1.Explain the different phases of the Hacker Framework and the significance of each phase. i. Reconnaissance: Collect as much information as possible about the target system or network. (e.g., websites, IPs, users), Goal: Understand the target. ii. Scanning: Identify open ports, services, and vulnerabilities. Goal: Find weak points. iii. Gaining Access: Exploit vulnerabilities to enter the system. This is where the attacker gets an entry point into the system , Goal: Get control. iv. Maintaining Access: Install backdoors to keep access. 🛠️ Goal: Stay connected secretly. v. Covering Tracks: Erase logs and evidence of attack. 🚫 Goal: Avoid detection. vi. Reporting (Ethical hacking only): Document findings and suggest fixes. 📝 Goal: Help secure the system. 2. What is Ethical Hacking? How does it differ from malicious hacking? Ethical Hacking is the practice of legally breaking into computers, networks, or systems to test their security. Ethical hackers, also known as white hat hackers, are hired by organizations to find and fix security vulnerabilities before malicious hackers can exploit them. Feature Ethical Hacking Malicious Hacking Permission Done with permission Done without consent Intent To steal, damage, or exploit To find and fix vulnerabilities Legal Status Legal Illegal and punishable Nickname White Hat Black Hat Example Testing a company's website security Hacking a website to steal data 3. Discuss the importance of "Sound Operations" in the ethical hacking process. What could go wrong if this step is ignored? Sound operations mean doing hacking in a safe, legal, and well-planned way. Keeps You Legal – You only hack with permission, so you don’t break the law. Avoids Damage – Makes sure systems don’t crash or lose data. Works Safely – You use the right tools without causing harm. Tracks Your Work – You write down everything for proof and fixing problems. Builds Trust – Shows you are professional and responsible. What Could Go Wrong If Ignored? important data could be lost or exposed. The hacker may break the law by accident. There may be no record of what was done. The client may lose trust in the hacker. System may crash 4. Explain the key steps involved in technical preparation before initiating a hack. Get Permission – Always take written approval before hacking. Define Scope – Know what systems you are allowed to test. Set Up Tools – Install and test tools like Nmap or Burp Suite. Prepare Safe Environment – Use virtual machines or test labs. Collect Target Info – Gather IPs, domains, and system details for planning. 5. Define social engineering and describe two common techniques used by attackers Social engineering is when attackers trick people into giving away private information, like passwords or bank details. Instead of hacking computers, they "hack" people using lies and manipulation. Two Common Techniques: 1. Phishing: The attacker sends fake emails or messages that look real.The goal is to make the person click a bad link or enter their password. Example: A fake email saying “Your bank account is locked – click here to fix it.” 2. Pretexting: The attacker pretends to be someone trustworthy (like tech support or police).They ask for personal info or access to systems. Example: A caller says, “I’m from IT, give me your password to fix your computer.” 6.Explain the purpose of Risk Analysis in the Information Security Program. How does it contribute to cybersecurity? Identify Threats and Vulnerabilities: Find out what could go wrong (e.g., hacking, data loss, system failure). Evaluate Impact and Likelihood: Understand how likely each threat is and how much damage it could cause. Support Security Planning: Helps decide where to focus security efforts and budget. Balance Cost and Protection: Avoids spending too much on low-risk areas and too little on high-risk ones. Improve Decision-Making: Helps management make smart choices about security policies and tools. How It Contributes to Cybersecurity: Prevents surprises by preparing for possible attacks. Reduces risk by addressing weak spots before attackers do. Guides development of effective security strategies. Helps protect data, systems, and reputation. 7. Illustrate how reconnaissance and enumeration help an ethical hacker during a penetration test. Reconnaissance: Collect as much information as possible about the target system externally by Searching the internet for public information, Checking the company’s website or job posts. Finds weak points to plan the next steps Enumeration: After getting basic info, hackers now try to connect to the system and ask it questions to get more details by Scanning the network to find open doors (ports), Finding usernames, passwords, or shared files. Reveals mistakes made in setup or security. 