0% found this document useful (0 votes)
2 views6 pages

Module 1

The document provides an overview of ethical hacking, distinguishing it from malicious hacking and categorizing hackers into types such as black hat, white hat, and grey hat. It outlines the five phases of hacking, the importance of ethical hacking in enhancing cybersecurity, and the necessary skills and terminology for ethical hackers. Additionally, it describes different testing types used in security evaluations, including black-box, white-box, and gray-box testing.

Uploaded by

dhruvkarchess
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as DOCX, PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
2 views6 pages

Module 1

The document provides an overview of ethical hacking, distinguishing it from malicious hacking and categorizing hackers into types such as black hat, white hat, and grey hat. It outlines the five phases of hacking, the importance of ethical hacking in enhancing cybersecurity, and the necessary skills and terminology for ethical hackers. Additionally, it describes different testing types used in security evaluations, including black-box, white-box, and gray-box testing.

Uploaded by

dhruvkarchess
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as DOCX, PDF, TXT or read online on Scribd

INTRODUCTION TO ETHICAL HACKING

Before ethical hacking became popular, hacking was mainly used to describe
illegal, frequently malevolent actions intended to obtain unauthorized
access to computer systems or networks. These actions were carried out
with the intention of taking advantage of weaknesses, stealing
information, interfering with services, or harming the targeted systems
and people. The early hacker group, also referred to as "black hat"
hackers, worked covertly, using their technological know-how to compromise
networks for monetary gain, ideological purposes, or even personal
advantage.
Because of the malevolent purpose behind these activities, the term
"hacker" was linked with negativity during this time. The absence of
ethical and legal guidelines around hacking meant that those who engaged
in the practice faced no repercussions, which added to the climate of
widespread criminality and security lapses. Ethical hacking developed in
reaction to these illicit actions and to enhance cybersecurity in general.
What is Hacking?
The act of hacking involves breaking into computer systems or networks
without the owner's authorization or knowledge, frequently to examine,
edit, or manipulate data or functionality within those systems.
Who are Hackers?
As defined in the New Hacker's Dictionary, a hacker is "a person who
enjoys exploring the details of programmable systems and how to stretch
their capabilities" and one who is capable of "creatively overcoming or
circumventing limitations".
Types of Hackers
Hackers can be broadly categorized into different types based on their
motivations, intentions, and actions in the digital realm. Here are the
three main types:
1. Black Hat Hackers: Black hat hackers are hostile persons that get
into computer systems without permission in order to exploit
security flaws for their own advantage, financial gain, or to hurt
others. They engage in data theft, virus distribution, and malicious
cyberattacks.
2. White Hat Hackers (Ethical Hackers): White hat hackers are
cybersecurity professionals who employ their hacking expertise for
good. They are used to formally evaluate and improve the security of
systems and networks, spotting weaknesses and making suggestions to
fortify defences.
3. Grey Hat Hackers: Grey hat hackers come under the categories of both
black hat and white hat hackers. They might break into networks
without authorization, but they might do it with good motives.
Following the discovery of vulnerabilities, they often notify the

1
company, occasionally demanding payment to help with problem-
solving.
Other notable types of hackers include:

● Script Kiddies: Script kiddies are individuals with limited


technical expertise who use pre-written hacking scripts and tools to
conduct cyber-attacks. They lack in-depth understanding and mainly
rely on existing software to perform actions.
● Hacktivists: Hacktivists utilize their knowledge of computer hacking
to promote social, political, or environmental concerns. They use
tactics like website defacement, data breaches, or service
interruption to spread their message and target groups or people
they believe to be in opposition to their ideals.
● State-Sponsored Hackers: Hackers who are employed or backed by
governments or nation-states to commit cyber-espionage,
cyberwarfare, or sabotage against other countries, organizations, or
people are known as state-sponsored hackers. They engage in anything
from information theft to infrastructure disruption.
● Cyber Criminals: Cybercriminals are generally motivated by financial
gain when they participate in different illicit actions online
including identity theft, credit card fraud, ransomware attacks, and
phishing schemes.
To successfully handle cybersecurity concerns and adopt suitable security
measures to reduce possible dangers, it is essential to understand these
various sorts of hackers.
Five phases of Hacking
The "hacking life cycle," as the process of hacking is frequently referred
to, typically consists of several distinct stages. It is crucial to keep
in mind that these stages are not always sequential and may even overlap
or be repeated in different ways. Here are the general five phases of
hacking:

2
1. Reconnaissance: During the reconnaissance phase, details on the
target system or organization are gathered. Identifying IP
addresses, domain names, network topology, personnel information,
and publicly accessible data from search engines, social media, or
public records are all included in this.
2. Scanning: Hackers utilize instruments and methods during the
scanning phase to identify active hosts, open ports, and services
that are accessible on the target network. This stage assists in
locating potential points of entry and weak services that might be
abused.
3. Gaining Access (Gaining a Foothold): During this stage, the hacker
uses the vulnerabilities they have discovered to enter the system or
network without authorization. Techniques like exploiting weak
passwords, making use of software flaws, or using social engineering
may be used in this.
4. Maintaining Access: Once inside, the hacker wants to keep control of
the infected system or network. To maintain control and access, this
entails developing a backdoor, establishing permanent access, and
avoiding detection.
5. Covering Tracks (Clearing Tracks): In the last stage, the hacker
tries to hide their tracks by deleting or obscuring any records of
their actions. To make things difficult for forensic investigation,
this may involve erasing logs, changing timestamps, and hiding any
digital traces.
It is important to note that penetration testing and ethical hacking
follow similar steps, but with permission and ethical considerations. By
identifying flaws and vulnerabilities inside a framework that is both
legal and approved, ethical hackers help firms fortify their security
posture and fend off hostile attacks.
What is Ethical Hacking?
Authorized professionals mimic cyberattacks on systems, apps, or networks
to find flaws and vulnerabilities. This practice is known as ethical
hacking, penetration testing, or white hat hacking. The main objective is

