Reference: Ethical Hacking and Penetration with Kali Linux
Once you want to start a penetration project, there are number of things that you need to consider. Remember, without following the proper steps, getting approvals and finalizing an agreement with customer; using these techniques is illegal and against the law.
Important things to consider before you start:
- Get signed approval for all tests from the customer
- You need to sign confidentiality agreement (NDA)
- Get approval of collateral parties (ISPs)
- Put together team and tools and get ready for the tests
- Define goals (DoS, Penetration, etc.)
- Set the ground rules (rules of engagement with the customer and team)
- Set the schedule (non-work hours, weekends?)
- Notify appropriate parties (Sys admin, Security department, Legal department, law enforcement)
No comments:
Post a Comment