Offensive Security

Offensive Security
FormerlyOffensive Security Services, LLC
Company typePrivate
IndustryComputer software, Information Security, Digital forensics
FoundersMati Aharoni, Devon Kearns
Headquarters
New York City
,
United States
Area served
International
Key people
ProductsKali Linux, Kali NetHunter, Offensive Security Certified Professional
Websitewww.offsec.com

Offensive Security (also known as OffSec)[1] is an American international company working in information security, penetration testing and digital forensics. Operating from around 2007,[2] the company created open source projects, advanced security courses, the ExploitDB vulnerability database, and the Kali Linux distribution. The company was started by Mati Aharoni,[3] and employs security professionals with experience in security penetration testing and system security evaluation. The company has provided security counseling and training to many technology companies.[4]

The company also provides training courses and certifications.

Background and history

Mati Aharoni, Offensive Security's co-founder, started the business around 2006 with his wife Iris.[5] Offensive Security LLC was formed in 2008.[6][7] The company was structured as Offensive Security Services, LLC in 2012 in North Carolina.[8] In September 2019 the company received its first venture capital investment, from Spectrum Equity, and CEO Ning Wang replaced Joe Steinbach, the previous CEO for four years, who ran the business from the Philippines. Jim O’Gorman, the company's chief strategy officer, also gives training and writes books. Customers include Cisco, Wells Fargo, Booz Allen Hamilton, and defense-related U.S. government agencies. The company gives training sessions at the annual Black Hat hacker conference.[5][9][10]

In 2019, J.M. Porup of CSO online wrote "few infosec certifications have developed the prestige in recent years of the Offensive Security Certified Professional (OSCP)," and said it has "a reputation for being one of the most difficult," because it requires student to hack into a test network during a difficult "24-hour exam." He also summarized accusations of cheating, and Offensive Security's responses, concluding hiring based only on credentials was a mistake, and an applicants skills should be validated.[11] In 2020, cybersecurity professional Matt Day of Start a Cyber Career, writing a detailed review and comparison of OSCP and CompTIA PenTest+, said OSCP was "well known in the pentesting community, and therefore well known by the managers that hire them."[12]

Projects

In addition to their training and security services, the company also founded open source projects, online exploit databases and security information teaching aids.

Kali Linux

The company is known for developing Kali Linux, which is a Debian Linux based distribution modeled after BackTrack. It succeeds BackTrack Linux, and is designed for security information needs, such as penetration testing and digital forensics. Kali NetHunter is Offensive Security's project for the ARM architecture and Android devices.[13] Kali Linux contains over 600 security programs. The release of the second version (2.0) received a wide coverage in the digital media[14][15][16][17] Offensive Security provides a book, Kali Linux Revealed,[18] and makes the first edition available for free download.[19] Users and employees have been inspired to have careers in social engineering.[20] In 2019, in a detailed review, Cyberpunk called Offensive Security's Kali Linux, "formally [sic] known as BackTrack," the "best penetration testing distribution."[21]

BackTrack

BackTrack Linux was an open source GNU General Public License Linux distribution developed by programmers from around the world with assistance, coordination, and funding from Offensive Security.[22][23][24] The distribution was originally developed under the names Whoppix, IWHAX, and Auditor. It was designed to delete any trace of its usage. The distribution was widely known and used by security experts.[25][26][27][28]

ExploitDB

Exploit Database is an archive of vulnerable software and exploits that have been made public by the information security community. The database is designated to help penetration testers test small projects easily by sharing information with each other.[29] The database also contains proof-of-concepts (POC), helping information security professionals learn new exploits variations. In Ethical Hacking and Penetration Testing Guide, Rafay Baloch said Exploit-db had over 20,000 exploits, and was available in BackTrack Linux by default.[30] In CEH v10 Certified Ethical Hacker Study Guide, Ric Messier called exploit-db a "great resource," and stated it was available within Kali Linux by default, or could be added to other Linux distributions.[31]

Metasploit

Metasploit Unleashed is a charity project created by Offensive Security for the sake of Hackers for Charity, which was started by Johnny Long. The projects teaches Metasploit and is designed especially for people who consider starting a career in penetration testing.[citation needed]

