Stealth Penetration Testing with Advanced Enumeration

Stealth Penetration Testing with Advanced Enumeration

1h 2mAdvanced2022-08-04

Authors

Malcolm Shore

Malcolm Shore

Cybersecurity Expert, Former Director of GCSB

Course details

Once you’re proficient with basic ethical hacking techniques, you may be wondering about your next play. Advanced skills in evasion become increasingly necessary when you’re entering and operating on more complex systems. In this course, instructor Malcolm Shore shows you techniques to become a savvier penetration tester and take a big leap in your ethical hacking career.

Explore strategies to avoid detection and minimize your footprint every step of the way—using shells, encoders, and encryptors, living off the land, and leaving no trace. Get practical tips on advanced enumeration with tools like LinPEAS, WinPEAS, and SharpUp, as well as tunneling with an SSH connection to dig deeper into networks, systems, and websites. Malcolm walks you through the steps of safely exfiltrating information, with pointers on how to escalate your privileges along the way.

Skills covered

Penetration TestingSecurity TestingCybersecurityDeep Dive (X:Y)

Concepts

Introduction

  • Taking the next step in your ethical hacking career
  • What you should know
  • Disclaimer

Operating Stealthily

  • Being detected
  • Trying stealthy shells
  • Leaving footprints

Living off the Land

  • What is living off the land
  • Using PowerHub
  • Using the PHPSploit shell

Advanced Enumeration

  • Stealthy linux enumeration
  • Stealthy Windows enumeration
  • Powering up our escalation

Tunneling and Exfiltration

  • Setting up and using an SSH tunnel
  • Exfiltrating data over ICMP
  • Exfiltration via DNS

Escalating Privileges

  • Using Baron Samedit to escalate in Linux
  • Escalating through a dirty pipe
  • Escalating through a nightmare
  • Exploiting the Active Domain

Conclusion

  • What's next
40,000 Toman