Phase 00 · Before the First Packet

Foundations & Methodology

Everything that makes penetration testing legal, ethical, and useful happens before you scan a single host. This phase sets the ground rules: why organizations pay for offensive testing, who the adversaries being simulated are, where the legal line sits, and the methodologies that turn "poke at it" into a repeatable process.

00

About this phase

A penetration test is a simulated attack with permission. The "with permission" part is not a formality — it is the entire difference between a paid engagement and a federal crime. Before any technical work, a tester and client agree on scope, timing, targets, and what happens if something breaks. This phase covers that agreement, the legal framework behind it, and the structured methodologies that keep an engagement thorough and defensible.

Authorized testing only. The techniques in this track are taught for defensive understanding and for engagements you are explicitly authorized to perform. Running them against systems you do not own or have written permission to test is illegal in most jurisdictions.
Lessons
7 live
Phase
00 of 08
Status
Complete
01

Lessons in this phase