Google Hacking Database

Google Hacking Database was created by Johnny Long and is now hosted by Offensive Security. The project was created as a part of Hackers for Charity. The database helps security professionals determine whether a given application or website is compromised. The database uses Google search to establish whether usernames and passwords had been compromised.[32]

See also

References

  1. ^ "Brand Refresh FAQ - Offensive Security Support Portal". OffSec. April 24, 2023. Archived from the original on May 4, 2023. Retrieved May 4, 2023.
  2. ^ "Homepage". Offensive Security. Archived from the original on 2015-09-05. Retrieved 26 September 2015.
  3. ^ "About Us". Offensive Security. Archived from the original on 11 July 2019. Retrieved 26 September 2015.
  4. ^ Kirk, Jeremy (Jul 29, 2014). "Zero-day flaws found in Symantec's Endpoint Protection". PC World. Archived from the original on 11 November 2020. Retrieved 26 September 2015.
  5. ^ a b "Exclusive: Offensive Security Names New CEO; Former No. 2 at HackerOne, Lynda". Fortune. Archived from the original on 2020-08-08. Retrieved 2020-03-17.
  6. ^ "Ning Wang, Offensive Security LLC: Profile and Biography". Bloomberg.com. Retrieved 2020-03-17.
  7. ^ "Offensive Security LLC". www.bloomberg.com. Retrieved 2020-03-17.
  8. ^ "Offensive Security Services, LLC". www.buzzfile.com. Retrieved 2020-03-17.
  9. ^ "Penetration Testing with Kali Linux, Black Hat USA 2018". www.blackhat.com. 2018. Archived from the original on 2020-11-11. Retrieved 2020-03-17.
  10. ^ "Speaker Jim O'Gorman, Black Hat USA 2018". www.blackhat.com. 2018. Retrieved 2020-03-17.
  11. ^ "OSCP cheating allegations a reminder to verify hacking skills when hiring | CSO Online". 2020-03-27. Archived from the original on 2020-03-27. Retrieved 2020-03-28.
  12. ^ "7 Reasons You Can't Compare the PenTest+ and OSCP – StartaCyberCareer.com". 2020-03-06. Archived from the original on 2020-03-06. Retrieved 2020-03-28.
  13. ^ Usatenko, Chris (2019-12-12). "Why secure web-based applications with Kali Linux?". Packt Hub. Archived from the original on 2020-01-12. Retrieved 2020-03-20.
  14. ^ Hoffman, Chris (August 19, 2015). "Meet Kali Linux 2.0, a distro built to hammer your security". PC World. Archived from the original on 26 September 2015. Retrieved 26 September 2015.
  15. ^ Stahie, Silviu (12 August 2015). "Kali Linux 2.0 Penetration Testing OS Now Based on Debian Jessie and Linux Kernel 4.0". Softpedia. Archived from the original on 9 September 2015. Retrieved 26 September 2015.
  16. ^ Holm, Joshua Allen. "Gnome turns 18, new tools for Docker, Kali Linux 2.0, and more news". OpenSource.com. Archived from the original on 6 September 2015. Retrieved 26 September 2015.
  17. ^ Kerner, Sean Michael. "Linux Planet". Archived from the original on 16 September 2015. Retrieved 26 September 2015.
  18. ^ Hertzog, Raphael; O'Gorman, Jim; Aharoni, Mati (2017-06-05). Kali Linux Revealed: Mastering the Penetration Testing Distribution. Offsec Press. ISBN 978-0-9976156-0-9. Archived from the original on 2024-05-21. Retrieved 2020-03-17.
  19. ^ Kali Linux Revealed (PDF). Archived from the original (PDF) on 2021-01-02. Retrieved 2020-03-17.
  20. ^ Carpenter, Perry (2019-04-30). Transformational Security Awareness: What Neuroscientists, Storytellers, and Marketers Can Teach Us About Driving Secure Behaviors. John Wiley & Sons. ISBN 978-1-119-56637-3. Archived from the original on 2024-05-21. Retrieved 2020-12-10.
  21. ^ "Kali Linux - The Best Penetration Testing Distribution". CYBERPUNK. 2018-08-08. Archived from the original on 2020-03-28. Retrieved 2020-03-28.
  22. ^ "BackTrack Linux: The Ultimate Hacker's Arsenal - ADMIN | The resource for all system administrators". 2011-09-25. Archived from the original on 2011-09-25. Retrieved 2020-03-27.
  23. ^ "BackTrack Linux - Penetration Testing Distribution". 2011-09-24. Archived from the original on 2011-09-24. Retrieved 2020-03-27.
  24. ^ "About | BackTrack Linux". 2010-03-22. Archived from the original on 2010-03-22. Retrieved 2020-03-27.
  25. ^ "Linux.com :: Review: BackTrack 2 security live CD". 2007-12-10. Archived from the original on 2007-12-10. Retrieved 2020-03-27.
  26. ^ "Linux.com :: Test your environment's security with BackTrack". 2009-06-08. Archived from the original on 2009-06-08. Retrieved 2020-03-27.
  27. ^ "BackTrack 5 - A Linux Distribution Engineered for Penetration Testing | Ubuntu Manual". 2011-08-25. Archived from the original on 2011-08-25. Retrieved 2020-03-27.
  28. ^ "BackTrack 5 review – if you're serious about pentesting don't leave home without it! | Linux User". 2011-08-11. Archived from the original on 2011-08-11. Retrieved 2020-03-27.
  29. ^ Cimpanu, Catalin. "Chinese websites have been under attack for a week via a new PHP framework bug". ZDNet. Archived from the original on 2020-11-29. Retrieved 2020-03-27.
  30. ^ Baloch, Rafay (2017-09-29). Ethical Hacking and Penetration Testing Guide. CRC Press. pp. 135, 136, 137, 272, 431. ISBN 978-1-4822-3162-5. Archived from the original on 2024-05-21. Retrieved 2020-12-10.
  31. ^ Messier, Ric (2019-06-25). CEH v10 Certified Ethical Hacker Study Guide. John Wiley & Sons. pp. 235, 236, 243, 536, 547. ISBN 978-1-119-53319-1.
  32. ^ Broad, James; Bindner, Andrew (2013-12-05). Hacking with Kali: Practical Penetration Testing Techniques. Newnes. p. 97. ISBN 978-0-12-407883-3. Archived from the original on 2024-05-21. Retrieved 2020-12-10.

