Red Team: RedTeaming VS PenTesting

แชร์
ฝัง
  • เผยแพร่เมื่อ 12 ม.ค. 2025

ความคิดเห็น • 47

  • @yikesdarnell
    @yikesdarnell ปีที่แล้ว +26

    This is fantastic, as a person who is interested in red team, you gave me a good glimpse and a better picture of what it takes. Keep producing more information about this area. 👏🏽

    • @DavidProbinsky
      @DavidProbinsky  ปีที่แล้ว +2

      Absolutely! And thank you for the feedback!! More vids coming soon!

  • @aegisalexander3850
    @aegisalexander3850 13 วันที่ผ่านมา +1

    YOU don't get enough traffic you deserve so much more.

  • @springbloom5940
    @springbloom5940 ปีที่แล้ว +10

    One of the things a PMC I worked for did was PHYSEC evaluation. The way Id characterize the difference between pen testing and red teaming (we didn't really call it that) was that pen testing was more academic. The testers would go around and check the individual security measures and give the client a walkthrough report; this is a bad lock, your camera has a blindspot, etc. The red teaming was malicious. We hit live targets and actually tried to 'do damage', like taking stuff, or compromising infrastructure; or simulation thereof.
    The social engineering aspect is a good metric. On one target, we were to access some materials. The location they were in, had soft physical security that we could defeat in seconds, but not without getting caught by the Human security during the access. We 'social engineered' the security operation, by overtly attacking the physical elements a couple times, like just unlocking the door and leaving it ajar, on a passby. So, they moved the materials to a harder location, but because it was physically harder, they skimped on the Human security. That gave us about 30 min with the objective, which was bout 20 more than we needed.
    Generally speaking, the teams had no contact with the client and in many cases, part of the exercise was timing the client to find out how long it took to discover the compromise and react.

    • @DavidProbinsky
      @DavidProbinsky  ปีที่แล้ว +1

      I totally agree with you, the purpose is to help clients improve their security, as well as measuring their timing and reaction against a threat.
      As for the terms, I don't have a military background, but Ive heard of a few different names depending the types of engagement and sector in which its discussed, Ive even heard the term "Tiger Teams". In the Infosec & IT field I'm noticing more and more the use of the term "Red Team" for offensive security engagements, and all is performed from behind a computer.
      My goal with the video was to keep it simple for those coming new to IT for the first time, and bring a bit of awareness to the table about Social Engineering as well as Physical Security. Also, thank you for sharing your experience!!

  • @AnnaZakharycheva
    @AnnaZakharycheva ปีที่แล้ว +1

    Thank you! A perfect, short and clear explanation of the difference between PenTesting, Ethical Hacking and RedTeaming

  • @hertechprep
    @hertechprep 9 หลายเดือนก่อน

    Omg! This has to be the best video on explaining Red Team and the difference between the other two roles. I initially thought Red team was Pentest. After you explained Red Team all I could think about was Mr. Robot! Excellent video! No fluff just straight to the point!! Thank you!

    • @DavidProbinsky
      @DavidProbinsky  8 หลายเดือนก่อน +1

      Thank you for the feedback! ❤️

  • @MathiuuIguthu
    @MathiuuIguthu 11 หลายเดือนก่อน +1

    really appreciate, now I don`t have to waste my time anymore on pen testing, I just wanna sit behind my laptop

  • @nerdybutnice2267
    @nerdybutnice2267 8 หลายเดือนก่อน +1

    Very helpful and thorough explanation, thank you!

  • @Singsing-js9fl
    @Singsing-js9fl ปีที่แล้ว +1

    best explanation every, can u make a vid about the roadmap of each and what certifications to get. thanks, hope you will do.

  • @losxlakers
    @losxlakers 10 หลายเดือนก่อน +1

    How do you get a job? I know someone who got their OSCP and still couldn’t get a job.

