Ethical Hacking
Locating the weakness and vulnerabilities
Types of Hackers
- Whitehat hackers : They have permission, to get into the system
- Blackhat hackers : They dont have permission to break the system, or get in. Also their intentions are bad as well.
- Greyhat hackers : They dont have the permission, but intentions are not of breaking or hurting anyone. They get in just for fun, or for learning purposes
- Script kiddies : they uses tool without knowing how/why/what to do with it. They are just curious and runs it without knowing the impact. They just copy paste uses tool.
- Hackvists : Blackhat hackers, but wanna do good for soceity by targetting the wrong ones - they are like kira
- Terrorists - All bad intend
- State-Sponsored - Government trying to spy/hack for the purpose of national security
Think as in
%%{init: { "theme": "neutral", "flowchart": { "nodeSpacing": 20, "rankSpacing": 25, "curve": "linear" }, "themeVariables": { "fontSize": "10px" } }}%% flowchart TB A["👩 Golden<br/>System Owner"] B["🧑💻 Garvit<br/>Ethical Hacker"] C{"Permission<br/>Granted?"} D["Penetration Testing<br/>• Scan<br/>• Enumerate<br/>• Exploit (Safely)<br/>• Validate Security"] E{"Vulnerability<br/>Found?"} F["✅ Report<br/>No Major Issues"] G["📝 Responsible Disclosure<br/>Document Findings"] H["🔧 Golden Fixes<br/>Security Weaknesses"] I{"Any Data Stolen<br/>or Misused?"} J["✅ Ethical Hacker<br/>Authorized Testing<br/>Reports Findings<br/>Improves Security"] K["❌ Not Ethical<br/>Data Theft / Misuse<br/>Breaks Trust<br/>May Be Illegal"] L["❌ Unauthorized Access<br/>No Permission<br/>Not Penetration Testing"] A -->|"Requests Security Test"| B B --> C C -->|Yes| D C -->|No| L D --> E E -->|No| F E -->|Yes| G --> H D --> I I -->|No| J I -->|Yes| K classDef good fill:#d4edda,stroke:#2e7d32,color:#000; classDef bad fill:#f8d7da,stroke:#c62828,color:#000; classDef process fill:#e3f2fd,stroke:#1565c0,color:#000; classDef owner fill:#fff3cd,stroke:#f9a825,color:#000; class A owner; class B,D,E,G,H process; class J,F good; class K,L bad;
I am gonna break the system, if got in not gonna steal data but instead gonna give report that how i made it possible to get into system - I am penetration tester You give my report to someone - who drafts the policy for company and provides solution / protects network = Security Tester
- Penetration Tester : Legally hirded to know how deep they can penetrate the system - iykyk
- Security Tester : Documenting , explaining how to fix
Some Terminologies
- Hacking - Finding and using weakness
- Cracking - breaking , breaching (Cracking password hash)
- Spoofing - Using False identity
- Denial of Services - DoS Floods server with too many requests until it cant serve real users. DDoS have multiple attackers. Dos have single
- Port Scanning - Checking which door is open to get enter into system, which is listening - its basically information gathering.
Gaining Access
- Front Door: Password guessing/stealing (common).
- Back Doors: Often left by original developers to debug if in future something happens. but maliciously can be used
- Trojan Horses: Hidden malicious code in legit software (or hardware chips mein extra circuitry).
- Software Vulnerability Exploitation: Unpatched bugs use karo. Script kiddies yahin se shuru karte hain.
Once Inside hackers can
- Modify the logs
- Steal the files
- Manipulate the data
- Install back doors
- attack other systems
Tester Roles & Methodologies:
- Tiger Box - One system which is already loaded with the hacking tools. Basically portable machine with loaded bullets.
- White Box Model - Its basically sab jan lo, company givves all network topology, technology and passwords. Full internal knowledge
- Blackbox testing - Company gives nothing, tester have to find everything
- Gray box model - Hybrid of white and black model, partial information is granted.