Chapter 4 introduces Windows enumeration and hacking. It gives you the knowledge you need to prepare for the Certified Ethical Hacker Exam, and it broadens your knowledge of Windows security controls and weaknesses. However, this Chapter addresses the basic information, as it would require an entire book to cover all Windows hacking issues. If you are seriously considering a career as a penetration tester, this Chapter should whet your appetite for greater knowledge.
The Chapter begins by examining the architecture of Windows computers. A review of Windows users and groups is discussed. Next, enumeration is discussed Enumeration is the final preattack phase in which you probe for usernames, system roles, account details, open shares, and weak passwords. The last topic is Windows hacking. This section discusses the tools and techniques used for Windows hacking. Although many of the tools introduced are specific to Windows systems, the steps are the same no matter what the platform. This is evident in Chapter 5 when Linux is discussed.
The Architecture of Windows Computers |
Part I: Exam Preparation
The Business Aspects of Penetration Testing
The Technical Foundations of Hacking
Footprinting and Scanning
Enumeration and System Hacking
Linux and Automated Security Assessment Tools
Trojans and Backdoors
Sniffers, Session Hijacking, and Denial of Service
Web Server Hacking, Web Applications, and Database Attacks
Wireless Technologies, Security, and Attacks
IDS, Firewalls, and Honeypots
Buffer Overflows, Viruses, and Worms
Cryptographic Attacks and Defenses
Physical Security and Social Engineering
Part II: Final Review
Part III: Appendixes
Appendix A. Using the ExamGear Special Edition Software