1
00:00:00,780 --> 00:00:01,613
In this lesson,

2
00:00:01,613 --> 00:00:04,830
we're going to discuss the world of penetration testing.

3
00:00:04,830 --> 00:00:06,750
Penetration testing, also known as pentesting

4
00:00:06,750 --> 00:00:09,630
or ethical hacking, is a simulated cyber attack

5
00:00:09,630 --> 00:00:11,190
against a computer system to check

6
00:00:11,190 --> 00:00:13,380
for exploitable vulnerabilities.

7
00:00:13,380 --> 00:00:15,360
The process involves assessing systems

8
00:00:15,360 --> 00:00:16,620
for potential weaknesses

9
00:00:16,620 --> 00:00:18,510
that could be exploited by an attacker.

10
00:00:18,510 --> 00:00:20,790
In this lesson, we will explore the different types

11
00:00:20,790 --> 00:00:21,810
of penetration testing

12
00:00:21,810 --> 00:00:26,520
including physical, offensive, defensive, and integrated.

13
00:00:26,520 --> 00:00:29,370
First, we have physical penetration testing.

14
00:00:29,370 --> 00:00:30,540
Physical penetration testing

15
00:00:30,540 --> 00:00:33,540
involves testing the physical security of an organization

16
00:00:33,540 --> 00:00:37,020
by testing its locks, access cards, security cameras,

17
00:00:37,020 --> 00:00:39,240
and other physical security measures.

18
00:00:39,240 --> 00:00:42,000
For example, a physical penetration tester

19
00:00:42,000 --> 00:00:44,760
might try to bypass a company security by tailgating

20
00:00:44,760 --> 00:00:48,240
behind an employee as they enter through a security door

21
00:00:48,240 --> 00:00:50,550
or access control vestibule.

22
00:00:50,550 --> 00:00:52,530
Or the penetration testing could try

23
00:00:52,530 --> 00:00:55,170
to clone the authorized user access card

24
00:00:55,170 --> 00:00:57,060
to use that to enter the building.

25
00:00:57,060 --> 00:00:59,310
The goal of a physical penetration test is

26
00:00:59,310 --> 00:01:01,230
to identify potential vulnerabilities

27
00:01:01,230 --> 00:01:03,660
in an organization's physical security measures

28
00:01:03,660 --> 00:01:05,010
and recommend improvements

29
00:01:05,010 --> 00:01:08,070
to increase the organization's level of physical security.

30
00:01:08,070 --> 00:01:09,360
There are numerous benefits

31
00:01:09,360 --> 00:01:11,280
to conducting physical penetration tests,

32
00:01:11,280 --> 00:01:13,800
including identifying physical vulnerabilities,

33
00:01:13,800 --> 00:01:15,240
improving security awareness,

34
00:01:15,240 --> 00:01:17,940
and preventing unauthorized access.

35
00:01:17,940 --> 00:01:19,980
Identifying physical vulnerabilities helps

36
00:01:19,980 --> 00:01:22,950
to identify weaknesses and physical security measures such

37
00:01:22,950 --> 00:01:26,250
as locks, access cards, and security cameras.

38
00:01:26,250 --> 00:01:30,030
Improving security awareness focuses on raising awareness

39
00:01:30,030 --> 00:01:32,730
about the importance of physical security among employees

40
00:01:32,730 --> 00:01:35,430
by encouraging them to follow best practices

41
00:01:35,430 --> 00:01:38,490
like not allowing tailgating through secure doors.

42
00:01:38,490 --> 00:01:41,700
Preventing unauthorized access occurs when you can identify

43
00:01:41,700 --> 00:01:44,790
and fix vulnerabilities in your physical security posture

44
00:01:44,790 --> 00:01:47,550
so that is more difficult for an attacker to gain access

45
00:01:47,550 --> 00:01:49,457
to your organization's sensitive areas

46
00:01:49,457 --> 00:01:51,750
inside of its facilities.

47
00:01:51,750 --> 00:01:52,583
The next type

48
00:01:52,583 --> 00:01:54,300
of penetration testing we have testing is known

49
00:01:54,300 --> 00:01:56,670
as offensive penetration testing.

