Book Image

Building Virtual Pentesting Labs for Advanced Penetration Testing - Second Edition

By : Kevin Cardwell
Book Image

Building Virtual Pentesting Labs for Advanced Penetration Testing - Second Edition

By: Kevin Cardwell

Overview of this book

Security flaws and new hacking techniques emerge overnight – security professionals need to make sure they always have a way to keep . With this practical guide, learn how to build your own virtual pentesting lab environments to practice and develop your security skills. Create challenging environments to test your abilities, and overcome them with proven processes and methodologies used by global penetration testing teams. Get to grips with the techniques needed to build complete virtual machines perfect for pentest training. Construct and attack layered architectures, and plan specific attacks based on the platforms you’re going up against. Find new vulnerabilities for different kinds of systems and networks, and what these mean for your clients. Driven by a proven penetration testing methodology that has trained thousands of testers, Building Virtual Labs for Advanced Penetration Testing, Second Edition will prepare you for participation in professional security teams.
Table of Contents (20 chapters)
Building Virtual Pentesting Labs for Advanced Penetration Testing - Second Edition
Credits
About the Author
Acknowledgments
About the Reviewer
www.PacktPub.com
Preface

Summary


In this chapter, we have discussed the creation of a layered architecture and the need for building segmented networks in our testing. Following the discussion of creating a layered architecture, we looked at the integration of decoys and honeypots to include the BackOfficer Friendly tool, Labrea tarpit, and KFSensor.

Following this, we looked at the process of attacking our architecture and expressed the technique of attacking the targets directly and on a flat network before we add protections and layers to penetrate them.

Finally, we closed the chapter and looked at recording the attack data and also replaying the files that we created or downloaded from the Internet on our network using the tcpreplay command-line tool and the Colasoft Packet Player GUI tool.

This concludes the chapter and the book. Remember that the testing you do is all about being prepared. When you build your pen testing labs, you are creating an environment that you can use for many years to practice your skills...