|
CEH™ Certified Ethical Hacker |
|
|
|
|
Acknowledgments |
|
xv | |
Introduction |
|
xvii | |
|
Chapter 1 Getting Started: Essential Knowledge |
|
|
1 | (50) |
|
|
2 | (1) |
|
|
2 | (13) |
|
|
15 | (10) |
|
Introduction to Ethical Hacking |
|
|
25 | (1) |
|
|
26 | (8) |
|
|
34 | (8) |
|
|
42 | (3) |
|
|
45 | (3) |
|
|
48 | (3) |
|
Chapter 2 Reconnaissance: Information Gathering for the Ethical Hacker |
|
|
51 | (38) |
|
|
52 | (2) |
|
|
54 | (2) |
|
|
56 | (1) |
|
Footprinting Methods and Tools |
|
|
57 | (1) |
|
|
57 | (9) |
|
Website and E-mail Footprinting |
|
|
66 | (1) |
|
|
67 | (12) |
|
|
79 | (2) |
|
|
81 | (2) |
|
|
83 | (2) |
|
|
85 | (2) |
|
|
87 | (2) |
|
Chapter 3 Scanning and Enumeration |
|
|
89 | (54) |
|
|
90 | (1) |
|
|
90 | (8) |
|
|
98 | (4) |
|
|
102 | (1) |
|
|
103 | (3) |
|
|
106 | (10) |
|
|
116 | (3) |
|
|
119 | (2) |
|
|
121 | (1) |
|
|
121 | (2) |
|
|
123 | (1) |
|
|
124 | (7) |
|
|
131 | (6) |
|
|
137 | (3) |
|
|
140 | (3) |
|
Chapter 4 Sniffing and Evasion |
|
|
143 | (46) |
|
|
144 | (1) |
|
Network Knowledge for Sniffing |
|
|
144 | (12) |
|
Active and Passive Sniffing |
|
|
156 | (1) |
|
Sniffing Tools and Techniques |
|
|
157 | (1) |
|
|
157 | (5) |
|
|
162 | (3) |
|
|
165 | (1) |
|
Devices Aligned Against You |
|
|
166 | (8) |
|
|
174 | (6) |
|
|
180 | (4) |
|
|
184 | (3) |
|
|
187 | (2) |
|
Chapter 5 Attacking a System |
|
|
189 | (46) |
|
|
190 | (1) |
|
Windows Security Architecture |
|
|
190 | (8) |
|
Linux Security Architecture |
|
|
198 | (5) |
|
|
203 | (3) |
|
|
206 | (1) |
|
Authentication and Passwords |
|
|
207 | (9) |
|
Privilege Escalation and Executing Applications |
|
|
216 | (3) |
|
Hiding Files and Covering Tracks |
|
|
219 | (7) |
|
|
226 | (4) |
|
|
230 | (2) |
|
|
232 | (3) |
|
Chapter 6 Web-Based Hacking: Servers and Applications |
|
|
235 | (44) |
|
|
236 | (1) |
|
Nonprofit Organizations Promoting Web Security |
|
|
236 | (5) |
|
|
241 | (1) |
|
|
242 | (8) |
|
|
250 | (6) |
|
Attacking Web Applications |
|
|
256 | (1) |
|
|
257 | (12) |
|
|
269 | (1) |
|
|
270 | (4) |
|
|
274 | (3) |
|
|
277 | (2) |
|
Chapter 7 Wireless Network Hacking |
|
|
279 | (26) |
|
|
280 | (1) |
|
Wireless Terminology, Architecture, and Standards |
|
|
280 | (9) |
|
|
289 | (9) |
|
|
298 | (3) |
|
|
301 | (2) |
|
|
303 | (2) |
|
Chapter 8 Mobile Communications and the loT |
|
|
305 | (38) |
|
|
306 | (1) |
|
Mobile Vulnerabilities and Risks |
|
|
307 | (4) |
|
Mobile Platforms and Attacks |
|
|
311 | (6) |
|
|
317 | (1) |
|
|
318 | (2) |
|
IoT Vulnerabilities and Attacks |
|
|
320 | (7) |
|
|
327 | (4) |
|
|
331 | (1) |
|
|
332 | (2) |
|
|
334 | (1) |
|
|
335 | (4) |
|
|
339 | (3) |
|
|
342 | (1) |
|
Chapter 9 Security in Cloud Computing |
|
|
343 | (28) |
|
|
344 | (2) |
|
Cloud Computing Service Types |
|
|
346 | (3) |
|
|
349 | (3) |
|
|
352 | (2) |
|
|
354 | (5) |
|
Cloud Attacks and Mitigations |
|
|
359 | (1) |
|
|
360 | (3) |
|
|
363 | (3) |
|
|
366 | (2) |
|
|
368 | (3) |
|
Chapter 10 Trojans and Other Attacks |
|
|
371 | (38) |
|
|
372 | (3) |
|
|
375 | (4) |
|
|
379 | (6) |
|
|
385 | (2) |
|
|
387 | (2) |
|
|
389 | (2) |
|
|
391 | (1) |
|
|
391 | (4) |
|
|
395 | (4) |
|
|
399 | (5) |
|
|
404 | (2) |
|
|
406 | (3) |
|
Chapter 11 Cryptography 101 |
|
|
409 | (44) |
|
Cryptography and Encryption Overview |
|
|
410 | (1) |
|
|
410 | (1) |
|
Encryption Algorithms and Techniques |
|
|
411 | (13) |