50
00:01:56,670 --> 00:01:59,880
Offensive penetration testing, also known as Red Teaming

51
00:01:59,880 --> 00:02:02,880
involves actively seeking out vulnerabilities in the system

52
00:02:02,880 --> 00:02:05,820
and attempting to exploit them using the same techniques

53
00:02:05,820 --> 00:02:08,100
as a potential cyber attack would.

54
00:02:08,100 --> 00:02:10,770
This offensive penetration testing approach is considered

55
00:02:10,770 --> 00:02:13,260
to be proactive and aggressive while aiming

56
00:02:13,260 --> 00:02:15,720
to uncover as many vulnerabilities as possible.

57
00:02:15,720 --> 00:02:18,180
An example of an offensive penetration testing

58
00:02:18,180 --> 00:02:20,100
might involve a Red Teamer trying

59
00:02:20,100 --> 00:02:22,830
to gain unauthorized access to a computer network

60
00:02:22,830 --> 00:02:26,160
by exploiting a known vulnerability in a piece of software.

61
00:02:26,160 --> 00:02:28,680
The tester would then report this vulnerability

62
00:02:28,680 --> 00:02:30,420
to the company so that they can fix it

63
00:02:30,420 --> 00:02:33,540
before a real attacker could exploit the same vulnerability.

64
00:02:33,540 --> 00:02:35,970
Offensive penetration testing can be used

65
00:02:35,970 --> 00:02:37,620
to simulate real world attacks

66
00:02:37,620 --> 00:02:40,650
so that your organization's network defenders can see

67
00:02:40,650 --> 00:02:41,940
what an attack looks like

68
00:02:41,940 --> 00:02:44,280
and how to best defend against them.

69
00:02:44,280 --> 00:02:47,610
Another benefit of completing a offensive penetration test

70
00:02:47,610 --> 00:02:50,460
is that you can use the results to garner more funding

71
00:02:50,460 --> 00:02:53,520
and support for your proposed cybersecurity investments

72
00:02:53,520 --> 00:02:55,800
in the organization by demonstrating just

73
00:02:55,800 --> 00:02:58,560
how vulnerable the current systems are through the use

74
00:02:58,560 --> 00:03:00,870
of identifying and exploiting the organization's

75
00:03:00,870 --> 00:03:02,880
most critical vulnerability.

76
00:03:02,880 --> 00:03:05,848
Next, we have defensive penetration testing.

77
00:03:05,848 --> 00:03:08,150
Defensive penetration testing, also known

78
00:03:08,150 --> 00:03:11,190
as Blue Teaming is a more reactive approach

79
00:03:11,190 --> 00:03:12,990
that involves strengthening systems,

80
00:03:12,990 --> 00:03:15,120
detecting and responding to attacks,

81
00:03:15,120 --> 00:03:17,760
and improving incident response times.

82
00:03:17,760 --> 00:03:18,630
For example,

83
00:03:18,630 --> 00:03:21,570
a defensive penetration tester might monitor a network

84
00:03:21,570 --> 00:03:25,140
for signs of unusual activity that could indicate an attack.

85
00:03:25,140 --> 00:03:26,610
If an attack is detected,

86
00:03:26,610 --> 00:03:29,160
the tester would then work to mitigate the damage

87
00:03:29,160 --> 00:03:32,340
and strengthen the system to prevent future attacks.

88
00:03:32,340 --> 00:03:34,530
By conducting defensive penetration testing

89
00:03:34,530 --> 00:03:36,750
in your organization, your staff will learn how

90
00:03:36,750 --> 00:03:39,420
to better conduct an incident response,

91
00:03:39,420 --> 00:03:40,470
strengthen their systems,

92
00:03:40,470 --> 00:03:43,170
and enhance their detection capabilities.

93
00:03:43,170 --> 00:03:45,960
Defensive penetration testing can help organizations

94
00:03:45,960 --> 00:03:48,180
improve their incident response times so

95
00:03:48,180 --> 00:03:51,510
that they can minimize the damage caused by an attack.

96
00:03:51,510 --> 00:03:55,110
Also, defensive penetration tests can help organizations

97
00:03:55,110 --> 00:03:56,070
to strengthen their systems

98
00:03:56,070 --> 00:03:59,700
by monitoring their systems for any signs of attack.

