{"id":272,"date":"2019-10-22T14:14:40","date_gmt":"2019-10-22T13:14:40","guid":{"rendered":"https:\/\/increasec.com\/?p=272"},"modified":"2025-05-27T08:45:41","modified_gmt":"2025-05-27T12:45:41","slug":"red-team-methods","status":"publish","type":"post","link":"https:\/\/increasec.com\/?p=272","title":{"rendered":"Red Team\/Penetration Methods"},"content":{"rendered":"\n<p>Large Organizations have developed teams to test their security.  The Red team plays the role of the attacker and the Blue team is the defender.<\/p>\n\n\n\n<p>Penetration Methods:<\/p>\n\n\n\n<p>Email is the OG method to get a link\/executable\/InterpreterHack in front of a user to deliver a payload<\/p>\n\n\n\n<p>Instant Messaging is similar to email with a different transport, same payload<\/p>\n\n\n\n<p>SMS\/MMS delivery method has typically delivered a QR code, when scanned takes the user to a misleading website.  provices a little obfucation.  but could be a bare link<\/p>\n\n\n\n<p>Web portal + weak password \/ no MFA.  Think Cloud services like Office365<\/p>\n\n\n\n<p>Open Inbound TCP ports + vulnerable software.  NEVER pass RDP\/TCP3389 to an internal server.  I find many Security Camera installers that ask to have ports forwarded so cameras can be monitored from offsite, it&#8217;s ironic to have your security system be the cause of the insecurity.  Investigate Tailscale, it&#8217;s easy to use once you learn the basics.<\/p>\n\n\n\n<p><\/p>\n\n\n\n<p><\/p>\n\n\n\n<p>A list of red team methods for password enumeration <a href=\"https:\/\/pentestlab.blog\/2018\/07\/04\/dumping-domain-password-hashes\/\">here<\/a>.  Good explanations.<\/p>\n\n\n\n<p>Knowing how an attacker exploits your environment lets you create a plan to defend that environment.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Large Organizations have developed teams to test their security. The Red team plays the role of the attacker and the Blue team is the defender. Penetration Methods: Email is the&#8230;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[43],"class_list":["post-272","post","type-post","status-publish","format-standard","hentry","category-uncategorised","tag-redteam"],"_links":{"self":[{"href":"https:\/\/increasec.com\/index.php?rest_route=\/wp\/v2\/posts\/272","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/increasec.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/increasec.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/increasec.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/increasec.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=272"}],"version-history":[{"count":4,"href":"https:\/\/increasec.com\/index.php?rest_route=\/wp\/v2\/posts\/272\/revisions"}],"predecessor-version":[{"id":3639,"href":"https:\/\/increasec.com\/index.php?rest_route=\/wp\/v2\/posts\/272\/revisions\/3639"}],"wp:attachment":[{"href":"https:\/\/increasec.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=272"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/increasec.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=272"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/increasec.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=272"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}