Book Image

Python Penetration Testing Essentials - Second Edition

By : Mohit Raj
Book Image

Python Penetration Testing Essentials - Second Edition

By: Mohit Raj

Overview of this book

This book gives you the skills you need to use Python for penetration testing (pentesting), with the help of detailed code examples. We start by exploring the basics of networking with Python and then proceed to network hacking. Then, you will delve into exploring Python libraries to perform various types of pentesting and ethical hacking techniques. Next, we delve into hacking the application layer, where we start by gathering information from a website. We then move on to concepts related to website hacking—such as parameter tampering, DDoS, XSS, and SQL injection. By reading this book, you will learn different techniques and methodologies that will familiarize you with Python pentesting techniques, how to protect yourself, and how to create automated programs to find the admin console, SQL injection, and XSS attacks.
Table of Contents (11 chapters)

Summary

In this chapter, you learned how to send a fake ICMP (ping) reply. In order to send the ICMP reply, the ARP protocol must be running. By running both the codes simultaneously, they create an illusion at the network layer. But, before running the code, a firewall must be set to drop the outgoing frames. At the transport layer, two experiments were performed: a fake port open and fake OS running. By learning more about nmap, an exact fake response of a particular OS can be created. At the application layer, a Python web server code is giving a fake server signature. You can change the server signature according to your needs.

In Chapter 7, Foot Printing a Web Server and a Web Application, you will learn about footprinting a web server. You will also learn how to obtain the header of HTTP and about banner grabbing