Saturday, August 1, 2009

[Learning Hacking Part I] What does a malicious hacker do ?

What does a malicious hacker do ? this question will come into our head if we want to do a countermeasure. First you need to understand the anatomy of an attack . It is neccessary to comprehend the steps to counterattack, once detected. In general, there are five steps/phases in which intruder advances an attack:


Phases of malicious hacking

1. Reconnaissance
This is a phase that attacker will gather all the information they need about a target. There are two types of reconnaisance. They are passive and active.
Example: Gather information about domain name

2. Scanning

In this step, the attacker begins to find the target's vulnerability that can be exploited
Example: Ip scanning, using nmap, etc

3. Gaining Access

In this phase
, the attacker will exploit the target's vulnerability
Example: coding an exploit


4. Maintaining Access

Once access is gained, the attacker usually maintains access to fulfill the purpose of his/her entry

Example: by planting a trojan


5. Covering Tracks
In this phase, the attacker will destroy all the evidence of attack

Example: clearing the event viewer



Nmap Screen


Types of Hacker:
1. Black Hats
Black hats is an offensive Hacker

2. White Hats
White hats is defensive Hacker

3. Grey Hats
Grey hats is a both offensive and defensive Hacker

4. Suicide Hats
Suicide hats is doing hacking without thinking the rules

Those all basic that malicious hacker do before doing oenetration . Wait for my next article
PS: Click HERE to see this post in Indonesian