Penetration testing Attack Infrastructure
Attack Infra
- Penetration testing Planning
- Fill the planning gap
- Attack Infrastructure/C2
- Recon
- Social Engineering
- Weaponization
- Initial Access/foothold
- Network Propagation
- Action on Objectives
Mitre Attack Framework
Pre attack framework is to be followed. The MITRE ATT&CK™ framework is a comprehensive matrix of tactics and techniques used by threat hunters, red teamers, and defenders to better classify attacks and assess an organization’s risk
Infrastructure Requirements
- An External Hosting provider should be selected and procured like E2E Networks etc
- Domain names purchase similar to the target organization should be procured, some organizations do also block similar names called Domain squirting so care should be given while purchasing domains.
- Domain certificate generation, SSL Cert should be procured or enabled from free providers for those domains.
- Mail Server setups with DKIM, SPF, and DMARC configured for additional reputation.
- Phishing and Credential Theft sites setup, lookalike domain, and lookalike mail portals or websites should be created.
- Reputation and categorization confirmation of all domains and IP’s, DKIM, SPF, and DMARC should be configured for domains as many organizations nowadays enforce DMARC Reject policy. also, many times organizations’ web proxies do block domains that came into existence less than 30 days in such cased domains at sale can be utilized.
- Set up long and short-haul C2 Infra
- Custom c2 tooling configuration
- External C2 Communication Schemes testing
Baseline of Attack infra
- Hardware
- VM Images
- Software
- Windows and Linux both
- Attack tools
- Network Infra
- Cloud providers
Open Source Adversary Emulation Tools
- Metasploit
- Empire
Commercials
- Cobalt Strike
- Innuendo
- Core Impact
C2 Matrix
Cloud Providers
- Aws
- Azure
- GCP
Domain Purchase and categorize Direct Access to IP is blocked Outbound proxies block sites on basis of category Register and get them categorized Else purchase categorized domains which are expired
- Expireddomains.net
- Domainhuntergatherer.com
Categorization sites
- Bright cloud brightcloud.com/tools/url-ip-lookup.php
- Fortiguard fortiguard.com/webfilter
- MacAfee trustedsource.org
- Palo alto urlfiltering.paloaltonetworks.com/query/
- Symantec/bluecoat web pulse sitereview.bluecoat.com
Digital certificates Lets Encrypt Cloudflare Financial sites SSL isn’t decrypted mostly
Redirectors
Disposable Options Socat pot redirect on Linux Crontab -e @reboot /usr/bin/socat TCP-LISTEN:443, fork TCP:192.168.10.1:443& Netsh port redirect on windows Netsh interface portproxy add v4tov4 listenprort=443 Listenaddress=8.8.8.8 connectionport=443 connectaddress=192.168.10.1 Other options: iptables, apache mod_rewrite, Nginx, domain fronting
Experienced cybersecurity journalist tracking active ransomware outbreaks, regulatory compliance shifts (GDPR/CCPA), and global corporate data breach remediations.
Security Digest
Get the latest cybersecurity news, vulnerability alerts, and threat intelligence delivered to your inbox.
Related Articles
Leading Vulnerability Scanners: Benefits and Use Cases
Leading vulnerability scanners provide comprehensive security assessment and management capabilities, allowing organizations to identify and remediate potential vulnerabilities in their IT infrastructure. From real-time scanning to automated reporting, these tools offer a range of benefits and use cases, helping businesses to mitigate risks, meet compliance requirements, and enhance overall security posture.
Vulnerabilities & ExploitsDufflebag
A tool called [Dufflebag ](<https://github.com/bishopfox/dufflebag)developed by [dan-bishopfox Dan Petro](<https://github.com/dan-bishopfox) and [bmoar Ben Morris](<https://github.com/bmoar
Vulnerabilities & ExploitsMITRE ATT&CK® Released Updates in Oct 2021 With Additional Techniques and Structuring
MITRE ATT&CK® is a globally accessible knowledge base of adversary tactics and techniques based on real-world observations. The ATT&CK knowledge base is used as a foundation for the development of ...
Vulnerabilities & ExploitsUseful Pentesting Resources
A curated list of useful penetration testing resources, tools, and references for security professionals.