Ethical Hacking: Vulnerability Analysis

Ethical Hacking: Vulnerability Analysis

1h 38mIntermediate2021-04-28

Authors

Lisa Bock

Lisa Bock

Security ambassador with a broad range of IT skills and knowledge

Course details

In order to assess—and ultimately, decrease—an organization's risk, IT security professionals must first evaluate and reduce existing vulnerabilities. If you're working to strengthen network security at your organization, it's essential to have a solid grasp of the processes, methodologies, and tools needed to assess vulnerabilities. In this course, security expert Lisa Bock takes a deep dive into the topic of vulnerability scanning, covering what you need to know to find and address weaknesses that attackers might exploit. Lisa goes over the basics of managing organizational risk, discusses vulnerability analysis methodologies, and shows how to work with vulnerability assessment tools, including Nikto and OpenVAS. Plus, she shares tools and strategies for defending the LAN. Lisa also includes challenge chapters to test your knowledge of each section, along with solutions videos for each challenge.

Topics include:
Common causes of vulnerabilities
Identifying and assessing vulnerabilities
The Common Vulnerability Scoring System (CVSS)
Outsourcing vulnerability analysis
Leveraging Nikto and other vulnerability assessment tools
Securing mobile devices
Defending the LAN

Skills covered

Security TestingCert PrepCybersecurity

Concepts

0. Introduction

  • 01 - Managing risk
  • 02 - Discovering resources
  • 03 - Hacking ethically - Disclaimer

1. Managing Organizational Risk

  • 04 - Risks threats and vulnerabilities
  • 05 - Recognizing common vulnerabilities
  • 06 - Classifying vulnerabilities
  • 07 - Assessing vulnerabilities
  • 08 - Vulnerability management life cycle
  • 09 - Modeling threats
  • 10 - Challenge - Threat modeling exercise
  • 11 - Solution - Threat modeling exercise

2. Analyzing Vulnerabilities

  • 12 - Common Vulnerability Scoring System
  • 13 - Common vulnerabilities and exposures
  • 14 - Outsourcing vulnerability analysis
  • 15 - Bug bounty white hat hacking
  • 16 - Challenge - The Temporal metric group
  • 17 - Solution - The Temporal metric group

3. Vulnerability Assessment Tools

  • 18 - Installing Kali Linux
  • 19 - Assessment tools
  • 20 - Nikto demo
  • 21 - Securing mobile devices
  • 22 - Fuzz testing

4. Defending the LAN

  • 23 - LAN vulnerability scanners
  • 24 - Scanning the LAN
  • 25 - Selecting a vulnerability assessment tool
  • 26 - Updates and patches
  • 27 - Firewalls and HIDS
  • 28 - Vulnerability assessment reports

Conclusion

  • 29 - Next steps
40,000 Toman