8. Define a security policy in a business context. Why is it essential for an organization's cybersecurity framework? A security policy is a formal written document that explains how a business protects its data and networks. Why Is It Essential for Cybersecurity? Protects Data: Prevents unauthorized access Reduces Human Mistakes: Employees know what is safe and what’s not Prepares for Incidents: Helps teams respond quickly if something goes wrong Builds Trust: Shows customers and partners that the company takes security seriously 9.Explain the role of previous test results in planning a controlled attack. How can they help improve future security tests? Previous test results are like report cards from earlier hacking tests. They show what worked, what didn’t, and where the system was weak. Spotting Old Weaknesses: Test results show which parts of the system were vulnerable before. Avoiding Repeated Mistakes: Helps avoid wasting time on areas already tested and fixed. Planning Safer Attacks: Shows which attacks caused problems before, so new tests are planned carefully to avoid crashing systems or exposing data. Understanding System Changes: Helps compare what has changed since the last test (new software, updated firewalls, etc.). Tracking Progress: Helps measure how much the organization has improved its security. 10. List and briefly describe the key business objectives that influence cybersecurity planning Protect Data: Keep important information like customer and employee details safe from hackers. Keep Business Running: Make sure work doesn’t stop even if there’s a cyberattack or system problem. Follow Rules and Laws: Obey government and industry rules to avoid getting into legal trouble. Earn Customer Trust: Show customers their data is safe so they feel comfortable doing business with you. Save Money: Avoid losing money from cyberattacks, fines, or system downtime. Protect Company Ideas: Keep business secrets like product plans and strategies safe from competitors. Help Employees Work Safely: Make sure workers can do their jobs easily and safely using company systems. Use New Tech Safely: Use new tools like cloud, remote work, and apps without risking security. 10. What are "Inherent Limitations" in a cybersecurity context? Give examples of how they might affect a system’s security Inherent limitations are built-in weaknesses or restrictions in any system that cannot be fully avoided, no matter how good the security is. Software Bugs: What is it? No software is perfect — it can have hidden flaws or mistakes. How it affects security: Hackers can find and use these bugs to break into systems. 11. Identify the roles of an Engagement Planner and a Security Tester in a controlled attack. How do they work together? The Engagement Planner is like the project manager of the ethical hacking test. They plan, manage, and make sure the test follows the rules. The Security Tester is the person who actually performs the attack using ethical hacking techniques. The Engagement Planner creates the plan, defines the scope, and sets the rules for the controlled attack. The Security Tester follows that plan to safely test the system for weaknesses. Together, they ensure the test is legal, safe, and effective in finding security issues. 12.Explain the concept of "Teaming" (Red Team, Blue Team, Purple Team) in cybersecurity. Why is this structure useful? Teaming in cybersecurity means dividing people into different groups to test and improve a company’s security. Red Team: Acts like real hackers — tries to attack and find system weaknesses. Blue Team: Defends the system — monitors, detects, and stops attacks. Purple Team: Coordinates between Red and Blue teams — helps share information and improve teamwork. Why This Structure is Useful: Realistic Testing: Simulates real-world attacks and defenses. Improved Defense: Blue team learns from Red team’s tricks. Better Teamwork: Purple team ensures both sides work together, not against each other. Stronger Security: Helps find and fix weak points faster and more effectively. 13. Why is physical security important in the context of ethical hacking? Provide two examples Physical security means protecting the actual devices and buildings (like computers, servers, offices) from being accessed by the wrong people. 📌 Two Simple Examples: 1. Example 1: USB Attack If someone plugs a malicious USB into an office computer, they can steal data or install harmful software — even if the system has strong passwords and firewalls. 2. Example 2: Server Room Access If a hacker gets into the server room, they can shut down systems, steal drives, or bypass all digital protections directly. What is internet reconnaissance, and what kind of information can an attacker gather through this method? Internet reconnaissance is when an attacker gathers information about a target (like a company or person) from publicly available sources on the internet, without actually attacking them. It’s like spying or researching online before trying to hack. What Information Can Be Gathered? 1. Email addresses – To send fake emails (phishing) or guess login IDs. 2. Employee details – Names, job roles, LinkedIn profiles. 