Upgrade to Pro — share decks privately, control downloads, hide ads and more …

P.A.K.U.R.I AVTOKYO HIVE

MR.RABBIT
November 02, 2019

P.A.K.U.R.I AVTOKYO HIVE

Penetration test Achieve Knowledge Unite Rapid Interface
- Operation with Ten-key -

MR.RABBIT

November 02, 2019
Tweet

More Decks by MR.RABBIT

Other Decks in Technology

Transcript

  1. Are you feeling stronger just by installing Kali linux? There

    are so many tools in kali linux that you can't take advantage of them. Beginners are often happy with the results of the installation. I used to think so...
  2. As beginner pentester Beginners do not know how to work.

    Scan and enumerate command options are difficult.
  3. As senior pentester I want beginners to learn work quickly.

    Systematic human resource development is difficult with Pentest. I want to have a successful experience with beginners. I don't want to be the only person who knows how work works through my (long) experience.
  4. As manager It is very difficult to read the engineer's

    work status from the console screen. Similarly, it is difficult to evaluate the work of engineers. Accurate management is impossible unless people of any skill level can understand it.
  5. What is PAKURI ? Automate work with OSS obtained from

    Github. Reduce manual mistakes. Visualize work progress with OSS obtained from Github. Front-end operation is only possible with the numeric keypad. C2 Server (Communication & Collaboration)
  6. Why PAKURI ? This tool uses a good part of

    many OSS. In short, copycat. If you say copycat in Japanese slang, it is “Pakuru”.
  7. Concept I chose the tools installed on Kali Linux and

    the OSS released on Git as an active pen tester. PAKURI is a virtual environment built on the concept of “Everyone can do it easily”.
  8. Flow Service scan Visualize Port scan Exploit Scan ports and

    services, visualize results. To this point, I want to support with PAKURI.
  9. Flow Port scan with nmapAutomator There are many tools for

    port scanning. Use the most convenient nmapAutomator.
  10. Flow Service scan with AutoRecon Service scans are more complex

    and more diverse than port scans. Scan support using AutoRecon.
  11. Flow (extra) Exploit with Metasploit Visualization makes it easier to

    find prominent vulnerabilities. This makes it easy to exploit.
  12. Summary Beginner You should do your best without fear. Senior

    Leave tasks that can be automated to beginners. Manager Use visualization to make accurate decisions.