Top Banner
http://www.infobytesec.com Francisco Amato Faraday BsideLatam 2016
31

Faraday Bsides Latam 2016

Jan 21, 2017

Download

Software

Francisco Amato
Welcome message from author
This document is posted to help you gain knowledge. Please leave a comment to let me know what you think about it! Share it to your friends and learn new things together.
Transcript
Page 1: Faraday Bsides Latam 2016

http://www.infobytesec.com

Francisco AmatoFaraday

BsideLatam 2016

Page 2: Faraday Bsides Latam 2016

WHOAMI

http://www.infobytesec.com

ContactFrancisco Amato

[email protected] @famato

https://www.faradaysec.com

Page 3: Faraday Bsides Latam 2016

WHOAMI

http://www.infobytesec.com

Ekoparty

Page 4: Faraday Bsides Latam 2016

WHOAMI

http://www.infobytesec.com

#Eko12 October 26, 27, 28

Page 5: Faraday Bsides Latam 2016

Introduction

http://www.infobytesec.com

Agenda

• Penetration Test • Faraday Platform• Testing Lab

Page 6: Faraday Bsides Latam 2016

Introduction

http://www.infobytesec.com

Penetration Test

• Collaborative• Reporting• Vulnerability Assessment• Issues• Task

Page 7: Faraday Bsides Latam 2016

Introduction

http://www.infobytesec.com

Faraday

• Collaborative Penetration Test• Vulnerability Management Platform• An Integrated Multiuser Risk Environment that maps and leverages all the knowledge you generate in real time.

Page 8: Faraday Bsides Latam 2016

Faraday

http://www.infobytesec.com

Open Source - v1.0.20

Page 9: Faraday Bsides Latam 2016

Platforms

http://www.infobytesec.com

Page 10: Faraday Bsides Latam 2016

Introduction

http://www.infobytesec.com

Interfaces

• QT• GTK• ZSH• Web

Page 11: Faraday Bsides Latam 2016

Interfaces

http://www.infobytesec.com

QT - Deprecated

Page 12: Faraday Bsides Latam 2016

Interfaces

http://www.infobytesec.com

GTK

Page 13: Faraday Bsides Latam 2016

Interfaces

http://www.infobytesec.com

ZSH

Page 14: Faraday Bsides Latam 2016

Interfaces

http://www.infobytesec.com

Web-UI

Page 15: Faraday Bsides Latam 2016

Plugins

http://www.infobytesec.com

50+

Page 16: Faraday Bsides Latam 2016

Plugins

http://www.infobytesec.com

Types

Console (Nmap, Nikto, etc)Report (Nessus, Acunetix, ZAP )Api (BeFF, Metasploit, Burp)

Page 17: Faraday Bsides Latam 2016

Database

http://www.infobytesec.com

CouchDB

Page 18: Faraday Bsides Latam 2016

Vulnerability Database

http://www.infobytesec.com

Page 19: Faraday Bsides Latam 2016

Workspaces

http://www.infobytesec.com

Page 20: Faraday Bsides Latam 2016

Dashboard

http://www.infobytesec.com

Page 21: Faraday Bsides Latam 2016

Dashboard

http://www.infobytesec.com

Page 22: Faraday Bsides Latam 2016

Status Report

http://www.infobytesec.com

Page 23: Faraday Bsides Latam 2016

Status Report

http://www.infobytesec.com

Page 24: Faraday Bsides Latam 2016

Hosts

http://www.infobytesec.com

Page 25: Faraday Bsides Latam 2016

Faraday Plugin

http://www.infobytesec.com

Page 26: Faraday Bsides Latam 2016

Faraday Plugin

http://www.infobytesec.com

Page 27: Faraday Bsides Latam 2016

Continuous Scanning

http://www.infobytesec.com

Page 28: Faraday Bsides Latam 2016

APIs

http://www.infobytesec.com

Faraday

- RPC API 127.0.0.1:9876- RESTful 127.0.0.1:9977

Page 29: Faraday Bsides Latam 2016

Get Involve!

http://www.infobytesec.com

* https://groups.google.com/d/forum/faradaysec* Freenode: #faraday-dev* http://twitter.com/faradaysec* http://github.com/infobyte/faraday

Page 30: Faraday Bsides Latam 2016

Faraday Awards

http://www.infobytesec.com

Page 31: Faraday Bsides Latam 2016

Labs!

http://www.infobytesec.com

Labs!