Reconnaissance in Pentesting Flashcards
(6 cards)
What is Reconnaissance?
Initial phase where an attacker gathers information about the target system
What is Active Reconnaissance?
Engaging with the target system directly, such as scanning for open ports using tools like Nmap
What is Passive Reconnaissance?
Gathering information without direct engagement, like using open-source intelligence or WHOIS to collect data
What happens in Known Environment Tests?
Penetration testers have detailed information about the target before the test begins
What happens in Partially Known Environments Tests?
Testers have limited information about the target, simulating a scenario where an attacker has partial inside knowledge
What happens in Unkown Environments Tests?
Simulates a real-world external attacker aiming to find entry points and vulnerabilities