Read other articles:

Artikel ini sebatang kara, artinya tidak ada artikel lain yang memiliki pranala balik ke halaman ini.Bantulah menambah pranala ke artikel ini dari artikel yang berhubungan atau coba peralatan pencari pranala.Tag ini diberikan pada Oktober 2022. Kuil Semua Agama Храм всех религийAgamaAfiliasiBeberapa agamaLokasiLokasiMakrodistrik Staroye Arakchino, Kazan, RussiaKoordinat55°48′2″N 48°58′30″E / 55.80056°N 48.97500°E / 55.80056; 48.97500Koordinat...

 

Приблизительный внешний вид Циклометра, созданного Реевским в середине 1930-х годов для каталогизации  (англ.) (рус. перестановок «Энигмы». В верхней части устройства расположены два набора роторов, представленные в закрытом и открытом виде.В нижней части находитс�...

 

Krisztina TóthPersonal informationNama lengkapToth KrisztinaJulukanKriszti, Kriszta, Tothi [1]Kebangsaan HungariaLahir29 Mei 1974 (umur 49)Miskolc, HungariaGaya bermainLeft-handed, shakehand gripEquipment(s)ButterflyPeringkat tertinggi13 (December 2003) [2]KlubFSV KroppachTinggi164 m (538 ft 1⁄2 in) Rekam medali Putri Tenis Meja Mewakili  Hungaria World Championships 1995 Tianjin Doubles World Cup 1995 Atlanta Team 2007 Magdeburg Team Europ...

