Servers & OS

What is Kali Linux

What it is

A specialised Linux distribution with preinstalled tools for security testing (penetration testing).

How we apply it

For network audits and checking our own infrastructure for vulnerabilities before handing a project over.

Where it helps a business

  • Before a project is handed over, you need to make sure no extra ports or services are exposed.
  • Management wants to know how well the network is protected rather than take it on trust.

How we use it

We use Kali Linux tools to check our own infrastructure and clients' networks, only with the owner's permission. But an audit starts with an inventory, not with tools. In the network survey of a museum complex every statement rests on a source, and anything unconfirmed goes into lists to check on site: subnet masks, active equipment, the ports open to the external network. In the website and hosting audit each of the 31 items points to a file or a database record.

Common problems

  • Testing without permission. Scanning someone's network without the owner's written consent is unacceptable.
  • A report without sources. A conclusion like "the network is insecure" with no facts gives management nothing.

When you do not need it

A small office with cloud services and one router is usually fine with proper configuration, without a separate penetration test.

โ† All terms

Need a website, a bot or automation?

Terms explained โ€” now let's get to work: tell us about the task and we'll turn it into a clear work plan.