Part 10
Kali Linux: Ethical Hacking Tools
Ethics and the law first, then a safe home lab, Kali basics, and every major Kali tool by category – each one used only against your own practice lab, and each attack paired with its defence.
Chapters in this part
18. Ethics, the Law and a Safe Kali Lab
19. Information Gathering and Scanning
- 19.1 Passive vs Active Recon
- 19.2 whois and dig
- 19.3 theHarvester and Recon-ng (Overview)
- 19.4 Maltego Introduction
- 19.5 Netdiscover: Finding Lab Hosts
- 19.6 Nmap Basics: Host Discovery, Port States and Scan Types
- 19.7 Service Versions, OS Detection and NSE Scripts
- 19.8 Timing, Output Formats and Scan Hygiene
- 19.9 Masscan: Very Fast Port Scanning
- 19.10 How Defenders Detect Scanning
- 19.11 Red vs Blue, Project and Real Incidents
20. Vulnerability Scanning and Assessment
- 20.1 Vulnerability, CVE, CWE and CVSS
- 20.2 Manual Lookup: searchsploit and Exploit-DB
- 20.3 Nmap Vulnerability Scripts
- 20.4 OpenVAS / Greenbone: Full Vulnerability Scanning
- 20.5 Nikto: Web Server Scanning
- 20.6 Reading Results: False Positives and Prioritising
- 20.7 Writing a Vulnerability Report
- 20.8 Red vs Blue, Project and Real Incidents
21. Web Application Testing Tools
- 21.1 How Web Testing Works: The Intercepting Proxy
- 21.2 Burp Suite: Proxy and Intercept
- 21.3 Burp Intruder: Automating Requests
- 21.4 OWASP ZAP: A Free Full Scanner
- 21.5 Gobuster and Dirb: Finding Hidden Content
- 21.6 sqlmap: Testing for SQL Injection
- 21.7 WPScan: Scanning WordPress
- 21.8 Red vs Blue, Project and Real Incidents
22. Password Attacks
23. Exploitation with Metasploit
24. Traffic Sniffing and Analysis
25. Wireless Security
26. Privilege Escalation
27. Social Engineering Awareness
28. Introduction to Digital Forensics