adding a non-root user Speeding up Kali operations Sharing folders with Microsoft Windows Creating an encrypted folder with TrueCrypt Managing third-party applications Installing third-party applications Running third-party applications with non-root privileges Effective management of penetration tests Summary Chapter 2: Identifying the Target – Passive Reconnaissance Basic principles of reconnaissance Open Source intelligence DNS reconnaissance and route mapping WHOIS DNS reconnaissance IPv4 IPv6 Mapping the route to the target Obtaining user information Gathering names and e-mail addresses Profiling users for password lists Summary Chapter 3: Active Reconnaissance and Vulnerability Scanning Stealth scanning strategies Adjusting source IP stack and tool identification settings Modifying packet parameters Using proxies with anonymity networks (Tor and Privoxy) Identifying the network infrastructure Enumerating hosts Live host discovery Port, operating system, and service discovery Port scanning Fingerprinting the operating system Determining active services Employing comprehensive reconnaissance applications nmap The recon-ng framework Maltego Vulnerability scanning Summary Chapter 4: Exploit Threat modeling Using online and local vulnerability resources The Metasploit Framework Exploiting a vulnerable application Exploiting multiple targets with Armitage Team testing with Armitage Scripting the Armitage attack Bypassing IDs and antivirus detection Summary Chapter 5: Post Exploit – Action on the Objective Bypassing Windows User Account Control Conducting a rapid reconnaissance of a compromised system Using the WMIC scripting language Finding and taking sensitive data – pillaging the target Creating additional accounts Using Metasploit for post-exploit activities Escalating user privileges on a compromised host Replaying authentication tokens using incognito Manipulating access credentials with Windows Credential Editor Escalating from Administrator to SYSTEM Accessing new accounts with horizontal escalation Covering your tracks Summary Chapter 6: Post Exploit – Persistence Compromising the existing system and application files for remote access Remotely enabling the Telnet service Remotely enabling Windows Terminal Services Remotely enabling Virtual Network Computing Using persistent agents Employing Netcat as a persistent agent Maintaining persistence with the Metasploit Framework Using the metsvc script Using the persistence script Creating a standalone persistent agent with Metasploit Redirecting ports to bypass network controls Example 1 – simple port redirection Example 2 – bidirectional port redirection Summary Part 2: The Delivery Phase Chapter 7: Physical Attacks and Social Engineering Social Engineering Toolkit Spear Phishing Attack Using a website attack vector – Java Applet Attack Method Using a website attack vector – Credential Harvester Attack Method Using a website attack vector – Tabnabbing Attack Method Using a website attack vector - Multi-Attack Web Method Using the PowerShell alphanumeric shellcode injection attack Hiding executables and obfuscating the attacker's URL Escalating an attack using DNS redirection Physical access and hostile devices Raspberry Pi attack vectors Summary Chapter 8: Exploiting Wireless Communications Configuring Kali for wireless attacks Wireless reconnaissance Kismet Bypassing a Hidden Service Set Identifier Bypassing the MAC address authentication Compromising a WEP encryption Attacking WPA and WPA2 Brute-force attacks Attacking wireless routers with Reaver Cloning an access point Denial-of-service attacks Summary Chapter 9: Reconnaissance and Exploitation of Web-based Applications Conducting reconnaissance of websites Vulnerability scanners Extending the functionality of traditional vulnerability scanners Extending the functionality of web browsers Web-service-specific vulnerability scanners Testing security with client-side proxies Server exploits Application-specific attacks Brute-forcing access credentials Injection attacks against databases Maintaining access with web backdoors Summary Chapter 10: Exploiting Remote Access Communications Exploiting operating system communication protocols Compromising Remote Desktop Protocol Compromising Secure Shell Exploiting third-party remote access applications Attacking Secure Sockets Layer Configuring Kali for SSLv2 scanning Reconnaissance of SSL connections Using sslstrip to conduct a man-in-the-middle attack Denial-of-service attacks against SSL Attacking an IPSec Virtual Private Network Scanning for VPN gateways Fingerprinting the VPN gateway Capturing pre-shared keys Performing offline PSK cracking Identifying default user accounts Summary Chapter 11: Client-side Exploitation Attacking a system using hostile scripts Conducting attacks using VBScript Attacking systems using Windows PowerShell The Cross-Site Scripting Framework The Brower Exploitation Framework – BeEF Installing and configuring the Browser Exploitation Framework A walkthrough of the BeEF browser Integrating BeEF and Metasploit attacks Using BeEF as a tunneling proxy Summary Appendix: Installing Kali Linux Downloading Kali Linux Basic Installation of Kali Linux Installing Kali Linux to a virtual machine Full disk encryption and nuking the master key Setting up a test environment Vulnerable operating systems and applications Index Uploaded by [StormRG]

Similar books

Session C11: Ancient Cultural Landscapes in South Europe – their Ecological Setting and Evolution, Session C22: Gardeners from South America, Session S04: Agro-Pastoralism and Early Metallurgy Sessions, Session WS29: The Idea of Enclosure in Recent Iberian Prehistory, Session C88: Rhytmes et causalites des dynamiques de l'anthropisation en Europe entre 6500 ET 500 BC: Hypotheses socio-culturelles et/ou climatiques: Proceedings of the XV UISPP World Congress (Lisbon 4-9 September 2006) / Actes du XV Congrès Mondial (Lisbonne 4-9 Septembre 2006) Vol.36