Dewan Perwakilan Rakyat Daerah Kabupaten BondowosoDewan Perwakilan RakyatKabupaten Bondowoso2019-2024JenisJenisUnikameral Jangka waktu5 tahunSejarahSesi baru dimulai23 Agustus 2019PimpinanKetuaH. Ahmad Dhafir (PKB) sejak 11 September 2019 Wakil Ketua ISinung Sudrajad, S.Sos. (PDI-P) sejak 11 September 2019 Wakil Ketua IIDrs. H. Buchori Mun’im (PPP) sejak 11 September 2019 Wakil Ketua IIIH. Moh. Supriadi, S.E. (Golkar) sejak 11 September 2019 KomposisiAnggota45Partai & ku...

 

German footballer (born 1967) You can help expand this article with text translated from the corresponding article in German. (December 2022) Click [show] for important translation instructions. View a machine-translated version of the German article. Machine translation, like DeepL or Google Translate, is a useful starting point for translations, but translators must revise errors as necessary and confirm that the translation is accurate, rather than simply copy-pasting machine-translat...

 

Синелобый амазон Научная классификация Домен:ЭукариотыЦарство:ЖивотныеПодцарство:ЭуметазоиБез ранга:Двусторонне-симметричныеБез ранга:ВторичноротыеТип:ХордовыеПодтип:ПозвоночныеИнфратип:ЧелюстноротыеНадкласс:ЧетвероногиеКлада:АмниотыКлада:ЗавропсидыКласс:Пт�...

Ираклеониты — ученики гностика Ираклеона (II век). Упоминаются как особая секта Епифанием и Августином; при крещении и миропомазании они соблюдали обряд помазания елеем и при этом произносили воззвания на арамейском языке, которые должны были освободить душу от власт�...

 

Tila TequilaTequila pada Oktober 2008LahirThien Thanh Thi Nguyen24 Oktober 1981 (umur 42)SingapuraNama lainTila NguyenMiss TilaTornado Thien[1]Pekerjaan Model pemandu acara televisi penyanyi penulis lagu pemeran penulis blogger Tahun aktif2001–sekarangKota asalHouston, Texas, ASPasanganCasey Johnson (2007–10; kematian Johnson)Anak2Karier musikGenre Hip hop pop rap pop rock electropop Label The Saturday Team will.i.am Music Group Thien Thanh Thi Nguyen[2 ...

 

Max von Schillings. Max von Schillings (19 April 1868 – 24 Juli 1933) adalah seorang dirigen dan komponis Jerman. Ia adalah dirigen kepala Staatsoper (Opera Negara) Berlin dari 1919 sampai 1925. Opera yang diciptakannya, Mona Lisa (1915), dimainkan di Metropolitan Opera. Ia menikah dengan Barbara Kemp, soprano yang menyanyikan tokoh utama opera tersebut. Sebelum Mona Lisa, Schillings telah menulis tiga opera: Ingwelde (1894), Der Pfeifertag (1899), dan Der Moloch (1906). Ia ad...

MedusaMedusa, disegni di Stjepan Šejić UniversoUniverso Marvel Lingua orig.Inglese AutoriStan Lee Jack Kirby EditoreMarvel Comics 1ª app.marzo 1965 1ª app. inThe Fantastic Four (vol. 1[1]) n. 36 Editore it.Editoriale Corno 1ª app. it.maggio 1972 1ª app. it. inI Fantastici Quattro n. 31 Interpretata daSerinda Swan Voce italianaFederica De Bortoli Caratteristiche immaginarieAlter egoMedusalith Amaquelin-Boltagon Specieinumana SessoFemmina Etniaattilana Luogo ...

 

この項目には、一部のコンピュータや閲覧ソフトで表示できない文字が含まれています(詳細)。 数字の大字(だいじ)は、漢数字の一種。通常用いる単純な字形の漢数字(小字)の代わりに同じ音の別の漢字を用いるものである。 概要 壱万円日本銀行券(「壱」が大字) 弐千円日本銀行券(「弐」が大字) 漢数字には「一」「二」「三」と続く小字と、「壱」「�...

 

Vektor CR-21 Jenis Senapan serbu Negara asal  Afrika Selatan Sejarah pemakaian Masa penggunaan Purwarupa Digunakan oleh Belum ada Sejarah produksi Tahun 1997 Diproduksi Purwarupa Jumlah produksi Purwarupa Varian Karabin CR-21 Spesifikasi Berat 372 kg (820,1 pon) Panjang 760 mm (29,9 in) Panjang laras 460 mm (18,1 in) Peluru 5,56 x 45 mm NATO Mekanisme Gas-Operated, rotating bolt Rata² tembakan 700 peluru/min (full auto) Kecepa...

