Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools...

59
Great forensics is great homework! Great Hacking is great homework! We need to cooperate. 1

Transcript of Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools...

Page 1: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

Greatforensicsisgreathomework!

GreatHackingisgreathomework!

Weneedtocooperate.

1

Page 2: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

• YouareNOTtodistribute,disseminateorreusethesematerialswithoutmyexpresspermission.Thisistodeterredistributionofthesematerialstounsafeoruntrustedparties.

• Mycontactinformationisattheendofthepresentation

2

Page 3: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

GroundRules

• Turnoffallrecordingdevices(cameras,voicerecorders,etc.)

• Whatyou’reabouttoseeisreal.Everymethod,attack,vectorandexploitationyouaregoingtoseehasbeenusedtogreatsuccessbynotonlymyself,butalso“thebadguys.”Weusethesametoolset.

• Bemindfuloftheknowledgeyou’reabouttogain.Useittodefendyourorganizationanditsassets.

• “Don’ttrythisathome…”

• Donothesitatetoaskquestionsatanypointduringtheconferenceorafterwards.Iwillalwaysofferasolutionoropinion.

• Don’tbescared,evenifthisisscary.Fearandshort-sighteddecisionshavedoomedmanyorganizations.(..andprobablygotthemintothissituationtobeginwith.)

• Wecandelveintoanyoneoftheseitemsforhours,I’mgivingyouthemostcommonissuesandhighestvaluetargets.

3

Page 4: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

#OPSEC

Thenameofthegameis#OPSEC.

4

Page 5: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

OPSEC

5

Page 6: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

6

Page 7: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

OPSEC

7

Page 8: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

8

Page 9: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

9

Page 10: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

10

Page 11: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

TheMonsterRetirementFund

Page 12: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

12

Page 13: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,
Page 14: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,
Page 15: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

HowdoesanAttackhappen?

• Determine“why”you’reatarget.

• Determine“who”islikelytoattackyou

• Determine“what”makesyouinteresting

• Determine“where”they’regoingtostrike

• Determine“how”they’regoingtoattack

Page 16: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

• Whatdataorassetsdowehavethatarevaluable?

• Howcanthosebeleveragedforgainorusage?

• Doesourcorporatepolicy,imageorclienteledrawattentiontousorourindustry?

Whyareweatarget?

Page 17: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

• Whowouldliketogainaccesstoourassets?

• Whatdotheyhavetogain?

• Howwouldanattackerfindusinthefirstplace?

Whoislikelytoattackus?

Page 18: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

• Whatinformationwoulddrawattentiontousorshowustobevulnerable?’

• Doweleakinformationpubliclyorprivatelythatcouldriskanexposure?

• Canwecontrolourinformationanddatainawaythatwouldreducerisk?

• Dowebringituponourselves?

Whatmakes*us*interesting?

Page 19: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

• Isthisaninternalorexternalthreat?

• Canweexamineourcontrols,informationorstaffanddeterminewhereourvulnerabilitiesorweakpointsare?

• Whatisthemostlikelyavenueofattack?

• Aretheythesameareas?

Wherearetheygoingtostrike?

Page 20: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

• Canweputtogetheraprofile?

• Canwesimulateormodeltheirattack?

• Canwetestourcontrols?

• Arewecovered?

• Didwetakethemostappropriateandreasonablemeasurestopreventanexposure?

• Howlikelyisthistohappen?

• Whatdoweneedtodotopreventthisfromhappening?

Howaretheygoingtoattack?

Page 21: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

OurScenario-- Statement

AsanorganizationthatdealswithvaluablepersonalorcorporateinformationincludingSSNs,TINs,bankingandprivilegedinformation;wehouseinformationthatcoulddirectlyorindirectlygiveacommittedexternalpartythemeanstocommitfraudortheft.

Page 22: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

Thingstoremember

• AccuracybyVolume

• Castawidenet

• “Onalongenoughtimeline,thesurvivalrateforeveryonedropstozero”

• Acommittedattackerhasunlimitedtimeandresources

Thereisnosuchthingas“that’sagainsttherules.”

• DefenseinDepth– Buyyourselftime,throwupredflags

• FatherTimeisundefeated.