3. Website and domain info – IP addresses, subdomains, server details. 4. Software used – Info about which operating systems or tools the target uses. 5. Leaked credentials – Old usernames and passwords found in data breaches. 6. Social media posts – Can give clues about security questions, routines, or company events. Differentiate between passive and active reconnaissance with suitable examples. Aspect Passive Reconnaissance Active Reconnaissance No direct contact with target Direct contact with target Interaction Very low High Detection Risk Google, WHOIS, social media Nmap, ping, traceroute, scanners Tools Used Information Gathered Public info (names, domains, emails) System info (ports, services, OS) Reading job postings Scanning the network Example Three Common Enumeration Techniques : 1. NetBIOS Enumeration What it does: Finds shared folders, printers, and user info on Windows systems. Why it's useful: Helps attackers learn about network resources and usernames. 2. SNMP Enumeration (Simple Network Management Protocol) What it does: Collects info from network devices like routers, switches, or printers. Why it's useful: Reveals system details like device name, software version, and network settings. 3. SMTP Enumeration (Simple Mail Transfer Protocol) What it does: Gathers valid email addresses by interacting with the mail server. Why it's useful: Helps attackers identify real users for phishing or brute-force attacks. Term Meaning Example Finding valid user accounts Soft Objective Focused goal in enumeration Looking Around General exploration without a set target Opening shared folders to see what's inside faster slower Compare "Inherent Limitations" and "Imposed Limitations" in a controlled attack. Which is harder to manage, and why? Point Inherent Limitations Imposed Limitations Rules and boundaries set by the client or legal Definition Natural weaknesses that exist in all systems team Human error, software bugs, limited "Do not test email servers", "Only test during Examples resources office hours" Can be controlled or changed by agreement Control Hard to control or avoid completely Comes from system design, people, or Comes from policies, contracts, or test agreements Source technology May cause unseen risks even in a wellLimits what the tester is allowed to do Impact planned test Inherent Limitations are harder to manage because they are built into the system, and can't be completely removed — like human mistakes or unknown software bugs. Define information security. Describe how computer security, network security, service security, and application security collectively protect an organization Information security means protecting data from unauthorized access, use, change, or loss. Type of Security What It Protects Computer Physical devices and systems Security (PCs, laptops, servers) Network Data while it's moving across Security networks Online or internal services (e.g., Service Security email, file sharing) Application Software and apps used by users Security Role in Protection Prevents malware, unauthorized access, and system tampering Stops hackers from intercepting or attacking data using firewalls, encryption, etc. Ensures services are safe, work properly, and are not misused or overloaded Protects apps from being exploited (e.g., fixing bugs, validating inputs) Explain the purpose of password crackers. How do they assist in the exploitation phase? Password crackers are tools used to guess or recover passwords by trying many combinations until the correct one is found. Ethical hackers use them to test how strong or weak a system’s passwords are. How They Help in the Exploitation Phase 1. Gain Unauthorized Access If the password is weak, the cracker helps the hacker log in as a real user or even an admin. 2. Speed Up Attacks These tools automate the guessing process — saving time during penetration testing. 3. Reveal Poor Security Practices They show if people are using common, reused, or easily guessable passwords. 4. Open Paths for Deeper Attacks Once access is gained, hackers can move deeper into the system or network. What is the purpose of the Deliverable in an ethical hacking process, and why is it essential for organizations? A deliverable is the final report given to the organization after an ethical hacking test. It includes everything the ethical hacker found during the test — like weaknesses, risks, and suggestions to fix them. Why the Deliverable Is Essential: 1. Shows All Findings Lists what vulnerabilities were found and how they can be used by attackers. 2. Provides Proof Gives screenshots or steps showing how the system was tested and what was accessed. 3. Helps Fix Problems Includes advice on how to fix the weaknesses to improve security. 4. Supports Future Planning Helps the company understand where to focus in future updates or training. 