
Scope, Recon, Attack, Report
Our process starts with a clear Scope and Rules of Engagement (RoE) definition that you and Devious Plan agree upon. This includes specifying the systems, networks, applications, and physical locations that are within the scope of the exercise. It also outlines the rules of engagement, which typically include constraints to avoid damaging critical systems and data. Deliverables include document confirming the scope, RoE, CONOPS. This phase also includes the appropriate Non-Disclosure Agreement.
The next phase includes reconnaissance of in-scope targets and an Open-Source Intelligence (OSINT) techniques. This can involve passive techniques or active techniques such as social engineering to understand the organization's infrastructure and potential weak points.
The attack phase attempts to breach your defenses while trying to remain undetected. If successful we attempt to pivot to other locations and escalate privileges. If in scope, we attempt to exfiltrate data.
We wrap up with the reporting and debriefing phases where we share all knowledge gathered about weaknesses and strengths