CyberCode Academy

Course 34 - Cybersecurity Kill Chain | Episode 1: Reconnaissance and Footprinting Fundamentals


Listen Later

In this lesson, you’ll learn about: reconnaissance in the Cyber Kill Chain1. What is Reconnaissance?
  • Reconnaissance is the first phase of the Cyber Kill Chain
  • It focuses on:
    • Gathering information about a target
👉 Why it matters:
  • It forms the foundation of the entire attack
  • Poor recon = weak attack
  • Strong recon = precise targeting
2. Passive Reconnaissance (Footprinting)🔹 Definition
  • Collecting information without directly interacting with the target
👉 Low risk of detection🔹 Common Techniques🌐 Network Information Gathering
  • Tools like:
    • whois → domain ownership & contacts
    • nslookup → DNS & IP mapping
🔍 Search Engines & Specialized Platforms
  • Shodan
  • Censys
Used to find:
  • Open ports
  • Running services
  • Technologies used
👥 Social Media Intelligence (OSINT)
  • LinkedIn
    • Employee roles
    • Tech stack hints
  • Facebook
    • Personal interests
    • Behavior patterns
👉 Useful for:
  • Phishing attacks
  • Social engineering
🗑️ Physical Recon (Dumpster Diving)
  • Searching discarded materials for:
    • Passwords
    • Internal documents
    • Configurations
3. Active Reconnaissance🔹 Definition
  • Direct interaction with the target system
👉 Higher risk of detection🔹 Common Techniques📡 Ping Sweeps
  • Identify:
    • Live hosts on a network
🔎 Port Scanning & Fingerprinting
  • Tool:
    • Nmap
Used to detect:
  • Open ports (e.g., SSH, FTP, VNC)
  • Operating system details
4. Passive vs Active ReconTypeInteractionRisk LevelExamplePassiveNoLowShodan, LinkedInActiveYesHighNmap scan5. Why Reconnaissance is Critical
  • Builds a complete target profile
  • Identifies:
    • Weak points
    • Entry points
  • Makes later stages:
    • Faster
    • More effective
Key Takeaways
  • Recon = information gathering phase
  • Passive recon is stealthy and preferred
  • Active recon is powerful but detectable
  • Tools like Shodan and Nmap reveal technical exposure
  • Social media provides human attack vectors
Big PictureReconnaissance is where attackers:👉 Move from guessing → knowing
  • Instead of blind attacks
  • They perform data-driven targetin


You can listen and download our episodes for free on more than 10 different platforms:
https://linktr.ee/cybercode_academy
...more
View all episodesView all episodes
Download on the App Store

CyberCode AcademyBy CyberCode Academy