|
PKI, the Digital Certificate, and Digital Signatures |
|
|
424 | (1) |
|
|
425 | (3) |
|
|
428 | (4) |
|
|
432 | (1) |
|
|
433 | (1) |
|
Encrypted Communication and Cryptography Attacks |
|
|
433 | (3) |
|
|
436 | (5) |
|
|
441 | (2) |
|
|
443 | (4) |
|
|
447 | (3) |
|
|
450 | (3) |
|
Chapter 12 Low Tech: Social Engineering and Physical Security |
|
|
453 | (32) |
|
|
454 | (2) |
|
Human-Based Social Engineering Attacks |
|
|
456 | (6) |
|
|
462 | (6) |
|
|
468 | (1) |
|
Preventing Social Engineering Attacks |
|
|
469 | (3) |
|
|
472 | (1) |
|
|
472 | (6) |
|
Testing Physical Security |
|
|
478 | (1) |
|
|
479 | (2) |
|
|
481 | (3) |
|
|
484 | (1) |
|
Chapter 13 The Pen Test: Putting It All Together |
|
|
485 | (18) |
|
|
486 | (1) |
|
|
487 | (7) |
|
Security Assessment Deliverables |
|
|
494 | (2) |
|
|
496 | (1) |
|
|
496 | (2) |
|
|
498 | (2) |
|
|
500 | (2) |
|
|
502 | (1) |
|
Appendix A Tool, Sites, and References |
|
|
503 | (24) |
|
Vulnerability Research Sites |
|
|
503 | (1) |
|
|
504 | (3) |
|
Scanning and Enumeration Tools |
|
|
507 | (3) |
|
|
510 | (5) |
|
Cryptography and Encryption |
|
|
515 | (1) |
|
|
516 | (1) |
|
|
517 | (1) |
|
|
518 | (3) |
|
|
521 | (2) |
|
|
523 | (1) |
|
|
524 | (1) |
|
Tools, Sites, and References Disclaimer |
|
|
525 | (2) |
|
Appendix B About the Online Content |
|
|
527 | |
|
|
527 | (1) |
|
Your Total Seminars Training Hub Account |
|
|
527 | (1) |
|
|
527 | (1) |
|
Single User License Terms and Conditions |
|
|
527 | (2) |
|
|
529 | (1) |
|
|
529 | |
Glossary |
|
531 | (32) |
Index |
|
563 | |
|
CEH™ Certified Ethical Hacker Practice Exams |
|
|
Acknowledgments |
|
xi | |
Introduction |
|
xiii | |
|
Chapter 1 Getting Started: Essential Knowledge |
|
|
1 | (28) |
|
|
3 | (5) |
|
|
8 | (1) |
|
|
9 | (20) |
|
Chapter 2 Reconnaissance: Information Gathering for the Ethical Hacker |
|
|
29 | (28) |
|
|
31 | (7) |
|
|
38 | (1) |
|
|
39 | (18) |
|
Chapter 3 Scanning and Enumeration |
|
|
57 | (28) |
|
|
59 | (7) |
|
|
66 | (1) |
|
|
67 | (18) |
|
Chapter 4 Sniffing and Evasion |
|
|
85 | (26) |
|
|
87 | (6) |
|
|
93 | (1) |
|
|
94 | (17) |
|
Chapter 5 Attacking a System |
|
|
111 | (26) |
|
|
113 | (7) |
|
|
120 | (1) |
|
|
121 | (16) |
|
Chapter 6 Web-Based Hacking: Servers and Applications |
|
|
137 | (28) |
|
|
139 | (6) |
|
|
145 | (1) |
|
|
146 | (19) |
|
Chapter 7 Wireless Network Hacking |
|
|
165 | (22) |
|
|
167 | (5) |
|
|
172 | (1) |
|
|
173 | (14) |
|
Chapter 8 Mobile Communications and the IoT |
|
|
187 | (20) |
|
|
190 | (4) |
|
|
194 | (1) |
|
|
195 | (12) |
|
Chapter 9 Security in Cloud Computing |
|
|
207 | (20) |
|
|
209 | (4) |
|
|
213 | (1) |
|
|
214 | (13) |
|
Chapter 10 Trojans and Other Attacks |
|
|
227 | (26) |
|
|
229 | (6) |
|
|
235 | (1) |
|
|
236 | (17) |
|
Chapter 11 Cryptography 101 |
|
|
253 | (26) |
|
|
255 | (6) |
|
|
261 | (1) |
|
|
262 | (17) |
|
Chapter 12 Low Tech: Social Engineering and Physical Security |
|
|
279 | (26) |
|
|
281 | (6) |
|
|
287 | (1) |
|
|
288 | (17) |
|
Chapter 13 The Pen Test: Putting It All Together |
|
|
305 | (26) |
|
|
307 | (5) |
|
|
312 | (1) |
|
|
313 | (18) |
Appendix About the Online Content |
|
331 | (1) |
System Requirements |
|
331 | (1) |
Your Total Seminars Training Hub Account |
|
331 | (1) |
Single User License Terms and Conditions |
|
331 | (2) |
TotalTester Online |
|
333 | (1) |
Technical Support |
|
333 | |