You are on page 1of 25

EC-Council Licensed Penetration

Tester

Methodology: Telecommunication and Broadband


Communication Penetration Testing

Penetration Tester:
Organization:
Date: Location:

Confidential 1 Template TBCPT/36

CuuDuongThanCong.com https://fb.com/tailieudientucntt
EC-Council Licensed Penetration Tester

Test 1.1: Check whether the firewall device is installed on the network

Target Organization
URL
Find whether the Yes No
Firewall Device Is
Installed on the
Network
Tools/Services Used 1.
2.
3.
4.
5.

Results Analysis:

Confidential 2 Template TBCPT/36 Copyright © by EC-Council


All Rights Reserved. Reproduction is Strictly Prohibited.

CuuDuongThanCong.com https://fb.com/tailieudientucntt
EC-Council Licensed Penetration Tester

Test 1.2: Check whether personal and hardware firewalls are installed

Target Organization
URL
Find whether Yes No
Personal and
Hardware Firewalls
are Enabled
Tools/Services Used 1.
2.
3.
4.
5.

Results Analysis:

Confidential 3 Template TBCPT/36 Copyright © by EC-Council


All Rights Reserved. Reproduction is Strictly Prohibited.

CuuDuongThanCong.com https://fb.com/tailieudientucntt
EC-Council Licensed Penetration Tester

Test 1.3: Check whether these firewalls prevent intruders or detect any rogue software

Target Organization
URL
Check if the 1.
Firewall Monitors, 2.
Logs, & Blocks
3.
4.
5.

Tools/Services Used 1.
2.
3.
4.
5.

Results Analysis:

Confidential 4 Template TBCPT/36 Copyright © by EC-Council


All Rights Reserved. Reproduction is Strictly Prohibited.

CuuDuongThanCong.com https://fb.com/tailieudientucntt
EC-Council Licensed Penetration Tester

Test 1.4: Check whether the logging is enabled on the firewall

Target Organization
URL
Find Whether the Yes No
Logging is Enabled on
the Firewall
Tools/Services Used 1.
2.
3.
4.
5.

Results Analysis:

Confidential 5 Template TBCPT/36 Copyright © by EC-Council


All Rights Reserved. Reproduction is Strictly Prohibited.

CuuDuongThanCong.com https://fb.com/tailieudientucntt
EC-Council Licensed Penetration Tester

Test 1.5: Check whether the firewall is in stealth mode

Target Organization
URL
Find the Firewall Yes No
Settings whether its
running in Stealth
Mode
Tools/Services Used 1.
2.
3.
4.
5.

Results Analysis:

Confidential 6 Template TBCPT/36 Copyright © by EC-Council


All Rights Reserved. Reproduction is Strictly Prohibited.

CuuDuongThanCong.com https://fb.com/tailieudientucntt
EC-Council Licensed Penetration Tester

Test 2.1: Check whether the browser has default configuration

Target Organization
URL
Find with the 1.
Security Level of the 2.
Web Browser
3.
4.
5.

Tools/Services Used 1.
2.
3.
4.
5.

Results Analysis:

Confidential 7 Template TBCPT/36 Copyright © by EC-Council


All Rights Reserved. Reproduction is Strictly Prohibited.

CuuDuongThanCong.com https://fb.com/tailieudientucntt
EC-Council Licensed Penetration Tester

Test 2.2: Check for the browser plug-ins

Target Organization
URL
List down the 1.
required Browser 2.
Plug-ins
3.
4.
5.

Tools/Services Used 1.
2.
3.
4.
5.

Results Analysis:

Confidential 8 Template TBCPT/36 Copyright © by EC-Council


All Rights Reserved. Reproduction is Strictly Prohibited.

CuuDuongThanCong.com https://fb.com/tailieudientucntt
EC-Council Licensed Penetration Tester

Test 2.3: Check whether the active code is enabled

Target Organization
URL
Find Active Code Is Yes No
Enabled
Tools/Services Used 1.
2.
3.
4.
5.

