Miscellaneous evasion techniques

The level of detection avoidance that can be accomplished varies from network to network. When performing the test, keep in mind that, in this day and age, resources are usually very limited and administrators are overworked and underappreciated. Focus on bypassing the automated detection methodologies, and you are unlikely to be found by an active and eager admin unless your traffic and behavior patterns are drastically different from those of the average power user. When sniffing traffic and looking at network connections and activity, you should be able to get an idea of what is considered normal traffic on the network.

Divide and conquer

When performing scans, it may be a good idea to use multiple sources to ...

Get Advanced Penetration Testing for Highly-Secured Environments - Second Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.