Maximizing Penetration Testing Success with Effective Reconnaissance Techniques using ChatGPT
Sheetal Temara

TL;DR
This paper explores how ChatGPT can enhance the reconnaissance phase of penetration testing by providing detailed intelligence on targets, thereby improving planning and identifying potential security risks.
Contribution
It demonstrates the novel application of ChatGPT in cybersecurity reconnaissance, showcasing its ability to gather valuable data for penetration testing planning.
Findings
ChatGPT can identify IP ranges, domain names, and network topology.
It provides insights into vendor technologies and SSL/TLS configurations.
The approach enhances penetration testing efficiency and effectiveness.
Abstract
ChatGPT is a generative pretrained transformer language model created using artificial intelligence implemented as chatbot which can provide very detailed responses to a wide variety of questions. As a very contemporary phenomenon, this tool has a wide variety of potential use cases that have yet to be explored. With the significant extent of information on a broad assortment of potential topics, ChatGPT could add value to many information security uses cases both from an efficiency perspective as well as to offer another source of security information that could be used to assist with securing Internet accessible assets of organizations. One information security practice that could benefit from ChatGPT is the reconnaissance phase of penetration testing. This research uses a case study methodology to explore and investigate the uses of ChatGPT in obtaining valuable reconnaissance data.…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsAdvanced Malware Detection Techniques · Digital and Cyber Forensics · Web Application Security Vulnerabilities