5. Legal & Compliance Use Can be used as a record to prove the company took security seriously. . Define rootkits and explain why they are particularly dangerous for system security. A rootkit is a type of malicious software that hides itself deep inside a computer system and gives attackers secret control over it — often without the user knowing. Why Rootkits Are Dangerous: Reason Explanation 1. Hidden from Users Rootkits stay hidden and are hard to detect with normal antivirus tools. 2. Full Control They give attackers admin or "root" access to the system. 3. Disables Security Tools Rootkits can turn off antivirus, firewalls, or system logs. 4. Long-Term Access They can stay in the system for a long time, spying or stealing data silently. 5. Hard to Remove Sometimes the only way to get rid of a rootkit is to reinstall the operating system. Define Integration in the context of ethical hacking and explain its role in improving cybersecurity. Integration in ethical hacking means combining the results of hacking tests (like findings, reports, and insights) with the organization’s security systems, policies, and practices. Role in Improving Cybersecurity: Role Explanation (Easy Words) 1. Fixes Are Applied in Real Systems The weaknesses found during testing are used to update and secure real-world systems. 2. Improves Security Tools Test results help improve firewalls, antivirus settings, and monitoring systems. 3. Updates Policies & Rules Company rules and access controls are changed based on what was learned. 4. Trains Employees Better Staff can be trained using real issues found during the ethical hack. 5. Prepares for Future Attacks The organization becomes better prepared for real hackers by learning from the test. . Describe the role of Mitigation in security improvement. Why is it necessary after an ethical hacking test? Mitigation means taking steps to reduce or fix security risks that were found during an ethical hacking test. It’s about making the system safer by removing or lowering the impact of vulnerabilities. Why Mitigation Is Necessary After Ethical Hacking: Reason Explanation (Easy Words) 1. Fixes Weak Points It addresses the flaws discovered during the test to prevent real attackers from using them. 2. Protects Sensitive Data Stops hackers from stealing, changing, or deleting important information. 3. Strengthens Defenses Improves overall security by updating software, passwords, settings, and access controls. 4. Builds Trust Shows customers, partners, and regulators that the company takes security seriously. 5. Prepares for Future Risks Reduces the chance of future attacks by learning from the test and improving systems. Design a basic penetration test plan, following the Hacker Framework stages from planning to deliverable. i. Reconnaissance: Collect as much information as possible about the target system or network. (e.g., websites, IPs, users), Goal: Understand the target. ii. Scanning: Identify open ports, services, and vulnerabilities. Goal: Find weak points. iii. Gaining Access: Exploit vulnerabilities to enter the system. This is where the attacker gets an entry point into the system , Goal: Get control. iv. Maintaining Access: Install backdoors to keep access. 🛠️ Goal: Stay connected secretly. v. Covering Tracks: Erase logs and evidence of attack. 🚫 Goal: Avoid detection. vi. Reporting (Ethical hacking only): Document findings and suggest fixes. 📝 Goal: Help secure the system. List and explain common business challenges that influence cybersecurity strategies. How do these challenges affect ethical hacking tests? Business Challenge Explanation (Easy Words) Impact on Ethical Hacking Tests 1. Budget Limitations Not enough money to spend on advanced tools or skilled professionals. Tests may be short, less detailed, or miss advanced threats due to lack of resources. 2. Time Constraints Businesses often want tests done quickly to avoid downtime. Hackers may skip full scanning or deep analysis, reducing test accuracy. 3. Operational Disruption Fear that testing may crash systems Limits on tools or test timing; real-world Concerns or affect users. attack simulations may be restricted. 4. Legal & Compliance Requirements Need to follow industry regulations (e.g., GDPR, HIPAA). Tests must stay within legal bounds, avoiding certain systems or data. 5. Lack of Cybersecurity Awareness Employees and leadership may not understand cyber risks well. Weak support or cooperation with testers; less serious response to findings. 6. Evolving Threat Landscape New types of attacks emerge constantly. Tests need frequent updates, but businesses may rely on outdated test plans. 7. Scope Misunderstanding Business owners may not know what Critical systems may be left out, leading should be included in testing. to incomplete risk assessments.
0
You can add this document to your study collection(s)
Sign in Available only to authorized usersYou can add this document to your saved list
Sign in Available only to authorized users(For complaints, use another form )