Page 23: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

PublicInformationGathering

Acommittedattackerisgoingtopassivelyfarmandprofileyourcompany.Themostdevastatingpartofthisisthatsomeonecaneasilymapoutyourcompany,networkandinfrastructurewithouthavingtoconnecttoyournetwork.

Page 24: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

PublicInformationGatheringTools

• FOCA• Maltego• Google• SocialNetworkingSites(LinkedIn,Myspace,Facebook,Twitter)• ARINRecordsSearch• Netcraft• Shodan• MailingLists• DNSLookups• WHOISInformation• WYDProfiling

Page 25: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

PublicInformationGathering

• ProfileOrganization:Structure,EmailAddresses,Titles,Departments

• Determinepossibleinfrastructureandexploitstouseagainstit.(E-mailServers,Apps)

• Farmpasswordlistsandprofiles,gatherpersonalinformation

• BaitforPhishing

• Correlateandcross-referencesources

• Findclients,partners,determinewhatmaybeworthmytime

• Re-mineandRefine

Page 26: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

MetadataExtractionDemonstration

FOCANote:Metadataismorevaluablethandatainmostcases.

26

Page 27: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

ActiveInformationGathering

Acommittedattackerisgoingtoactivelybegintoprobeyourorganizationandnetworkusingtheinformationrefinedpreviously.Thekeyistorefinetheinformationandmaintainalowprofile.

Page 28: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

ActiveInformationGathering

• CalltheAdmins– Whoisresponsibleforwhat?Wheredopeoplework?DidIgetstructurecorrect?Cantheygivememoreinformation?

• CalltheITStaffandHelpdesk– WhendotheITstaffwork?Wheredotheywork?Arethereweaklinks?Howdotheyprocessinformationandtickets?Whoarethey(phishing)?

Page 29: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

ActiveInformationGathering

• Locateyouroffices,findvulnerableareas– Doyouhaveasatelliteoffice?Doyoushareofficespace?DoyouhaveopenwindowsIcanlookinto?Cameras?Whattimedoesyourstaffleave?

• WarDriveforyourWi-Fi– Probeyourwireless

• Determinephysicalsecurityperimeter– CanIwalkintothelobbyandoffices?Whatareyoutryingtohide?Doyouhavecameraswatchingthings?Arethingshiddenbehindbushes?

Page 30: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

ActiveInformationGathering

• SendE-Mails– Whatarevalidaddresses?Doyousendreadreceipts?Whowillrespond?CanIspoof?

• ScanyourNetwork– PortScanning,WebServerConnections,IDS/IPSdetermination,Identifypublicfacingserversandtheirvulnerabilities,begincraftingattacks

• Directlyconnecttopublicfacingserversanddevices(Ex.IISInternalIPweakness)

• GatherLogos,IdentifyinginformationforPhishing

• Re-mineandRefine

Page 31: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

ActiveInformationGatheringDemonstration

• ReadNotify – HowIcanmapanetworkandresourceswithoneemail

• SearchEngineFarming– Whyshouldwekeepalowprofile?

31

Page 32: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

Page 32

Page 33: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

ZeroEffortHacking• SearchString:filetype:txt "password7""console"hospital

• OnlineDecrypterhttp://www.ibeast.com/content/tools/CiscoPassword/index.asp

Page 34: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

AdvancedAttacks• SearchString:

intitle:"virtualoffice"sonicwall domain

Page 35: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

Whatdoesthispagetellme?

• PointofEntrythroughaVPN

• It’sADintegrated

• It’soldinfrastructure– NoUpdates

• ExternalIPAddress

• TheSSLcertificateismisconfiguredorthedefault(self-signed?)

Page 36: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

ARINSearch• GeographicArea

• Namesaresimilar

• NameofTarget

Page 37: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

Backtogoogle!• MatchedTarget

• Address

• CareersPage

• ContactUs

• BusinessandProcesses

Page 38: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

MytargetisVERYinteresting!

