Understanding OSINT

As mentioned previously, the first stage of a penetration test is to gather as much information as possible on a given target or organization. Gathering information prior to exploiting and gaining access to a network or system will help the penetration tester narrow the scope of the attack and design specific types of attacks and payloads that are suitable for the attack surface of the target. We will begin our information-gathering phase by utilizing the largest computer network in existence: the internet.

The following diagram provides a brief overview of the different areas where OSINT can be found on a target:

The ...

Get Learn Kali Linux 2019 now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.