Offensive Security Tools for Operational Security

Offensive Security Tools for Operational Security
1 / 1
Offensive Security Tools for Operational Security - slide 1 of 12 Offensive Security Tools for Operational Security - slide 2 of 12 Offensive Security Tools for Operational Security - slide 3 of 12 Offensive Security Tools for Operational Security - slide 4 of 12 Offensive Security Tools for Operational Security - slide 5 of 12 Offensive Security Tools for Operational Security - slide 6 of 12 Offensive Security Tools for Operational Security - slide 7 of 12 Offensive Security Tools for Operational Security - slide 8 of 12 Offensive Security Tools for Operational Security - slide 9 of 12 Offensive Security Tools for Operational Security - slide 10 of 12 Offensive Security Tools for Operational Security - slide 11 of 12 Offensive Security Tools for Operational Security - slide 12 of 12
Offensive Security Tools for Operational Security Aqeeb Hussain (Durham University DiRAC) Purpose of offensive security tools Identification of open services (Assessing the access vector from internalexternal perspectives) Scanning of

Related Topics

Download this presentation From Below

"Offensive Security Tools for Operational Security" is the property of its rightful owner. Permission is granted to download and print the materials on this website for personal, non-commercial use only, and to display it on your personal computer provided you do not modify the materials and that you retain all copyright notices contained in the materials. By downloading content from our website, you accept the terms of this agreement.

Presentation Transcript

01
Offensive Security Tools for Operational Security Aqeeb Hussain (Durham University – DiRAC)<br>
02
Purpose of offensive security tools Identification of open services (Assessing the access vector from internal/external perspectives)

Scanning of vulnerabilities via plugins, banner grabbing, manual recon and automation

Execution of vulnerabilities to confirm their impact and applying patches following CVEs.<br>
03
NMAP (Network Mapper) Active network reconnaissance tool (Information gathering with direct interaction to devices)

Port scanning – Ability to identify if device ports are open or not and ability to evade monitoring such as PSAD (Port Scan Attack Detector)

Version/Service detection – Identifying exact services and versions of target port(s)

Vulnerability scanning – Being able to automate procedure of scanning vulnerabilities (Vulners DB plugin)<br>