Episode 63: A Day In The Life: Internal Penetration Testing

preview_player
Показать описание
Episode 63 of The Cyber Threat Perspective dives into the world of internal penetration testing, shedding light on the often misunderstood and mysterious practice. Join Spencer and Brad as they discuss their methods, tools, and insights gained during real-world engagements.

In this episode, we cover:
- The importance of gradually increasing volume in testing
- The value of conducting OSINT research for creating wordlists
- The shift from network-based testing to the assumed breach model
- The discovery of hidden files and the power of actively searching through file shares
- The strengths, weaknesses, and vulnerabilities of EDR platforms

Рекомендации по теме
Комментарии
Автор

What note taking applications do you guys use? Do you have something different for building your report during a pentest vs something to use while studying/practicing pentesting? I've heard a lot of popular options like Obsidian and Notion but it'd be nice to hear the opinion of actual pen testers. This channel is an absolute gold mine BTW! Every episode has helped me tremendously as a new pentester/new to cyber, so thank you!

addisonhall
join shbcf.ru