19.04.2013 Views

2KKUU7ita

2KKUU7ita

2KKUU7ita

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Chapter 4: Hacking Methodology<br />

test them to see what rogue (or even curious or misguided) employees<br />

and other insiders can access. A worst-case situation is that the hacker<br />

has set up shop on the inside. Just to be safe, examine your internal systems<br />

for weaknesses.<br />

If you’re not completely comfortable scanning your systems, consider first<br />

using a lab with test systems or a system running virtual machine software,<br />

such as the following:<br />

✓ VMware Workstation (www.vmware.com/products/workstation/<br />

overview.html)<br />

✓ VMware Player (www.vmware.com/products/player)<br />

✓ Windows Virtual PC (www.microsoft.com/windows/virtual-pc/<br />

default.aspx)<br />

✓ VirtualBox, the open source alternative that I’m growing to love (www.<br />

virtualbox.org)<br />

Hosts<br />

Scan and document specific hosts that are accessible from the Internet<br />

and your internal network. Start by pinging either specific hostnames or IP<br />

addresses with one of these tools:<br />

✓ The basic ping utility that’s built in to your operating system<br />

✓ A third-party utility that allows you to ping multiple addresses at the<br />

same time, such as NetScanTools Pro (www.netscantools.com) for<br />

Windows and fping (http://fping.sourceforge.net) for UNIX<br />

The site www.whatismyip.com shows how your gateway IP address appears<br />

on the Internet. Just browse to that site, and your public IP address (your<br />

firewall or router — preferably not your local computer) appears. This information<br />

gives you an idea of the outermost IP address that the world sees.<br />

Open ports<br />

Scan for open ports by using network scanning tools:<br />

✓ Scan network ports with NetScanTools Pro or Nmap (http://nmap.<br />

org). See Chapter 8 for details.<br />

✓ Listen to network traffic with a network analyzer, such as OmniPeek<br />

(www.wildpackets.com) or Wireshark (www.wireshark.com). I<br />

cover this topic in various chapters throughout this book.<br />

55

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!