Chapter 4
Analyzing Assessment Output
This chapter covers the following topics related to Objective 1.4 (Given a scenario, analyze the output from common vulnerability assessment tools) of the CompTIA Cybersecurity Analyst (CySA+) CS0-002 certification exam:
Web application scanner: Covers the OWASP Zed Attack Proxy (ZAP), Burp Suite, Nikto, and Arachni scanners.
Infrastructure vulnerability scanner: Covers the Nessus, OpenVAS, and Qualys scanners.
Software assessment tools and techniques: Explains static analysis, dynamic analysis, reverse engineering, and fuzzing.
Enumeration: Describes Nmap, hping, active vs. passive enumeration, and Responder.
Wireless assessment tools: Covers Aircrack-ng, Reaver, and oclHashcat.
Cloud infrastructure assessment ...
Get CompTIA Cybersecurity Analyst (CySA+) CS0-002 Cert Guide, 2nd Edition now with the O’Reilly learning platform.
O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.