can you reccomened books for a beginner red team?

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • OS-52270
    Junior Member
    • 2019-Jul
    • 2

    #1

    can you reccomened books for a beginner red team?

    hey everyone

    i was hoping to get some advices on some books and reading mattreals on red team hacking as i am still very much a noob. the only book i currently own is the "Red team field manual" which is a god send and is great for cammand reffrences but i was hoping for somthing alittle more towards idetifiy vunrablities and how to exploit them. thanks for all the help and happy hacking!
  • OS-28585
    Junior Member
    • 2017-Apr
    • 11

    #2
    Just to set the concept for red teaming (it tends to get over used or used incorrectly), you're generally not exploiting something. Instead, you're are taking advantage of normal functionality and abusing it. A place to start would be - The Hacker Playbook 3: Practical Guide To Penetration Testing. But that's not really going to cover the bigger picture.

    Also, think about getting in to the Bloodhound Slack channel where you can see what red teamers are doing and try to keep up that way.

    Comment

    • OS-52448
      Member
      • 2019-Jun
      • 30

      #3
      Originally posted by OS-28585
      Just to set the concept for red teaming (it tends to get over used or used incorrectly), you're generally not exploiting something. Instead, you're are taking advantage of normal functionality and abusing it. A place to start would be - The Hacker Playbook 3: Practical Guide To Penetration Testing. But that's not really going to cover the bigger picture.

      Also, think about getting in to the Bloodhound Slack channel where you can see what red teamers are doing and try to keep up that way.
      Sorry for somewhat briefly redirecting the thread, but isn't supposed red teaming attack both ? I mean exploiting human errors & negligence (by analyzing physical security protocols and SE) but at the same time take the normal pentesting approach ?

      Comment

      • OS-52270
        Junior Member
        • 2019-Jul
        • 2

        #4
        Originally posted by OS-52448
        Sorry for somewhat briefly redirecting the thread, but isn't supposed red teaming attack both ? I mean exploiting human errors & negligence (by analyzing physical security protocols and SE) but at the same time take the normal pentesting approach ?


        from my understanding of the terms, the red team are the offensive team who try to break into a system while blue are the defenders who defend and set up the systems. feel free to correct me if I'm wrong as I said I am kind of new to all this lols.
        Last edited by OS-52270; 2019-08-11, 07:38. Reason: added quote

        Comment

        • OS-52448
          Member
          • 2019-Jun
          • 30

          #5
          Originally posted by OS-52270
          from my understanding of the terms, the red team are the offensive team who try to break into a system while blue are the defenders who defend and set up the systems. feel free to correct me if I'm wrong as I said I am kind of new to all this lols.
          This is the general definition yes. But if we talk for the duties of each time, what I knew abour red teaming is that they follow both the pentesting approach, and also they try to break into the company in physical means such as finding vulnerabilities in the security measures/protocols (such as weak door-identification, weak security on the locks and e.t.c

          Comment

          Working...