Penetration Testing: Advanced Enumeration

Penetration Testing: Advanced Enumeration

English | MP4 | AVC 1280×720 | AAC 48KHz 2ch | 1h 39m | 330 MB

Enumeration is the key to achieving success with penetration testing, and learning how to do it effectively can be challenging. Whether you’re preparing for the Offensive Security Certified Professional (OSCP) exam or you’re just looking to brush up on enumeration, this course can help you become more adept at this essential phase in pen testing. Instructor Malcolm Shore provides a refresher on the basic methods of enumerating networks and target systems, offering you hands-on experience with the main tools. Malcolm then digs deeper into some more sophisticated uses of the tools and introduces new ones which provide a broader range of enumeration options. He also discusses some automated systems which bring together many tools to do scripted enumeration.

Topics include:

  • Using Masscan for rapid full-service scanning
  • Passive scanning with Shodan
  • Using Nmap scripts
  • Scanning with Reconnoitre and Vanquish
  • Diagnosing uncommon ports
  • Enumerating Drupal, WordPress, and Joomla sites
  • Enumerating in the Linux shell
  • Using the JAWS PowerShell script
Table of Contents

Introduction
1 Enumeration is the key to pen testing success
2 What you should know
3 Disclaimer

Identifying Services
4 Introduction to enumeration
5 A refresher on Nmap
6 All-port scanning with Masscan
7 Digging for gold
8 Angry scanning
9 Passive scanning with Shodan

Enumerating Services
10 Using Nmap scripts
11 Scanning with Reconnoitre
12 Scanning with Vanquish
13 Enumerating with Sn1per
14 Enumerating with SPARTA
15 Diagnosing uncommon ports

Enumerating Web Servers
16 What s that web server
17 Refresher on enumerating web pages
18 Fuzzing the website
19 Enumerating Drupal sites
20 Enumerating WordPress sites
21 Enumerating Joomla sites

Further Enumeration
22 Database enumeration with sqlmap
23 Enumerating in the Linux shell
24 Enumerating inside Windows

Conclusion
25 What s next