1. Why is Reconnaissance arguably the most important of the 4 phases of pentesting? 2. What does it mean to conduct OSINT? 3. What is the difference between active and passive reconnaissance? 4. What are Google directives? 5. How would you search Google for all occurrences of Matt Presser on the nmsu.edu website? 6. What is a Google Dork? 7. What is exploit-db.com? 8. What is the Harvester? 9. What is whois? 10. What do the commands host and nslookup do? 11. Describe the "What is this site running" capability and why that might be useful? 12. What is fierce used for? 13. What is Meagoofil for? 14. What is social engineering and how is it used in penetration testing?
Added by Enrique H.
Step 1
Reconnaissance is arguably the most important phase of pentesting because it lays the foundation for the entire process. It involves gathering information about the target system or network, which helps the tester identify potential vulnerabilities and attack Show more…
Show all steps
Your feedback will help us improve your experience
Nick Johnson and 83 other AP CS educators are ready to help you.
Ask a new question
Labs
Want to see this concept in action?
Explore this concept interactively to see how it behaves as you change inputs.
Key Concepts
Recommended Videos
Briefly explain why cryptography is important in information security, identify and discuss different cryptography techniques.
Chandra J.
Lab 1: Assessing and Securing Systems on a Wide Area Network (WAN) 1. What is the first Nmap command you ran in this lab? Explain the switches used. 2. What are the open ports when scanning 100.16.16.50 (TargetVulnerable01) and their service names? 3. What is the Nmap command line syntax for running an MS08-067 vulnerability scan against 100.20.9.25 (TargetWindows04)? 4. Explain why the MS08-067 exploit is bad. 5. What operating system did Nmap identify for the three IP addresses you scanned in the lab.
Supreeta N.
Performing Reconnaissance from the WAN in Infosec Learning: What are the answers to the following challenges: 1) CHALLENGE SAMPLE #1 View the sample flag number from the nmap scan. Type the Flag number displayed. 2) CHALLENGE #2 You will find flag 2 below the sentence "Your browser (or proxy) sent a request that this server could not understand." Type the Flag number displayed. 3) CHALLENGE #3 You will find flag 3 below the sentence "Your browser (or proxy) sent a request that this server could not understand." Type the Flag number displayed. 4) CHALLENGE #4 Use the id command you just learned to get the UID of the flag4 account. Type the Flag number displayed. 5) CHALLENGE #5 Use the id command you just learned to get the UID of the flag5 account. Type the Flag number displayed. 6) CHALLENGE #6 Use the id command you just learned to get the UID of the flag6 account. Type the Flag number displayed.
Akash M.
Recommended Textbooks
Computer Science and Information Technology
Introduction to Programming Using Python
Computer Science - An Overview
Watch the video solution with this free unlock.
EMAIL
PASSWORD