May 2014
Intermediate to advanced
528 pages
13h 27m
English
The vulnerabilities we’ve studied so far have been low-hanging fruit, and all have come up on real engagements. It’s common on penetration tests to find vulnerable services listening on ports, unchanged default passwords, misconfigured web servers, and so on.
However, clients who put a lot of time and effort into their security posture may be free from these kinds of vulnerabilities. They may have all security patches in place; they may periodically audit passwords and remove any that can be easily guessed or cracked. They may control user roles: Regular users may not have administrative rights on their workstations, and any software that is installed is investigated and maintained by the security staff. As ...
Read now
Unlock full access