Upgrade to Pro — share decks privately, control downloads, hide ads and more …

Democratizing Security with Reconmap

Reconmap
December 20, 2020

Democratizing Security with Reconmap

Democratizing Security practices with Reconmap.

Introduction to penetration testing, the pentester role, and the open-source Reconmap tool for pentesting automation and reporting.

Reconmap

December 20, 2020
Tweet

More Decks by Reconmap

Other Decks in Technology

Transcript

  1. Democratising Security practices with Reconmap pentest automation and reporting Santiago

    Lizardo February 7, 2021 Santiago Lizardo Democratising Security practices February 7, 2021 1 / 1
  2. “Penetration testing, also known as pentesting, is the practice of

    testing a computer system, network or web application to find security vulnerabilities that an attacker could exploit. Penetration testing can be automated with software applications or performed manually.” https://pentestreports.com/what-is-a-pentest.html Santiago Lizardo Democratising Security practices February 7, 2021 3 / 1
  3. “A pentester, or penetration tester, is an individual who identifies

    security flaws within a network or system. They are often external consultants, authorized by a company to perform security audits on their IT ecosystem, and identify any potential cybersecurity risks.” https://pentestreports.com/who-is-a-pentester.html Santiago Lizardo Democratising Security practices February 7, 2021 4 / 1
  4. What is Reconmap? Pentest automation and reporting tool Open-source (code)

    Makes pentesting accessible to all IT pros (developers, devops, sysadmins, ...) Santiago Lizardo Democratising Security practices February 7, 2021 5 / 1
  5. How does Reconmap work? 1 Web application is used to

    create engagement details 2 CLI tool runs commands and pushes results to the API 3 A pentest report is automatically generated Santiago Lizardo Democratising Security practices February 7, 2021 6 / 1
  6. Reconmap feature set Client, project, tasks management all in one.

    Reusable project templates and vulnerability management. Can scale to teams and projects of any size. Includes user roles, search, data export/import, ... Santiago Lizardo Democratising Security practices February 7, 2021 7 / 1
  7. How to get started? Manual setup Follow setup instructions Requires

    significant time to install and maintain Community support (chat) SaaS Affordable hosting Ready in minutes Technical support (phone, email, chat) Santiago Lizardo Democratising Security practices February 7, 2021 8 / 1
  8. Staying in touch Github community Twitter updates Facebook Gitter chat

    Santiago Lizardo Democratising Security practices February 7, 2021 9 / 1