3
to assist firms in enhancing their security precautions and safeguarding
against conceivable actual cyber-attacks.
In conclusion, ethical hackers are distinguished by their legitimacy,
adherence to moral standards, dedication to enhancing security,
responsible disclosure techniques, and beneficial effects on
cybersecurity. They provide a significant contribution to establishing a
more secure online environment for people, organizations, and society at
large.
An Ethical Hacker’s Skill Set
To remain one step ahead of malevolent hackers, ethical hackers need to be
highly skilled computer specialists with extensive understanding of
operating systems, networking, and programming. It also requires extensive
familiarity with highly targeted systems (such Windows, Unix, and Linux).
Given the duration and degree of focus needed for most attacks to succeed,
ethical hackers must possess patience, persistence, and unwavering
perseverance. Competencies in web programming, databases, and networking
are helpful when conducting vulnerability testing and ethical hacking.
Most ethical hackers are knowledgeable about security areas and related
issues but do not necessarily have a strong command of the countermeasures
that can prevent attacks.
Ethical Hacking Terminology

Being able to understand and define terminology is an important part of a Ethical


Hackers' responsibility. This terminology is how security professionals acting as ethical
hackers communicate. Here are some common ethical hacking terminologies and their
brief explanations:

● Threat: An environment or situation that could lead to a potential


breach of security. Ethical hackers look for and prioritize threats
when performing a security analysis. Malicious hackers and their use
of software and hacking techniques are themselves threats to an
organization’s information security.
● Vulnerability: The existence of a software flaw, logic design, or
implementation error that can lead to an unexpected and undesirable
event executing bad or damaging instructions to the system. Exploit
code is written to target a vulnerability and cause a fault in the
system in order to retrieve valuable data.
● Exploit: An exploit is a piece of software, a sequence of commands,
or a technique used to take advantage of a vulnerability in order to
compromise a system.
● Payload: The payload is the part of the exploit or malware that
performs malicious actions, such as granting unauthorized access,
stealing data, or disrupting the system.

4
● Attack: An attack occurs when a system is compromised based on a
vulnerability. Many attacks are perpetuated via an exploit. Ethical
hackers use tools to find systems that may be vulnerable to an
exploit because of the operating system, network configuration, or
applications installed on the systems, and to prevent an attack.
● Target of Evaluation (TOE): A system, program, or network that is
the subject of a security analysis or attack. Ethical hackers are
usually concerned with high-value TOEs, systems that contain
sensitive information such as account numbers, passwords, Social
Security numbers, or other confidential data. It is the goal of the
ethical hacker to test hacking tools against the high-value TOEs to
determine the vulnerabilities and patch them to protect against
exploits and exposure of sensitive data.
● Zero-Day Vulnerability: A security defect in hardware or software
that is undiscovered by the vendor and the general public is known
as a zero-day vulnerability. Before a repair or patch is created,
hackers can take advantage of it.
● Red Team vs. Blue Team: Red team refers to ethical hackers that
simulate assaults to find vulnerabilities, and blue team to the
internal defenders or cybersecurity team in charge of fighting off
these simulated attacks.
● Incident Response: A systematic strategy for dealing with and
managing the fallout from a security breach or cyber-attack is known
as incident response. This strategy includes limiting damage and
cutting down on recovery time and expenses.
● Patch Management: The process of locating, obtaining, testing, and
installing patches (updates) for software programs and systems in
order to fix security flaws and enhance functionality is known as
patch management.
In the following chapters, we will go into greater details about these
terms and examine how they are used. Stay tuned to learn more about
ethical hacking theories and methods. In addition, we'll present and
define more key terms that are essential for your progress in the ethical
hacking sector.
Understanding Testing Types
When performing a security test or penetration test, an ethical hacker
utilizes one or more types of testing on the system. Each type simulates
an attacker with different levels of knowledge about the target
organization. These types are as follows:
1. Black-box testing: Black-box testing involves performing a security
evaluation and testing with no prior knowledge of the network
infrastructure or system to be tested. Testing simulates an attack
by a malicious hacker outside the organization’s security perimeter.

5
Black-box testing can take the longest amount of time and most
effort as no information is given to the testing team. Therefore,
the information-gathering, reconnaissance, and scanning phases will
take a great deal of time. The advantage of this type of testing is
that it most closely simulates a real malicious attacker’s methods
and results. The disadvantages are primarily the amount of time and
consequently additional cost incurred by the testing team.
2. White-box testing: White-box testing involves performing a security
evaluation and testing with complete knowledge of the network
infrastructure such as a network administrator would have. This
testing is much faster than the other two methods as the ethical
hacker can jump right to the attack phase, thus bypassing all the
information gathering, reconnaissance, and scanning phases. Many
security audits consist of white-box testing to avoid the additional
time and expense of black-box testing.
3. Gray-box testing: Gray-box testing involves performing a security
evaluation and testing internally. Testing examines the extent of
access by insiders within the network. The purpose of this test is
to simulate the most common form of attack, those that are initiated
from within the network. The idea is to test or audit the level of
access given to employees or contractors and see if those privileges
can be escalated to a higher level.

You might also like