Attention! This article is not technical and is intended for readers interested in ethical hacking and training in this area. If you are not interested in training, this material is unlikely to be of interest to you.

Penetration testing is the process of legally hacking information systems to identify vulnerabilities. Pentest (i.e., penetration testing) is conducted at the request of the client, and upon completion, the executor provides recommendations for addressing the vulnerabilities.
If you want to learn to recognize various types of vulnerabilities and protect network and web resources from attacks by malicious actors, Otus will teach you this. Enrollment in the course has begun.
Who is this course for?
For programmers, network administrators, information security specialists, as well as students in their final years studying 'Information Security' and 'Safety of Automated Systems'.
You can take , to understand if you can study in this course. Your knowledge will be sufficient if you:
- Know the basics of TCP/IP operations
- Know the basics of using the command line in Windows and Linux operating systems
- Understand how client-server applications work
- Have the following 'hardware': 8 GB RAM, high-speed internet connection, 150 GB of free disk space
On December 19 at 20:00 there will be, where the course instructor 'Pentest. Practice of Penetration Testing' ā Alexander Kolesnikov (malware analyst at an international company) will answer all questions about the course, tell more about the program, online format, and learning outcomes.
And by the end of the training, you will learn:
- The main stages of conducting penetration testing
- Using modern tools for assessing the security of an information system or application
- The classification of vulnerabilities and methods for fixing them
- Programming skills for automating routine tasks

The goal of the course is to demonstrate how to conduct a detailed analysis of network resources, software, and web resources for vulnerabilities, their exploitation, and subsequent remediation.
To gain an even clearer understanding of this course, you can review past webinars:
āHow to Start Understanding Bugs in the Webā

āAll About the Courseā (previous launch)

You can also attend which will take place on December 17 at 20:00. This webinar will cover basic concepts: What is AD, main services, access control, and the mechanisms used by the BloodHoundAD tool.
See you in the course!
Source: habr.com
