ペネトレーションテストの3つの攻撃フェーズ

ペネトレーションテストのフェーズは3つに分けられる

  • pre-attack (preparation)
  • attack (assessment)
  • post-attack (conclusion)

 

 

pre-attack (preparation)

  • scannnig
  • reconnaissance

 

attack (assessment)

  • penetrate the perimeter
  • acquire targets
  • execute attack
  • escalate privileges

 

post-attack (conclusion)

  • removing all uploaded files and tools
  • restoring to the original state
  • analyzing results
  • prepareing reports for the customer