99
00:03:59,700 --> 00:04:01,860
These penetration tests also help

100
00:04:01,860 --> 00:04:03,990
to enhance your detection capabilities so

101
00:04:03,990 --> 00:04:06,390
that your network defenders can respond more quickly

102
00:04:06,390 --> 00:04:09,990
and effectively when a future cyber attack occurs.

103
00:04:09,990 --> 00:04:12,240
The final type of penetration testing we need

104
00:04:12,240 --> 00:04:15,930
to cover is known as integrated penetration testing.

105
00:04:15,930 --> 00:04:18,420
Integrated penetration testing combines elements

106
00:04:18,420 --> 00:04:20,940
of both offensive and defensive testing

107
00:04:20,940 --> 00:04:23,880
into a single penetration test or engagement.

108
00:04:23,880 --> 00:04:27,030
This integrated approach, better known as Purple Teaming

109
00:04:27,030 --> 00:04:30,060
involves using a red team who conducts the offensive

110
00:04:30,060 --> 00:04:32,940
and a blue team that conducts the defensive,

111
00:04:32,940 --> 00:04:35,160
working together to improve the organization's

112
00:04:35,160 --> 00:04:37,170
overall security.

113
00:04:37,170 --> 00:04:38,970
With an integrated penetration testing,

114
00:04:38,970 --> 00:04:40,800
the red team might launch a simulated attack

115
00:04:40,800 --> 00:04:43,050
on the organization system while the blue team tries

116
00:04:43,050 --> 00:04:45,060
to detect and respond to that attack.

117
00:04:45,060 --> 00:04:47,190
If the blue team identifies the attack,

118
00:04:47,190 --> 00:04:50,100
the red team is informed so they can try more advanced type

119
00:04:50,100 --> 00:04:51,900
of attack to avoid detection.

120
00:04:51,900 --> 00:04:54,150
If the blue team does not identify the attack

121
00:04:54,150 --> 00:04:55,530
that the red team conducted,

122
00:04:55,530 --> 00:04:57,480
then the red team will walk the blue team

123
00:04:57,480 --> 00:04:58,710
through the attack process

124
00:04:58,710 --> 00:05:01,140
and how they can best configure their network sensors

125
00:05:01,140 --> 00:05:03,480
to detect this kind of attack in the future.

126
00:05:03,480 --> 00:05:05,160
This allows both teams to learn

127
00:05:05,160 --> 00:05:07,399
from each other, improve their skills.

128
00:05:07,399 --> 00:05:09,570
Integration testing can be helpful

129
00:05:09,570 --> 00:05:12,000
when performing a comprehensive security assessment

130
00:05:12,000 --> 00:05:13,650
to help promote collaboration

131
00:05:13,650 --> 00:05:15,630
within your cybersecurity teams and

132
00:05:15,630 --> 00:05:18,720
to conduct simulated attacks and responses to those attacks.

133
00:05:18,720 --> 00:05:22,500
So remember, penetration testing is a critical part

134
00:05:22,500 --> 00:05:25,140
of maintaining strong cybersecurity.

135
00:05:25,140 --> 00:05:26,730
Physical penetration testing helps

136
00:05:26,730 --> 00:05:29,430
secure the physical infrastructure of an organization.

137
00:05:29,430 --> 00:05:31,050
Offensive penetration testing

138
00:05:31,050 --> 00:05:33,540
proactively uncovers vulnerabilities.

139
00:05:33,540 --> 00:05:35,760
Defensive penetration testing focuses

140
00:05:35,760 --> 00:05:38,703
on strengthening systems and improve incident response.

141
00:05:39,630 --> 00:05:41,910
Integrated penetration testing combines the strengths

142
00:05:41,910 --> 00:05:44,220
of offensive and defensive testing

143
00:05:44,220 --> 00:05:47,100
to provide a comprehensive security solution.

144
00:05:47,100 --> 00:05:50,130
The goal of penetration testing is not to cause damage

145
00:05:50,130 --> 00:05:52,500
but to identify and fix vulnerabilities

146
00:05:52,500 --> 00:05:54,960
before they can be exploited by malicious actors

147
00:05:54,960 --> 00:05:57,270
And these penetration tests are an essential part

148
00:05:57,270 --> 00:05:59,643
of any organization's cybersecurity strategy.

