<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Penetration-Testing on SteveSec</title><link>https://stevesec.net/tags/penetration-testing/</link><description>Recent content in Penetration-Testing on SteveSec</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Wed, 01 Jan 2025 00:00:00 +0000</lastBuildDate><atom:link href="https://stevesec.net/tags/penetration-testing/index.xml" rel="self" type="application/rss+xml"/><item><title>Strutted HTB Walkthrough</title><link>https://stevesec.net/blog/strutted/</link><pubDate>Wed, 01 Jan 2025 00:00:00 +0000</pubDate><guid>https://stevesec.net/blog/strutted/</guid><description>Strutted Hack the Box Walkthrough.</description></item><item><title>Unrested HTB Walkthrough</title><link>https://stevesec.net/blog/unrested/</link><pubDate>Wed, 01 Jan 2025 00:00:00 +0000</pubDate><guid>https://stevesec.net/blog/unrested/</guid><description>Unrested Hack the Box Walkthrough.</description></item><item><title>A Penetration Tester's Best Friend, Multicast DNS (mDNS), Link-local Multicast Name Resolution (LLMNR), and NetBIOS-Name Services (NetBIOS-NS)</title><link>https://stevesec.net/blog/mdns-llmnr-netbios-pentesters-best-friend/</link><pubDate>Thu, 12 Dec 2024 00:00:00 +0000</pubDate><guid>https://stevesec.net/blog/mdns-llmnr-netbios-pentesters-best-friend/</guid><description>How legacy name resolution protocols like mDNS, LLMNR, and NetBIOS-NS are exploited by penetration testers for credential harvesting, and how to remediate them.</description></item><item><title>How Learning Code Helps With Penetration Testing</title><link>https://stevesec.net/blog/how-learning-code-helps-penetration-testing/</link><pubDate>Thu, 12 Dec 2024 00:00:00 +0000</pubDate><guid>https://stevesec.net/blog/how-learning-code-helps-penetration-testing/</guid><description>How learning to code enhances penetration testing through automation, tool comprehension, and safer execution in client environments.</description></item><item><title>Mobile Application Penetration Testing, What's the Point?</title><link>https://stevesec.net/blog/mobile-application-penetration-testing/</link><pubDate>Thu, 12 Dec 2024 00:00:00 +0000</pubDate><guid>https://stevesec.net/blog/mobile-application-penetration-testing/</guid><description>Why mobile application penetration testing matters, how security professionals audit mobile apps, and best practices users can follow to protect their data.</description></item><item><title>Red Team Resources</title><link>https://stevesec.net/blog/red-team/</link><pubDate>Thu, 12 Dec 2024 00:00:00 +0000</pubDate><guid>https://stevesec.net/blog/red-team/</guid><description>Reference guide for red team tools, techniques, and procedures organized by MITRE ATT&amp;amp;CK phases.</description></item></channel></rss>