Session C11: Ancient Cultural Landscapes in South Europe – their Ecological Setting and Evolution, Session C22: Gardeners from South America, Session S04: Agro-Pastoralism and Early Metallurgy Sessions, Session WS29: The Idea of Enclosure in Recent Iberian Prehistory, Session C88: Rhytmes et causalites des dynamiques de l'anthropisation en Europe entre 6500 ET 500 BC: Hypotheses socio-culturelles et/ou climatiques: Proceedings of the XV UISPP World Congress (Lisbon 4-9 September 2006) / Actes du XV Congrès Mondial (Lisbonne 4-9 Septembre 2006) Vol.36

2010 · PDF

THE BRITISH ARMY IN INDIA: ITS PRESERVATION BY AN APPROPRIATE CLOTHING, HOUSING, LOCATING, RECREATIVE EMPLOYMENT, AND HOPEFUL ENCOURAGEMENT OF THE TROOPS. with AN APPENDIX ON INDIA : THE CLIMATE OP ITS HILLS ; THE DEVELOPMENT OF ITS RESODRCBS, INDUSTRY, AND ARTS ; THE ADMINISTRATION OF JUSTICE ; THE BLACK ACT ; THE PROGRESS OF CHRISTIANITY ; THE TRAFFIC IN OPIUM ; THE VALUE OF INDIA ; PERMANENT CAUSES OF DISAFFECTION, AND OF THE RECENT REBELLION ; THE TRADITIONARY POLICY; MISGOVERNMENT BY NATIVE RULERS ; ANNEXATIONS OF THEIR TERRITORY, ETC.

THE BRITISH ARMY IN INDIA: ITS PRESERVATION BY AN APPROPRIATE CLOTHING, HOUSING, LOCATING, RECREATIVE EMPLOYMENT, AND HOPEFUL ENCOURAGEMENT OF THE TROOPS. with AN APPENDIX ON INDIA : THE CLIMATE OP ITS HILLS ; THE DEVELOPMENT OF ITS RESODRCBS, INDUSTRY, AND ARTS ; THE ADMINISTRATION OF JUSTICE ; THE BLACK ACT ; THE PROGRESS OF CHRISTIANITY ; THE TRAFFIC IN OPIUM ; THE VALUE OF INDIA ; PERMANENT CAUSES OF DISAFFECTION, AND OF THE RECENT REBELLION ; THE TRADITIONARY POLICY; MISGOVERNMENT BY NATIVE RULERS ; ANNEXATIONS OF THEIR TERRITORY, ETC.

1858 · PDF

Idries Shah 27 Books Collection : A Perfumed Scorpion, A Veiled Gazelle, Caravan of Dreams, Darkest England, Destination Mecca, Evenings with Idries Shah, Knowing How to Know, Learning How to Learn, Letters and Lectures of Idries Shah, Neglected aspects of Sufi study, Observations, Oriental Magic, Reflections, Seeker after Truth, Special Illumination, Special Problems in the study of Sufi ideas, Sufi thought and action, Tales of the Dervishes, The Dermis Probe, The Elephant in the Dark, The Englishman Handbook, Idries Shah Antology, The Magic Monastery, The natives are restless, wisdom of the Idiots PDF.

Idries Shah 27 Books Collection : A Perfumed Scorpion, A Veiled Gazelle, Caravan of Dreams, Darkest England, Destination Mecca, Evenings with Idries Shah, Knowing How to Know, Learning How to Learn, Letters and Lectures of Idries Shah, Neglected aspects of Sufi study, Observations, Oriental Magic, Reflections, Seeker after Truth, Special Illumination, Special Problems in the study of Sufi ideas, Sufi thought and action, Tales of the Dervishes, The Dermis Probe, The Elephant in the Dark, The Englishman Handbook, Idries Shah Antology, The Magic Monastery, The natives are restless, wisdom of the Idiots PDF.

2022 · PDF

The travels of Capts. Lewis and Clarke from St. Louis, by way of the Missouri and Columbia rivers, to the Pacific ocean; performed in the years 1804, 1805 & 1806, by order of the government of the United States. Containing delineations of the manners, customs, religion, &c. of the Indians, comp. from various authentic sources, and original documents, and a summary of the Statistical view of the Indian nations, from the official communication of Meriwether Lewis. Illustrated with a map of the country, inhabited by the western tribes of Indians

The travels of Capts. Lewis and Clarke from St. Louis, by way of the Missouri and Columbia rivers, to the Pacific ocean; performed in the years 1804, 1805 & 1806, by order of the government of the United States. Containing delineations of the manners, customs, religion, &c. of the Indians, comp. from various authentic sources, and original documents, and a summary of the Statistical view of the Indian nations, from the official communication of Meriwether Lewis. Illustrated with a map of the country, inhabited by the western tribes of Indians

1809 · PDF