In this tutorial, you will learn Hacking, Ethical Hacking, Vulnerability, Exploit, Daisy-chaining, Botnet, CIA TRIAD, Security Threats, Attack Vectors and Hacking Phases.
Oracle VM VirtualBox: Hacking lab setup for Hackers
https://www.thehackersworld.com/cours...
Kali Linux Basic Fundamentals
https://www.thehackersworld.com/cours...
02:25 - Hacking
Hacking is the process of gaining unauthorized access into a computer system, or group of computer systems. Hacking is also defined as a form of cyber crime which is punishable by law.
03:43 - Ethical Hacking
Ethical hacking involves an authorized attempt to gain unauthorized access to a computer system, application, or data. This practice helps to identify security vulnerabilities which can then be resolved before a malicious attacker has the opportunity to exploit them.
05:09 - Vulnerability
Vulnerability is a weakness within a security which can allow attackers to gain unauthorized access to or perform unauthorized actions on that system.
06:38 - Exploit
An Exploit is a means through which a vulnerability can be compromised for malicious activity by Attacker. Exploitation is the next step in an attacker's playbook after finding a vulnerability.
07-29 - Exploit Classifications
07:34 - Unauthorized Data Access – It refers to when someone/something has access to a location that was not intended or not wanted.
07:51 - Arbitrary Code Execution – It is used to execute any commands of an attacker’s choice on a target machine or a process. This is a bug in software that gives an attacker a way to execute arbitrary code.
08:17 - Denial-of-Service attack (DoS attack)– This attack will ask a server for information from multiple sources at the same time, this will result in to much allocated memory and server will crash to the amount of traffic. This will result in a shutdown, or reboot, or total system crash
09:01 - Web Exploitation – Exploitation of the vulnerable Web Services on both Client Side as well as Server Side. E.g. Cross-site scripting, CSRF, SSRF etc.
09:10 - Daisy-chaining
A daisy chain is an interconnection of computer devices, peripherals, or network nodes in series, one after another.
09:47 - Botnet
A botnet is a collection of Internet-connected devices, each of which is running one or more bots. Botnets can be used to perform Distributed Denial-of-Service (DDoS) attacks, steal data, send spam, and allows the attacker to access the device and its connection.
10:59 - CIA TRIAD
The CIA Triad is a well-known, venerable model for the development of security policies used in identifying problem areas, along with necessary solutions in the arena of information security.
Confidentiality
Integrity
Availability
11:33 - Security Threats
In Information Security threats can be many like Software attacks, theft of intellectual property, identity theft, theft of equipment or information, sabotage, and information extortion.
Hosts
Applications
Physical
Human
Natural
Network
19:29 - Where Do Most Attacks Come From?
Cyber attacks have been around as far back as the Internet itself. Most countries have fallen victims to the traditional style of cyber attacks originating from the internal as well as external factors of the countries.
Foreign Countries
External
Internal
20:12 - Attack Vector and types of Attack Vectors
A method or way an attacker can gain unauthorized access to a network or computer system.
Un-patched OS/software
Compromised or Weak credentials
Internal users
Malware
Ransomware
Botnets
Lack of security policies
Mobile devices
24:50 - What skills should an Ethical Hacker have?
Ethical hackers are skilled professionals with knowledge of tools and methodologies to uncover vulnerabilities in any organization’s IT infrastructure.
Expert with Programs and Networks
Proficient with Vulnerability Research
Mastery with Diverse Hacking Techniques
Explicit Permissions in Writing
No means No!
Report All of Results
26:00 - Why a Hacker Hacks ?
28:00 - Types of Hackers ?
30:47 - Hacking Phases
There are mainly 5 phases in hacking. Not necessarily a hacker has to follow these 5 steps in a sequential manner. It’s a stepwise process and when followed yields a better result.
Reconnaissance
Scanning
Gaining access
Maintaining access
Clearing tracks
37:00 - Vulnerability Assessment
37:52 - Penetration Testing
What is Reconnaissance | What is Information Gathering | Whois and Reverse Whois | Class 2 - Hindi
• What is Reconnaissance | What is Informati...
DNS Reconnaissance and Footprinting | What is DNS Footprinting | IP to location | Class 3 - Hindi
• DNS Reconnaissance and Footprinting | What...
Hackers Online Information Gathering Tools | Online Hackers Tools | Class - 4
• Hackers Online Information Gathering Tools...