Page 38

Page 39: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

WebsiteInformation• EmailAddresses

• PossibleLoginNames

• PhishingTargetsandDecisionMakers

• StaffTravel

Page39

Page 40: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

DiggingthroughDNS• HostedEmail– ApointofattackorwhosefiltersIhavetobeat

• SPFRecord– NotPerfectbutweknowthey’rechecking

• DNSNameoftheirhostingprovider–Somethinginterestingtoexamine

Page 41: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

DNSSearch• DNSNameisodd– KROSS

• DNSARecordQuery

• InternalIPoftheirhostingprovider’snetwork

Page 42: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

WhathaveIgatheredsofar?

• ADDomainName• MultipleAttackSurfaces• PossibleUsernames• PointofLogin• DirectNetworkAccess• EmailAddresses• BusinessTypeandClients• InternalIPAddressesforMultipleNetworks• PhysicalLocation• VulnerableISP/HostingCompany

Page 42

Page 43: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

WhatcanIsafelyassume?

• Nooneispatchingtheirenvironmentorthey’renotinvesting.

• Theirhostingcompanymaynotbesecurityconscious.

• ImportantPeoplearetraveling,it’sanopportunityformultipleattacks.

• OnsiteSocialEngineeringmaywork.

• ImaybeabletoattackOutlookOnlinewithoutfearofalerting.

• Thereisenoughmoneyorinformationtomakethisworthmywhile.

Page 43

Page 44: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

PhishingandSocialEngineering

• Setupafakewebsitewithanamesimilartoyoursorwhichsounds“secure”.

• Sendemailstoyouremployeeswithalinktoaphishingsiteaskingforapasswordresetorvalidation.BrowserExploitation,clientsideexploitationarealsoviableoptions.

• UseYOURlogosandITstaffinformationorDirectSupervisor’snames

• Wehopeforapasswordentry,butjustclickingthelinkcanrenderusableinformationoraplatformforaclientsideexploit.

• IfIdidmyhomework,Ialreadyknowwhatappsyouareusing.Icandeliverpayloadviawebsite,emailsorattachments.

• Thisisthemosteffectiveattack– 75-85%successratePERengagement.

Page 45: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

UserExploitation

Attemptdeliveryofexploitsbyallmeansavailable

• DropUSBSticksinparkinglotwithmyexploits(*sigh*)

• Callyouremployeesandhelpdeskattemptingtoresetpasswords,getremoteaccess,redirectthemtosites

• Resetpasswordsviausersideresets– UseIntelligencegatheredpreviouslyoractivelygatheragain.

• Attempttoenterthepremises,ifpossible.ShoulderSurfing,Tailgating,GrabIDsorseewhattheylooklike.

• ARIN&IPInformation->ServiceProvider->WHOISInformation->FakeID->Clipboard&CableTester->BotherAdmin->GetAccess->PlantDeviceorAccess

YouwouldbepetrifiedtoknowthetypesofplacesIhavejust“talked”mywayinto.

Page 46: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

ExploitingWeakness,IgnoranceandPredictability

Somepointstoconsider:

• Wehavenotattemptedatraditional,“technical”exploit.

• Noneofyourinfrastructurehasbeendirectlyattacked,compromisedorexploited.

• Mostofthisiseitherhardtodetectorissocommonthatithidesinplainsight.Ifyouhaven’timplementedsecuredetectivecontrolsortrainedyourusers,youmayneverknowthisisoccurring.

• ThemosttechnicalattackwehaveattemptedisexploitationofaworkstationviaUSBstick.Auser,iftheywereexploited,arenotlikelytoreportthistoyou.

Page 47: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

UserExploitationDemonstration

• WirelessHijacking

• Keyloggers

• USBdeviceattacks

47

Page 48: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

Trainingvs.Reality

IfIhavesuccessfullyexploitedauserbeforethispoint,Iwillnotdirectlyattackyourinfrastructure.Thegoalisentrytoyournetworkusingthepathofleastresistance.Iwanttostayundetectedinsideyournetworkforaslongasisneeded.Wehavetraditionallybeentrainedtofightoffthe hackerwhositsbehindthekeyboardandattacksforthechallengeortoslashandburnyourinfrastructure.