    • @yuck871
      @yuck871 9 หลายเดือนก่อน

      Maybe actually study IT or cybersecurity at a university before applying for a job

    • @brunoaleixo768
      @brunoaleixo768 3 หลายเดือนก่อน

      Build projects and showcase them on your resume and talk about it. Certificates show that you have knowledge, but companies care more about experience.

  • @blablawtf
    @blablawtf 10 หลายเดือนก่อน

    Made it very easy to understand, subscribed!

  • @quintontillmon1620
    @quintontillmon1620 8 หลายเดือนก่อน

    Thank you for sharing. You've earned another subscriber for sure.

  • @cloey_b
    @cloey_b ปีที่แล้ว

    Hi David! thank you for this video. Very good information :)

    • @DavidProbinsky
      @DavidProbinsky  ปีที่แล้ว +1

      Thank you for the feedback! Glad you enjoyed it!

  • @altcoinwizz
    @altcoinwizz 9 หลายเดือนก่อน +1

    Great video David thanks!

  • @pravadonisproductions6399
    @pravadonisproductions6399 หลายเดือนก่อน +1

    Thanks for this info.

  • @KaliLinux-vn3ws
    @KaliLinux-vn3ws 11 หลายเดือนก่อน

    Is wifi pineapple or adaptor, hacking devices flipper zero , hackrf are used in penetration testing ?

    • @DavidProbinsky
      @DavidProbinsky  8 หลายเดือนก่อน

      The Wifi Pineapple is used often, yes. The Flipper, sometimes, not as often. The hackrf, I personally have never used it in an engagement. Now USB implants, such as the rubber ducky or the Key Croc keylogger, I use very often.

  • @messagedigested
    @messagedigested 3 หลายเดือนก่อน +1

    Great Video.. An eye opener

    • @DavidProbinsky
      @DavidProbinsky  3 หลายเดือนก่อน

      Glad it was helpful!

  • @HossamOcta
    @HossamOcta ปีที่แล้ว +2

    Bro you’re awesome and simple ❤❤

  • @jourdanallred7121
    @jourdanallred7121 ปีที่แล้ว

    A cantanna? Any useful links to read more on this and build one

    • @DavidProbinsky
      @DavidProbinsky  ปีที่แล้ว

      Yeah, they are called Cantenna (Can + Antenna). This post is a bit old, but it should provide you with more info: jacobsalmela.com/2013/09/07/wi-fi-cantenna-2-4ghz-how-to-make-a-long-range-wi-fi-antenna/

  • @carlosbautistazenpay6373
    @carlosbautistazenpay6373 ปีที่แล้ว

    Great explanation! 👌👌

  • @jagatkrishna1543
    @jagatkrishna1543 ปีที่แล้ว +2

    Thanks 👍❤

  • @AnshBathla-tz8kl
    @AnshBathla-tz8kl ปีที่แล้ว

    Great video.

  • @fasteachers
    @fasteachers 4 หลายเดือนก่อน +1

    Amazing😊

  • @forresttindall
    @forresttindall ปีที่แล้ว

    great video! you have earned the sub!

  • @thatocyberspace
    @thatocyberspace ปีที่แล้ว

    Well explained.

  • @Engsfscrypto
    @Engsfscrypto ปีที่แล้ว +1

    Well thanks you sir ,I follow you 🎉🎉🎉🎉🎉🎉🎉🎉🎉🎉🎉🎉🎉🎉🎉🎉🎉🎉🎉🎉🎉🎉🎉🎉

  • @camronbay1
    @camronbay1 ปีที่แล้ว

    Camrahnbay subscribed.

  • @Sakuraigi
    @Sakuraigi 7 หลายเดือนก่อน

    Red teamer is a apy

  • @Dreadwinner
    @Dreadwinner ปีที่แล้ว +1

    🫶🫶🫶🫶🫶

  • @haroldvelasquez9631
    @haroldvelasquez9631 ปีที่แล้ว

    This is great David! I didn’t know you had this channel 🫡

    • @DavidProbinsky
      @DavidProbinsky  ปีที่แล้ว

      Thanks for the feedback! Yeah, been quietly making videos this past year, and trying to shift gears and make more content.