Results Analysis:

Confidential 9 Template TBCPT/36 Copyright © by EC-Council


All Rights Reserved. Reproduction is Strictly Prohibited.

CuuDuongThanCong.com https://fb.com/tailieudientucntt
EC-Council Licensed Penetration Tester

Test 2.4: Check whether the browser version is updated

Target Organization
URL
Find whether Yes No
Browser Version Is
Updated
Tools/Services Used 1.
2.
3.
4.
5.

Results Analysis:

Confidential 10 Template TBCPT/36 Copyright © by EC-Council


All Rights Reserved. Reproduction is Strictly Prohibited.

CuuDuongThanCong.com https://fb.com/tailieudientucntt
EC-Council Licensed Penetration Tester

Test 2.5: Check whether cookies are enabled

Target Organization
URL
Find Cookies are Yes No
Enabled
Tools/Services Used 1.
2.
3.
4.
5.

Results Analysis:

Confidential 11 Template TBCPT/36 Copyright © by EC-Council


All Rights Reserved. Reproduction is Strictly Prohibited.

CuuDuongThanCong.com https://fb.com/tailieudientucntt
EC-Council Licensed Penetration Tester

Test 2.6: Check whether scripting languages are enabled

Target Organization
URL
Find Scripting Yes No
Languages are
Enabled
Tools/Services Used 1.
2.
3.
4.
5.

Results Analysis:

Confidential 12 Template TBCPT/36 Copyright © by EC-Council


All Rights Reserved. Reproduction is Strictly Prohibited.

CuuDuongThanCong.com https://fb.com/tailieudientucntt
EC-Council Licensed Penetration Tester

Test 3.1: Check whether the operating system and application software are updated

Target Organization
URL
Find Operating Yes No
System and
Application Software
are Updated
Tools/Services Used 1.
2.
3.
4.
5.

Results Analysis:

Confidential 13 Template TBCPT/36 Copyright © by EC-Council


All Rights Reserved. Reproduction is Strictly Prohibited.

CuuDuongThanCong.com https://fb.com/tailieudientucntt
EC-Council Licensed Penetration Tester

Test 3.2: Check whether the file and printer sharing option is enabled

Target Organization
URL
Find File and Printer Yes No
Sharing Option is
Enabled
Tools/Services Used 1.
2.
3.
4.
5.

Results Analysis:

Confidential 14 Template TBCPT/36 Copyright © by EC-Council


All Rights Reserved. Reproduction is Strictly Prohibited.

CuuDuongThanCong.com https://fb.com/tailieudientucntt
EC-Council Licensed Penetration Tester

Test 3.3: Check whether the anti-virus program is enabled

Target Organization
URL
Find Anti-Virus Yes No
Program is Enabled
Tools/Services Used 1.
2.
3.
4.
5.

Results Analysis:

Confidential 15 Template TBCPT/36 Copyright © by EC-Council


All Rights Reserved. Reproduction is Strictly Prohibited.

CuuDuongThanCong.com https://fb.com/tailieudientucntt
EC-Council Licensed Penetration Tester

Test 3.4: Check the configuration of the anti-virus program

Target Organization
URL
Configure the Anti- 1.
Virus program 2.
3.
4.
5.

Tools/Services Used 1.
2.
3.
4.
5.

Results Analysis:

Confidential 16 Template TBCPT/36 Copyright © by EC-Council


All Rights Reserved. Reproduction is Strictly Prohibited.

CuuDuongThanCong.com https://fb.com/tailieudientucntt
EC-Council Licensed Penetration Tester

Test 3.5: Check whether anti-spyware is enabled or disabled

Target Organization
URL
Find Anti-Spyware is Yes No
Enabled
Tools/Services Used 1.
2.
3.
4.
5.

Results Analysis:

Confidential 17 Template TBCPT/36 Copyright © by EC-Council


All Rights Reserved. Reproduction is Strictly Prohibited.

