← Back to home
Pentesting Metodología PTES OSSTMM Fases

Pentesting Methodology

Mar 20, 2022

Complete pentesting methodology guide: phases, tools per phase and deliverables based on PTES and OWASP.

PhaseTools
1. Passive ReconWHOIS, theHarvester, Shodan, Google Dorks
2. Active ReconNmap, Nikto, Gobuster
3. Vulnerability AnalysisNmap NSE, Searchsploit, OpenVAS
4. ExploitationMetasploit, SQLMap, Hydra, Burp
5. Post-ExploitationMeterpreter, Mimikatz, BloodHound
6. ReportingCVSS scoring, evidences, recommendations