{"product_id":"black-hat-bash-isbn-9781718503748","title":"Black Hat Bash","description":"\u003cb\u003eMaster the art of offensive bash scripting. This highly practical hands-on guide covers chaining commands together, automating tasks, crafting living-off-the-land attacks, and more!\u003c\/b\u003e\u003cbr\u003e\u003cbr\u003eIn the hands of the penetration tester, bash scripting becomes a powerful offensive security tool. In \u003ci\u003eBlack Hat Bash\u003c\/i\u003e, you’ll learn how to use bash to automate tasks, develop custom tools, uncover vulnerabilities, and execute advanced, living-off-the-land attacks against Linux servers. You’ll build a toolbox of bash scripts that will save you hours of manual work. And your only prerequisite is basic familiarity with the Linux operating system.\u003cbr\u003e\u003cbr\u003eYou’ll learn the basics of bash syntax, then set up a Kali Linux lab to apply your skills across each stage of a penetration test—from initial access to data exfiltration. Along the way, you’ll learn how to perform OS command injection, access remote machines, gather information stealthily, and navigate restricted networks to find the crown jewels. Hands-on exercises throughout will have you applying your newfound skills.\u003cbr\u003e\u003cbr\u003eKey topics covered include:\u003cbr\u003e\u003cul\u003e\n\u003cli\u003eBash scripting essentials: From control structures, functions, loops, and text manipulation with grep, awk, and sed.\u003c\/li\u003e\n\u003cli\u003eHow to set up your lab: Create a hacking environment with Kali and Docker and install additional tools.\u003c\/li\u003e\n\u003cli\u003eReconnaissance and vulnerability scanning:  Learn how to perform host discovery, fuzzing, and port scanning using tools like Wfuzz, Nmap, and Nuclei.\u003c\/li\u003e\n\u003cli\u003eExploitation and privilege escalation: Establish web and reverse shells, and maintain continuous access.\u003c\/li\u003e\n\u003cli\u003eDefense evasion and lateral movement: Audit hosts for landmines, avoid detection, and move through networks to uncover additional targets.\u003c\/li\u003e\n\u003c\/ul\u003e\u003cbr\u003eWhether you’re a pentester, a bug bounty hunter, or a student entering the cybersecurity field, \u003ci\u003eBlack Hat Bash\u003c\/i\u003e will teach you how to automate, customize, and optimize your offensive security strategies quickly and efficiently, with no true sorcery required.Acknowledgments\u003cbr\u003eIntroduction\u003cbr\u003eChapter 1: Bash Basics\u003cbr\u003eChapter 2: Flow Control and Text Processing\u003cbr\u003eChapter 3: Setting Up a Hacking Lab\u003cbr\u003eChapter 4: Reconnaissance\u003cbr\u003eChapter 5: Vulnerability Scanning and Fuzzing\u003cbr\u003eChapter 6: Gaining a Web Shell\u003cbr\u003eChapter 7: Reverse Shells\u003cbr\u003eChapter 8: Local Information Gathering\u003cbr\u003eChapter 9: Privilege Escalation\u003cbr\u003eChapter 10: Persistence\u003cbr\u003eChapter 11: Network Probing and Lateral Movement\u003cbr\u003eChapter 12: Defensive Evasion and Exfiltration\u003cbr\u003eIndex\"[A] much needed resource for offensive security professionals. Having a book that teaches offensive security practitioners and cyber security professionals alike how to harness the power of the native Bash shell is amazing. Thanks to Dolev Farhi and Nick Aleks for writing this excellent resource!\"\u003cbr\u003e\u003cb\u003e—Phillip Wylie, offensive security professional and host of \u003ci\u003eThe Phillip Wylie Show\u003cbr\u003e\u003cbr\u003e\u003c\/i\u003e\u003c\/b\u003e\"\u003ci\u003eBlack Hat Bash\u003c\/i\u003e does a good job of getting the user interested in the soft-white underbelly of the hacking world. This book, from beginning to end, does a good job of walking a fine line between holding the reader's hand and letting them branch out, explore, and improve on the examples that are given throughout the book.\"\u003cbr\u003e\u003cb\u003e—Matthew Jerzewski, Cybersecurity Researcher III, Fortra\u003c\/b\u003e\u003cb\u003eDolev Farhi \u003c\/b\u003eis a security engineer and author of \u003ci\u003eBlack Hat GraphQL\u003c\/i\u003e (No Starch Press, 2023). He is a distinguished security engineer at Palo Alto Networks, where he uses bash daily to automate security tests and sift through network and application artifacts.\u003cbr\u003e\u003cbr\u003e\u003cb\u003eNick Aleks\u003c\/b\u003e has served as a distinguished security engineer at TD Bank and is the chief hacking officer at ASEC. He has extensive experience using bash scripting on red teams,  in penetration tests, and in software development projects. Aleks is also coauthor of \u003ci\u003eBlack Hat GraphQL\u003c\/i\u003e (No Starch Press, 2023).","brand":"No Starch Press","offers":[{"title":"Default Title","offer_id":46305217413349,"sku":"NP9781718503748","price":59.99,"currency_code":"USD","in_stock":false}],"thumbnail_url":"\/\/cdn.shopify.com\/s\/files\/1\/1842\/7735\/files\/9781718503748.jpg?v=1767722697","url":"https:\/\/k12savings.com\/products\/black-hat-bash-isbn-9781718503748","provider":"K12savings","version":"1.0","type":"link"}