Professional Red Teaming by Jacob G. Oakley
Author:Jacob G. Oakley
Language: eng
Format: epub
ISBN: 9781484243091
Publisher: Apress
Types of Findings
Now to cover the meat of the report, which includes the findings themselves and how best to communicate them to the customer. It is important to understand there are different types of findings and they can be nuanced in the way they are portrayed to the customer. The most obvious finding is a vulnerability in a piece of installed software that was exploited by the assessors to manipulate or impact the target. Many times, however, findings are not this technical in nature; they can be misconfigurations or lack of configurations that enable successful attack activity. Many times it is also inappropriate to proof of concept a vulnerability by successful exploitation and thus disclosure of findings that were identified but not leveraged is still very useful to the customer. Findings of a less technical nature, such as lack of policy or procedural implementations can also allow assessors to compromise portions of the organization.
Download
This site does not store any files on its server. We only index and link to content provided by other sites. Please contact the content providers to delete copyright contents if any and email us, we'll remove relevant links or contents immediately.
Effective Threat Investigation for SOC Analysts by Yahia Mostafa;(7207)
Practical Memory Forensics by Svetlana Ostrovskaya & Oleg Skulkin(6904)
Machine Learning Security Principles by John Paul Mueller(6871)
Attacking and Exploiting Modern Web Applications by Simone Onofri & Donato Onofri(6530)
Operationalizing Threat Intelligence by Kyle Wilhoit & Joseph Opacki(6508)
Solidity Programming Essentials by Ritesh Modi(4406)
Microsoft 365 Security, Compliance, and Identity Administration by Peter Rising(4002)
Operationalizing Threat Intelligence by Joseph Opacki Kyle Wilhoit(3752)
Learn Computer Forensics - Second Edition by William Oettinger(3500)
Future Crimes by Marc Goodman(3469)
Blockchain Basics by Daniel Drescher(3435)
Mastering Azure Security by Mustafa Toroman and Tom Janetscheck(3430)
Mastering Python for Networking and Security by José Manuel Ortega(3425)
Building a Next-Gen SOC with IBM QRadar: Accelerate your security operations and detect cyber threats effectively by Ashish M Kothekar(3372)
Incident Response with Threat Intelligence by Roberto MartÃnez(3223)
The Code Book by Simon Singh(3031)
Mastering Bitcoin: Programming the Open Blockchain by Andreas M. Antonopoulos(2957)
Mobile App Reverse Engineering by Abhinav Mishra(2935)
From CIA to APT: An Introduction to Cyber Security by Edward G. Amoroso & Matthew E. Amoroso(2838)
