Chapter 8

Understanding the Techniques Used in Penetration Testing

This chapter covers the following topics related to Objective 1.8 (Explain the techniques used in penetration testing) of the CompTIA Security+ SY0-601 certification exam:

  • Penetration testing

    • Known environment

    • Unknown environment

    • Partially known environment

    • Rules of engagement

    • Lateral movement

    • Privilege escalation

    • Persistence

    • Cleanup

    • Bug bounty

    • Pivoting

  • Passive and active reconnaissance

    • Drones

    • War flying

    • War driving

    • Footprinting

    • OSINT

  • Exercise types

    • Red-team

    • Blue-team

    • White-team

    • Purple-team

Penetration testing (otherwise known as ethical hacking) has been extremely popular in the last several years. A penetration tester is someone who mimics what an attacker can do to an ...

Get CompTIA Security+ SY0-601 Cert Guide, 5th Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.