Penetration Testing with BackBox


Penetration Testing with BackBox
eBook: $17.99
Formats: PDF, PacktLib, ePub and Mobi formats
$15.29
save 15%!
Print + free eBook + free PacktLib access to the book: $47.98    Print cover: $29.99
$29.99
save 37%!
Free Shipping!
UK, US, Europe and selected countries in Asia.
Also available on:
Overview
Table of Contents
Author
Reviews
Support
Sample Chapters
  • Experience the real world of penetration testing with Backbox Linux using live, practical examples
  • Gain an insight into auditing and penetration testing processes by reading though live sessions
  • Learn how to carry out your own testing using the latest techniques and methodologies

Book Details

Language : English
Paperback : 130 pages [ 235mm x 191mm ]
Release Date : February 2014
ISBN : 1783282975
ISBN 13 : 9781783282975
Author(s) : Stefan Umit Uygur
Topics and Technologies : All Books, Open Source


Table of Contents

Preface
Chapter 1: Starting Out with BackBox Linux
Chapter 2: Information Gathering
Chapter 3: Vulnerability Assessment and Management
Chapter 4: Exploitations
Chapter 5: Eavesdropping and Privilege Escalation
Chapter 6: Maintaining Access
Chapter 7: Penetration Testing Methodologies with BackBox
Chapter 8: Documentation and Reporting
Index
  • Chapter 1: Starting Out with BackBox Linux
    • A flexible penetration testing distribution
    • The organization of tools in BackBox
      • Information Gathering
      • Vulnerability Assessment
      • Exploitation
      • Privilege Escalation
      • Maintaining Access
      • Documentation & Reporting
      • Reverse Engineering
      • Social Engineering
      • Stress Testing
      • Forensic Analysis
      • VoIP Analysis
      • Wireless Analysis
      • Miscellaneous
    • Services
    • Update
    • Anonymous
    • Extras
    • Completeness, accuracy, and support
    • Links and contacts
    • Summary
  • Chapter 4: Exploitations
    • Exploitation of a SQL injection on a database
      • Sqlmap usage and vulnerability exploitation
      • Finding the encrypted password
    • Exploiting web applications with W3af
    • Summary
  • Chapter 6: Maintaining Access
    • Backdoor Weevely
      • Weevely in URL
      • Performing system commands
      • Enumerating config files
      • Getting access credentials
      • Editing files
      • Gathering full system information
    • Summary

Stefan Umit Uygur

Stefan Umit Uygur has been an IT System and Security engineer for 14 years. He is an extremely motivated open source software evangelist with a passion for sharing knowledge and working in a community environment. He is highly experienced in Penetration Testing and Vulnerability Analysis, Management, and Assessment. He has been involved in many open source software projects, for example BackBox, where he is part of the core team. He has helped to promote the free software culture around the world by participating and organizing international conferences. He significantly contributes to shedding the false and negative perceptions around hacking and hackers by promoting the hacker world in a positive light. He explains in detail the real world of hacking, hackers' motivations, and their philosophy, ethics, and freedom. These activities are promoted mainly through national and international magazines, and in particular, during the conferences that he participates. Along with his professional activities, he has contributed to the Linux magazine, the  PenTest magazine, and a few other small, periodic, technical publications.

However, his main passion is continuous collaboration with the community as he believes in the community more than anything else. He strongly feels that knowledge shouldn't be owned by a few people, but should be the heritage of the entire collective. He is always grateful to the community for the skills and the knowledge he possesses. One of the definitions he gives to the community is that it is the real school and university where one truly learns.

Submit Errata

Please let us know if you have found any errors not listed on this list by completing our errata submission form. Our editors will check them and add them to this list. Thank you.

Sample chapters

You can view our sample chapters and prefaces of this title on PacktLib or download sample chapters in PDF format.

Frequently bought together

Penetration Testing with BackBox +    Visual SourceSafe 2005 Software Configuration Management in Practice =
50% Off
the second eBook
Price for both: $24.00

Buy both these recommended eBooks together and get 50% off the cheapest eBook.

What you will learn from this book

  • Perform reconnaissance and collect information about an unknown system
  • Perform vulnerability scanning, management, and assessment, as well as understand false positives
  • Understand how SQL injection attacks work and find injectable pages on a web server
  • Sniff the network to capture sensitive data and learn different methods of privilege escalation
  • Maintain permanent access on a target server once access is initially granted
  • Use exploitation tools like Metasploit to exploit the reported vulnerabilities
  • Learn how to document and generate reports from the entire auditing process

In Detail

BackBox is an amazing Linux security distribution designed to keep in mind the needs of security and system administration specialists. It has been developed to perform penetration tests and security assessments. Designed to be fast and easy to use while providing a minimal yet complete desktop environment, Backbox comes with its own software repositories and is continually updated to the latest stable version of the most widely used and best-known ethical hacking tools.

This book provides an exciting introduction to BackBox Linux in order give you familiarity with and understanding of this amazing Linux security distro, making you feel comfortable with both the subject of pen-testing and BackBox. The book progresses through topics based on standard cases of penetration testing from the initial steps to the final procedures.

This book will help you discover the exciting world of penetration testing through a series of step-by-step, practical lessons. Penetration Testing with BackBox is organized into eight chapters. Starting with an introduction to BackBox Linux in order to give you a solid grounding of this amazing Linux security distro, including both its design philosophy and feature set, before moving on to practical tutorials in using BackBox. The book is arranged in a chronological order based on standard cases of penetration testing. For those more experienced in the use of penetration testing tools, each chapter can be read independently, providing a detailed overview of how BackBox will augment your arsenal of tools at each step of the penetration testing process.

Throughout this book, you will be given a clear picture of IT security cases by having one of the most popular topics of penetration testing demonstrated in a user-friendly way. By the end of the book, you will have learned all the fundamental skills needed to use BackBox for ethical hacking.

Approach

This practical book outlines the steps needed to perform penetration testing using BackBox. It explains common penetration testing scenarios and gives practical explanations applicable to a real-world setting.

Who this book is for

This book is written primarily for security experts and system administrators who have an intermediate Linux capability. However, because of the simplicity and user-friendly design, it is also suitable for beginners looking to understand the principle steps of penetration testing.

Code Download and Errata
Packt Anytime, Anywhere
Register Books
Print Upgrades
eBook Downloads
Video Support
Contact Us
Awards Voting Nominations Previous Winners
Judges Open Source CMS Hall Of Fame CMS Most Promising Open Source Project Open Source E-Commerce Applications Open Source JavaScript Library Open Source Graphics Software
Resources
Open Source CMS Hall Of Fame CMS Most Promising Open Source Project Open Source E-Commerce Applications Open Source JavaScript Library Open Source Graphics Software