CuuDuongThanCong.com https://fb.com/tailieudientucntt
EC-Council Licensed Penetration Tester

Test 4.1: Check for VPN policy configurations

Target Organization
URL
Configure the VPN 1.
Policies 2.
3.
4.
5.

Tools/Services Used 1.
2.
3.
4.
5.

Results Analysis:

Confidential 18 Template TBCPT/36 Copyright © by EC-Council


All Rights Reserved. Reproduction is Strictly Prohibited.

CuuDuongThanCong.com https://fb.com/tailieudientucntt
EC-Council Licensed Penetration Tester

Test 4.2: Try for wiretapping

Target Organization
URL
Tap the Wireless 1.
Communication 2.
3.
4.
5.

Tools/Services Used 1.
2.
3.
4.
5.

Results Analysis:

Confidential 19 Template TBCPT/36 Copyright © by EC-Council


All Rights Reserved. Reproduction is Strictly Prohibited.

CuuDuongThanCong.com https://fb.com/tailieudientucntt
EC-Council Licensed Penetration Tester

Test 4.3: Try to perform Wardriving

Target Organization
URL
List down the 1.
Targeted Wireless 2.
Networks
3.
4.
5.

Tools/Services Used 1.
2.
3.
4.
5.

Results Analysis:

Confidential 20 Template TBCPT/36 Copyright © by EC-Council


All Rights Reserved. Reproduction is Strictly Prohibited.

CuuDuongThanCong.com https://fb.com/tailieudientucntt
EC-Council Licensed Penetration Tester

Test 4.4: Check whether the wireless base station is in default configuration

Target Organization
URL
Default Yes No
Configuration of
Wireless Base
Station is Enabled
Tools/Services Used 1.
2.
3.
4.
5.

Results Analysis:

Confidential 21 Template TBCPT/36 Copyright © by EC-Council


All Rights Reserved. Reproduction is Strictly Prohibited.

CuuDuongThanCong.com https://fb.com/tailieudientucntt
EC-Council Licensed Penetration Tester

Test 4.5: Check whether WEP is implemented

Target Organization
URL
What are the uses of 1.
WEP Technology 2.
3.
4.
5.

Tools/Services Used 1.
2.
3.
4.
5.

Results Analysis:

Confidential 22 Template TBCPT/36 Copyright © by EC-Council


All Rights Reserved. Reproduction is Strictly Prohibited.

CuuDuongThanCong.com https://fb.com/tailieudientucntt
EC-Council Licensed Penetration Tester

Test 4.6: Try to crack the WEP key

Target Organization
URL
List down the 1.
Captured encrypted 2.
Packets
3.
4.
5.

Tools/Services Used 1.
2.
3.
4.
5.

Results Analysis:

Confidential 23 Template TBCPT/36 Copyright © by EC-Council


All Rights Reserved. Reproduction is Strictly Prohibited.

CuuDuongThanCong.com https://fb.com/tailieudientucntt
EC-Council Licensed Penetration Tester

Test 4.7: Try to crack the SSID password

Target Organization
URL
Try to Scan the 1.
Wireless Network 2.
and Mention the
SSID Password 3.
4.
5.

Tools/Services Used 1.
2.
3.
4.
5.

Results Analysis:

Confidential 24 Template TBCPT/36 Copyright © by EC-Council


All Rights Reserved. Reproduction is Strictly Prohibited.

CuuDuongThanCong.com https://fb.com/tailieudientucntt
EC-Council Licensed Penetration Tester

Test 4.8: Check whether the Simple Network Management Protocol (SNMP) is enabled

Target Organization
URL
Find Simple Network Yes No
Management
Protocol (SNMP) Is
Enabled
Tools/Services Used 1.
2.
3.
4.
5.

Results Analysis:

Confidential 25 Template TBCPT/36 Copyright © by EC-Council


All Rights Reserved. Reproduction is Strictly Prohibited.

CuuDuongThanCong.com https://fb.com/tailieudientucntt

You might also like