Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 40 guests online
 
Advertisement

You are here: Home arrow Ethical Hacking Discussions and Related Certificationsarrow Network Pen Testingarrow Penetration Testing
EH-Net
May 26, 2013, 12:47:48 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: Penetration Testing  (Read 2207 times)
0 Members and 1 Guest are viewing this topic.
LoganYoung
Newbie
*
Offline Offline

Posts: 4


View Profile
« on: October 26, 2010, 03:55:30 PM »

Hi!

I've been curious for a while now about Penetration Testing, but I can't seem to find much info about it aside from why you should do it, what your goals should be, etc.

What I want to know is info like what tools to use (preferably free as I can't afford to purchase right now), where to get them and what to do with them.
Why I'm asking now is because I've just started a web hosting company and I'd like to make sure my clients websites aren't going to be compromised because of negligence on my part.

I want to conduct the test from my Windows 7 system. I guess many black hats would probably be using unix environments, but I suppose the result would be the same...
Logged
don
Editor-In-Chief
Administrator
Hero Member
*****
Offline Offline

Posts: 4169


Editor-In-Chief


View Profile WWW
« Reply #1 on: October 26, 2010, 04:01:19 PM »

Welcome to EH-Net. You're not alone. Many people come to EH-Net looking for answers to that very question. Try this recent thread:

http://www.ethicalhacker.net/component/option,com_smf/Itemid,54/topic,6176.0/

Hope it helps,
Don
Logged

CISSP, MCSE, CSTA, Security+ SME
LoganYoung
Newbie
*
Offline Offline

Posts: 4


View Profile
« Reply #2 on: October 26, 2010, 04:23:50 PM »

Hmmm

Thanks for the quick reply Don, but I was looking more along the lines of downloadable white papers I can have a look at.

I'll get the books, sure, but right now I can't fit it into my budget (business has been slow /cry).

I'm pretty supportive of Open Source and I've got to wonder... I can find a tutorial that claims to be able to teach me Python in 10 minutes... Now if I can find something that could teach me something I could write malicious software (not that I'm bored enough for that) in that easily, why can't I find something that'll teach me how to defend myself against it just as quickly?
Logged
don
Editor-In-Chief
Administrator
Hero Member
*****
Offline Offline

Posts: 4169


Editor-In-Chief


View Profile WWW
« Reply #3 on: October 26, 2010, 05:04:49 PM »

If you're looking for something to help defend yourself, then maybe you want general security or incident response. Pen Testing is an offensive activity.

10 minutes on anything may give you a great intro to a topic, but hacking is more of a long-term passion, especially if it's pen testing you want to learn. Ask some of the experts in our community about how long it took them to learn what they know. I'll even bet they wouldn't call themselves experts, and say that they have a lot to learn.

What you may need to decide is exactly what it is you want to learn. That way we can point you in the right direction.

Don
Logged

CISSP, MCSE, CSTA, Security+ SME
chrisj
Hero Member
*****
Offline Offline

Posts: 1163


View Profile WWW
« Reply #4 on: October 27, 2010, 03:56:38 AM »

Books are great, and there are these giant warehouses of them that will let you take them for free. They might not have the exact book you're looking for (especially in Computer Security), but they tend to be able to share between the other warehouses.

Not trying to sound degrading. I know what it's like to want to read on a tight budget, and have spent a lot of time at the library.

A quick overview would be Hacking for Dummies. It's not a bad book really. You might be able to track down a copy at the library. It might be a older version, but it'll give you a start.
Logged

OSWP, Sec+
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.086 seconds with 24 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Free Business and Tech Magazines and eBooks

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.