The topic of this article may not meet Wikipedia's notability guidelines for companies and organizations. Please help to demonstrate the notability of the topic by citing reliable secondary sources that are independent of the topic and provide significant coverage of it beyond a mere trivial mention. If notability cannot be shown, the article is likely to be merged, redirected, or deleted.Find sources: Ferro Corporation – news · newspapers · books · scholar&...

 

 烏克蘭總理Прем'єр-міністр України烏克蘭國徽現任杰尼斯·什米加尔自2020年3月4日任命者烏克蘭總統任期總統任命首任維托爾德·福金设立1991年11月后继职位無网站www.kmu.gov.ua/control/en/(英文) 乌克兰 乌克兰政府与政治系列条目 宪法 政府 总统 弗拉基米尔·泽连斯基 總統辦公室 国家安全与国防事务委员会 总统代表(英语:Representatives of the President of Ukraine) 总...

 

  هذه المقالة عن قبيلة هوارة. لمعانٍ أخرى، طالع هوارة (توضيح). هوارةمناطق الوجود المميزة شمال أفريقيا، الشام، إسبانيا، صقلية، البرتغال شمال أفريقيا، الشام، إسبانيا، صقلية، البرتغالاللغات الأمازيغية والعربيةالدين غالبية إسلامية (سنة وإباضية)، [محل شك]تعديل - تعد�...

Representación del descubrimiento de un caso de combustión espontánea humana en Bleak House El término combustión espontánea humana (SHC por sus siglas en inglés: Spontaneous Human Combustion[1]​[2]​[3]​) se utiliza para describir el concepto pseudocientífico[4]​ de la combustión de un cuerpo humano vivo (o recientemente fallecido) sin una fuente externa aparente de ignición, y en el cual dicho cuerpo quedan reducido a cenizas casi en su totalidad.[5]​ ...

 

Principales confessions religieuses en 2011 (clair : >33% et sombre : >50%) : Protestants Catholiques Athées et non-religieux Population non religieuse selon le recensement de 2011. L'irréligion est très répandue en Allemagne et notamment dans l'ex-RDA ; en 2009, plus d'allemands sont non-croyants en Allemagne de l'Est qu'en Allemagne de l'Ouest[1],[2]. Dans l'ensemble, l'Allemagne est un pays remarquablement laïque, bien qu'en dépit de cela, de nombreuses rég...

 

Controversies surrounding nuclear attacks The Fat Man mushroom cloud resulting from the nuclear explosion over Nagasaki rises into the air from the hypocenter. Substantial debate exists over the ethical, legal, and military aspects of the atomic bombings of Hiroshima and Nagasaki on 6 August and 9 August 1945 respectively at the close of World War II (1939–45). On 26 July 1945 at the Potsdam Conference, United States President Harry S. Truman, British Prime Minister Winston Churchill and Pr...

LupercaliaLupercalia tampaknya berasal dari kata lupus, serigala, meskipun etimologi dan signifikansinya samar[1] (kepala serigala perunggu, abad ke-1 M)Dirayakan olehKerajaan Romawi, Republik Romawi, Kekaisaran RomawiJenisAgama Romawi KlasikPerayaanperayaanKegiatanpenyucian kambing dan anjing oleh Luperci; persembahan kue oleh bangsa Vestal; upacara kesuburan dimana Luperci bermula kambing menyerang wanita yang berharap untuk rujukTanggal15 Februari Lupercalia adalah perayaan tahunan...

 

Historic Norwegian mountain farm Knivsflå by the Seven Sisters waterfall, 250 metres above the Geiranger fjord.Photo: Frode Inge Helland Knivsflå is one of a handful of historic mountain farms on the steep mountainsides along the Geirangerfjorden. It is located in Stranda Municipality, Møre og Romsdal county, Norway. Actually it was two farms sharing the location, and they have been inhabited since at least the 1600s. There is also a mountain pasture situated some 500 metres (1,600 ft...