Learning zANTI2 for Android Pentesting
暫譯: 學習 zANTI2 進行 Android 滲透測試
Miroslav Vitula
- 出版商: Packt Publishing
- 出版日期: 2015-08-31
- 售價: $1,260
- 貴賓價: 9.5 折 $1,197
- 語言: 英文
- 頁數: 132
- 裝訂: Paperback
- ISBN: 1784395048
- ISBN-13: 9781784395049
-
相關分類:
Android
海外代購書籍(需單獨結帳)
商品描述
Dive into the world of advanced network penetration tests to survey and attack wireless networks using your Android device and zANTI2
About This Book
- Understand the basics of wireless penetration testing and its importance
- Learn the techniques to perform penetration testing on your wireless networks, such as scanning, detecting vulnerabilities in your victim, and then attacking
- This simple and intriguing guide takes a step-by-step approach that will help you get to grips with network pentesting using just your Android device and zANTI2
Who This Book Is For
The book is intended for those who want to know more about network penetration tests and have no prior experience, as well as for those who are experienced in network systems and are curious to discover more about this topic. Since zANTI2 features an extremely intuitive and easy to control interface, it doesn't require any special skills.
What You Will Learn
- Understand the importance of penetration testing throughout systems
- Take a run through zANTI2's interface and understand the requirements to the app
- Perform advanced scanning/network mapping and discover the various types of scans used on a target
- Discover and remotely connect to open ports on a target, thereby accessing a target's files and folders remotely
- Detect vulnerabilities on a target, learn how to remotely exploit them, and discover ways to protect your self from these exploits
- Understand what an MITM attack is and how it works, and apply this knowledge to perform attacks on network targets
- Learn to hijack sessions, identify victim's passwords, replace images on websites, inject scripts, and more
- Use this knowledge to protect yourself from all of the attacks you will study
In Detail
A penetration test is one of the most important methods to secure a network or any individual machine. Having knowledge of these methods can enable a user to protect himself/herself from any kinds of attacks. Penetration tests can also be used to discover flaws or loop holes in one's security system, which if not fixed, can be exploited by an unwanted entity.
This book starts off with an introduction to what penetration testing is, and how it can be performed on Android using zANTI2. Once you are aware of the basics, we move on to teach you the different types of scans that can be performed to search for targets. You will then learn how to connect to open ports and intrude into an unsecured computer. From here you will explore vulnerabilities and their usage, including ShellShock and SSL Poodle vulnerability.
When connected to an open network, a user is susceptible to password and session hijacking, and a number of other cyber attacks. The book therefore ends with one of the main aspects of cyber security: the Man in the Middle attack. You will get to know everything about the MITM attack, how it works, and how one can be protected against it.
Style and approach
The book follows a step-by-step approach with each of the parts explained in an easy-to-follow style. Most of the methods showcased can be tried out immediately on almost any network.
商品描述(中文翻譯)
深入探索高級網路滲透測試的世界,使用您的 Android 裝置和 zANTI2 來調查和攻擊無線網路
關於本書
- 了解無線滲透測試的基本概念及其重要性
- 學習在無線網路上進行滲透測試的技術,例如掃描、檢測受害者的漏洞,然後進行攻擊
- 本書以簡單且引人入勝的方式,採取逐步的方法,幫助您僅使用 Android 裝置和 zANTI2 來掌握網路滲透測試
本書適合誰
本書適合那些想要了解更多有關網路滲透測試的人,無論是沒有任何經驗的初學者,還是對網路系統有經驗並希望進一步探索此主題的人。由於 zANTI2 擁有極其直觀且易於控制的介面,因此不需要任何特殊技能。
您將學到什麼
- 了解滲透測試在系統中的重要性
- 瀏覽 zANTI2 的介面並了解應用程式的要求
- 執行高級掃描/網路映射,並發現針對目標使用的各種掃描類型
- 發現並遠程連接到目標的開放端口,從而遠程訪問目標的文件和資料夾
- 檢測目標的漏洞,學習如何遠程利用這些漏洞,並發現保護自己免受這些利用的方法
- 了解什麼是 MITM 攻擊及其運作方式,並應用這些知識對網路目標進行攻擊
- 學習劫持會話、識別受害者的密碼、替換網站上的圖片、注入腳本等
- 利用這些知識保護自己免受您將學習的所有攻擊
詳細內容
滲透測試是保護網路或任何單一機器的最重要方法之一。了解這些方法可以使使用者能夠保護自己免受各種攻擊。滲透測試還可以用來發現安全系統中的缺陷或漏洞,如果不修復,可能會被不受歡迎的實體利用。
本書首先介紹什麼是滲透測試,以及如何使用 zANTI2 在 Android 上執行滲透測試。一旦您了解基本概念,我們將教您可以執行的不同類型的掃描,以搜尋目標。接著,您將學習如何連接到開放端口並侵入不安全的計算機。從這裡,您將探索漏洞及其使用,包括 ShellShock 和 SSL Poodle 漏洞。
當連接到開放網路時,使用者容易受到密碼和會話劫持以及其他多種網路攻擊。因此,本書以網路安全的主要方面之一結尾:中間人攻擊(Man in the Middle attack)。您將了解有關 MITM 攻擊的所有內容、其運作方式以及如何保護自己免受此攻擊。
風格與方法
本書採取逐步的方法,每個部分都以易於理解的風格進行解釋。大多數展示的方法幾乎可以立即在任何網路上嘗試。