Free PDF · 44 pages
A Pentester's Guide: OSINT, Breach Dumps & External Footholds
The full external attack chain — from passive recon and LinkedIn OSINT to breach dumps, hash capture, and WAF bypass. Written by NaviSec practitioners from real-world engagements.
What's inside
A five-chapter walkthrough of the full external attack chain — from open-source intelligence gathering through establishing an external foothold — the way our testers actually run engagements.
// No spam. Unsubscribe anytime.
Chapters
The External Attack Chain
1 · OSINT: passive recon & asset discovery
2 · OSINT: LinkedIn is not just for jobs
3 · Breach dumps & password spraying
4 · Grabbing hashes & forging footholds
5 · Unmasking WAFs & finding the source