{"id":14181,"date":"2010-08-09T14:02:30","date_gmt":"2010-08-09T13:02:30","guid":{"rendered":"https:\/\/www.digitalking.it\/2010\/08\/09\/anatomy-of-an-hackers-attack\/"},"modified":"2010-08-09T14:02:30","modified_gmt":"2010-08-09T13:02:30","slug":"anatomy-of-an-hackers-attack","status":"publish","type":"post","link":"https:\/\/www.digitalking.it\/en\/2010\/08\/09\/anatomy-of-an-hackers-attack\/","title":{"rendered":"Anatomy of an hacker&#8217;s attack"},"content":{"rendered":"<span class=\"span-reading-time rt-reading-time\" style=\"display: block;\"><span class=\"rt-label rt-prefix\">Reading time:<\/span> <span class=\"rt-time\"> 2<\/span> <span class=\"rt-label rt-postfix\">minutes<\/span><\/span><p>There are 2 phases: reconnaissance and target acquisition and the other of real attack.<br \/>\nThe pre-attack phase is made by 3 steps: <em>footprinting, scanning, enumeration<\/em>.<br \/>\nThe <em>footprinting<\/em> consist to obtain much information as possible about the target, profiling infrastructure, mainly about security point of view. This is much hard if the target has a complex structure (for example a computer\/server of a company network) instead of a normal home pc connected to internet. There are 2 types of footprinting: <em>passive<\/em> (the target is unaware of the reconnaissance activity, for example search information on internet like Whois searches) and <em>active<\/em> (the target may be alerted to the activity, such for example social engineering).<\/p>\n<p><em>Scanning<\/em> is the active step of attempting to connect to systems to elicit a response, this is done by scanning target&#8217;s ip address ports determining which services are active (for example web server, ftp, etc&#8230;), OS detection, etc&#8230; There are various types of scan, i will not list them as will result too much &#8220;technic&#8221;.<\/p>\n<p>In conjuction to scanning there is also <em>enumeration<\/em>; the intrusive process of determining valid user accounts and accesible resources like shares.<\/p>\n<p>Then there is the attack phase, here we can determine 4 phases: <em>gaining access, privilege escalation, maintaining access, covers tracks and place backdoors<\/em>.<\/p>\n<p><em>Gaining access<\/em> is the key phase, the intruder try to find software\/services vulnerabilities holes and use the bugs to gain access (this is called <em>exploit<\/em>).<\/p>\n<p>Once done, the intruder attempts <em>escalate privilegs<\/em>, it means to gain full control system instead of a normal user account, it&#8217;s like to have administration rights.<\/p>\n<p>Once the target is definitively compromised the intruder can do all, for example install rootkits and trojans (called backdoors) without victim notice them; this allow the attacker to <em>hide tracks of own activity<\/em>, <em>maintain system access<\/em> re-entering in victim&#8217;s pc everytime he wants.<\/p>\n","protected":false},"excerpt":{"rendered":"<p><span class=\"span-reading-time rt-reading-time\" style=\"display: block;\"><span class=\"rt-label rt-prefix\">Reading time:<\/span> <span class=\"rt-time\"> 2<\/span> <span class=\"rt-label rt-postfix\">minutes<\/span><\/span>Anatomy of an hacker&#8217;s attack: the methodology explained in simple way<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"advgb_blocks_editor_width":"","advgb_blocks_columns_visual_guide":"","footnotes":""},"categories":[3448],"tags":[],"class_list":["post-14181","post","type-post","status-publish","format-standard","hentry","category-uncategorized"],"author_meta":{"display_name":"Simone","author_link":"https:\/\/www.digitalking.it\/en\/author\/admin\/"},"featured_img":null,"coauthors":[],"tax_additional":{"categories":{"linked":["<a href=\"https:\/\/www.digitalking.it\/en\/category\/uncategorized\/\" class=\"advgb-post-tax-term\">Uncategorized<\/a>"],"unlinked":["<span class=\"advgb-post-tax-term\">Uncategorized<\/span>"]}},"comment_count":"0","relative_dates":{"created":"Posted 16 years ago","modified":"Updated 16 years ago"},"absolute_dates":{"created":"Posted on August 9, 2010","modified":"Updated on August 9, 2010"},"absolute_dates_time":{"created":"Posted on August 9, 2010 2:02 pm","modified":"Updated on August 9, 2010 2:02 pm"},"featured_img_caption":"","series_order":"","_links":{"self":[{"href":"https:\/\/www.digitalking.it\/en\/wp-json\/wp\/v2\/posts\/14181","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.digitalking.it\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.digitalking.it\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.digitalking.it\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.digitalking.it\/en\/wp-json\/wp\/v2\/comments?post=14181"}],"version-history":[{"count":0,"href":"https:\/\/www.digitalking.it\/en\/wp-json\/wp\/v2\/posts\/14181\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.digitalking.it\/en\/wp-json\/wp\/v2\/media?parent=14181"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.digitalking.it\/en\/wp-json\/wp\/v2\/categories?post=14181"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.digitalking.it\/en\/wp-json\/wp\/v2\/tags?post=14181"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}