Page 49: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

Intrusion&Enumeration

• Thegoalistogatherinformation andexploit• Attemptentryviacompromisedaccountsandmachines• Enumeratethenetwork– WHATdoIhaveaccessto?WhatdoIwanttoaccessnext?

• Find“weak”spotsorexploitableinformationandsystems

Onceaccessisgainedyournetwork,thegameisover.ContainmentandIncidentResponseisparamount!

Page 50: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

Intrusion&Enumeration

• ProbingQUIETLY viaNetworkScans&Tools

• PrivilegeEscalation– LikelynottohaveAdminrightswiththisattack

• Attemptentryintoshares,databases,applications

• RBAC,LeastPrivilege,SeparationofDuties,UserProfilingandBehavior,ACL’sandLoggingbecomeincrediblyimportant

Page 51: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

InteralProbing

• AttackActiveDirectory– ViewGroupMemberships,ConfirmAccounts,FindAdminAccounts

• Attemptentryusingcredentials– SQLDB’s,Exchange/Lotus,ReadE-mail,opendocs/shares

• DEFAULTPASSWORDS!

• EstablishRe-entrymethods– Keepaccessandabilitytohideattack

(i.e.‘HoldthebeachforaslongasIneedto’)

• DetermineInternalSecurityMeasures- Disablethemoravoiddetection

Page 52: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

AccessandTheft

• DataExfiltration– SendInformation/Dataoffsitedisguisedasuserorview/capture

• MonetaryTheft– Slamvs.Nibble,OffsiteAccountAccess

• CreditCardFraud– GatherNumbers,Information,Applyforcredit

• PersonalInformationGathering– TINandSSNs,ClientsListsandothersitesforattack

• MetadataScavenging– Dataaboutthedataanditsvalue

Page 53: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

TheGreatEscape

• DestroyorObfuscateincriminatingdataandinformation

• Enableavenueforre-entryifdesired– Agents,Bots,RemoteAccess,UserAccounts

• ScorchedEarthorSurgicalStrike?

• Leverageyournetworkforfurtheracts

Page 54: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

Triage

• MostimportantstepforInfoSecandForensics

• ForensicallySound

• LegalandBusinessRequirements

• PreserveInformationbutRemediatesituation

• AssessmentandDecisionmakingarekey

• Documentationiscritical

Page 55: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

DuringIncident1.AlertManagement

2.TakePictures

3.DocumentEVERYTHING

4.CaptureVolatileData(RAM,RunningProcesses,Pagefile,etc.)

5.Containment

6.Assessment

Post-Incident7.Securelytransportandstoreinformation

8.Investigate

9.Remediate

10.Prepforfutureaction

11.ReviewandImprove

Page 56: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

RequirementsorQualifications

• Appointamemberofstafforateam

• Baselinetraining(ACEorEnCE,Sec+,others)

• Empowertheteamormanager

• InterfaceswithManagement– “Looksgoodinfrontofacamera”

• IntelligentandIntuitive– Critical,Proactivethinkers

• UnderstandtheEvolutionofInfoSecandRisk– “BeLikeWater”

• Discipline– Work,Eat,Security(Notimeforsleep)

Page 57: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

• Determineanacceptableamountofrisk

• Securityvs.Convenience

• Getexecutivebuy-in

• Transparencythroughtheprocess

• BeREASONABLE

RiskManagement

Page 58: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

ToolsandLinks

• InformationParadoxhttp://www.information-paradox.net

• Cain&Abelhttp://www.oxid.it/cain.html

• NMAPhttp://nmap.org/

• Metasploit http://www.rapid7.com/

• Nessushttp://www.tenable.com/products/nessus

• Hacme Bankv2.0http://www.mcafee.com/us/downloads/free-tools/hacme-bank.aspx

• OWASPhttps://www.owasp.org/index.php/Main_Page

• Hackthissite http://www.hackthissite.org/

• Metasploitable VMhttps://community.rapid7.com/docs/DOC-1875

58

Page 59: Great forensics is great homework! Great Hacking is great ... · Public Information Gathering Tools • FOCA • Maltego • Google • Social Networking Sites (LinkedIn, Myspace,

ContactInformation

KenPyle,Partner

DFDRConsulting

[email protected]

[email protected]

59