OSUNT(Open Source Intelligence)以及踩点技术介绍

       以下内容参考《高度安全环境下的高级渗透测试》


       OSUNT是开源情报的意思,我们所使用的这些资源都可以免费公开的获取。

       开源情报包括收集、处理和分析公开的数据,将这些数据转化成可操作可利用的文档。可公开获取的数据包括但不限于以下内容:

        1、搜索引擎

        2、会议

        3、学术资源

        4、来自法院、税务表单的公开数据

        5、博客

        6、研究报告

        7、来自文件、可执行文件、文档等的元数据

        8、可公开获取的文档

     

        踩点技术是指使用非入侵的方式扫描网络环境。通常用来定位哪里存在漏洞,并且可以获取操作系统、软件以及正在运行的服务的类型。通过踩点以非入侵的方式获取的信息包含以下信息:

        1、域名服务器

        2、IP范围

        3、旗标

        4、操作系统

        5、使用的技术

        6、网络设备类型

        7、是否使用了IDS(Intrusion Prevention System) / IPS(Intrusion Detection Systems)


这些信息在执行渗透测试时是非常关键的,下面简单介绍一下侦查工作的流程:

        信息搜集:寻找你需要进行渗透测试公司及其员工的所以信息。包括公司的公开文件、关键员工、职称、电话号码、图片、IP地址以及其他你能够找到的信息。

        相关性鉴定和优先次序:去除那些明显错误的数据或者误导类型的数据,筛除掉无用的信息,对剩下有用的信息进行分类和排序。

        使用信息:使用搜集的信息计划一次或多次攻击。


  • 0
    点赞
  • 0
    收藏
    觉得还不错? 一键收藏
  • 0
    评论
Open Source Intelligence Methods and Tools focuses on building a deep understanding of how to exploit open source intelligence (OSINT) techniques, methods, and tools to acquire information from publicly available online sources to support intelligence analysis. The harvested data can be used in different scenarios such as financial, crime,and terrorism investigations as well as in more regular tasks such as analyzing business competitors, running background checks, and acquiring intelligence about individuals and other entities. This book will also improve your skills in acquiring information online from the surface web, the deep web, and the darknet. Many estimates show that 90 percent of useful information acquired by intelligence services comes from public sources (in other words, OSINT sources). Social media sites open up numerous opportunities for investigations because of the vast amount of useful information located in one place. For example, you can get a great deal of personal information about any person worldwide by just checking their Facebook page. This book will show you how to conduct advanced social media investigations to access content believed to be private, use advanced search engines queries to return accurate results, search historical deleted versions of websites, track individuals online using public record databases and people-searching tools, locate information buried in the deep web, access and navigate the dark web, collect intelligence from the dark web, view multiple historic satellite images and street views of any location, search geolocation information within popular social media sites, and more. In short, you will learn how to use a plethora of techniques, tools, and free online services to gather intelligence about any target online. OSINT-gathering activities should be conducted secretly to avoid revealing the searcher’s identity. Therefore, this book will teach you how to conceal your digital identity and become anonymous online. You will learn how to exchange data secretly across hostile environments like the Internet and how to communicate with your peers privately and anonymously. You will also learn how to check your digital footprint and discover what kind of digital traces you are leaving behind and how to delete them.
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值