Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 43 guests online
 
Advertisement

You are here: Home
EH-Net
May 22, 2013, 09:40:44 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
  Home Help Calendar Login Register  
  Show Posts
Pages: 1 ... 4 5 [6] 7 8 ... 20
76  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Post Pen Test Hack Question on: June 07, 2012, 12:15:20 PM
@alucian - I think that one will always be able to find a reason to justify their not being ready to take on a pen tester role. Especially with ALL of the security rockstars that exist today. Everybody is an expert these days.

At some point you are just going to have to take a leap of faith and step out. You will make mistakes - even the gurus do - but then that is just apart of the game.
77  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: The Book You Should've Read Before Taking OSCP on: May 30, 2012, 04:32:55 PM
I would probably add:
Counter Hack Reloaded - Ed Skoudis
78  Ethical Hacking Discussions and Related Certifications / General Certification / Re: CISSP ISSAP on: May 16, 2012, 04:25:30 PM
Quote
Now... First one to even bother asking about EC-Council gets a lifetime ignore!

So what are your thoughts on the CEH? In fact no I'll see your hand and raise it  Grin Grin Grin

What about Mile2?

 Grin Grin Grin Grin
79  Ethical Hacking Discussions and Related Certifications / General Certification / Re: CISSP or GSEC on: April 05, 2012, 01:26:10 PM
Thank you guys for your replies and your time. I want to get into application security. Any idea which certifications will help me?

Check this out http://infiltrated.net/TechnicalSecurityRoadmap.html#
80  Ethical Hacking Discussions and Related Certifications / General Certification / Re: Security Certification Roadmap on: April 03, 2012, 01:41:38 PM
...........and no CEH  Grin Grin Grin Grin Grin How could you Huh

Great start Sil.
81  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Getting into Pentesting, using this strategy? on: March 26, 2012, 02:00:24 PM
hmmmm why not direct your questions to the author himself.........Sil where u at  Grin Grin Grin Grin
82  Ethical Hacking Discussions and Related Certifications / Other / Re: External Pen Testing Companies? on: March 01, 2012, 12:48:48 PM
In no particular order :
- InGuardians
- Rapid7
- Offsec
- StrikeForce
83  Ethical Hacking Discussions and Related Certifications / Other / Re: Ethics and security research on: February 19, 2012, 07:56:26 PM
http://gse-compliance.blogspot.com/2011/10/zero-days.html
84  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: SANS vs Offensive Security on: February 17, 2012, 03:02:58 PM
I have taken courses from both organisations. I think they complement each other quite well. there are however a few differences:

Support
----------------
SANS: If you go the ondemand route then you have access to a virtual mentor for a period of 4 months. They will answer just about ANY question you throw at them. And the turnaround times are usually quick. In my experience the VM[Virtual Mentors] have been quite knowledgeable.

OFFSEC: You are essentially on your own. In most instances you have to reach out to other students for assistance. It gets frustrating at times especially when your back is against the wall and you are told to "Try Harder".

Content
------------------
SANS: The material is solid although I have found a few instances where the material was incorrect or riddled with typos. They also seem to cover a broader range topics. So for instance the GPEN took the student through the entire sequence of events to perform a pentest - get out of jail free card, scoping, laws, rules of engagement and a host of other soft topics.

OFFSEC: Here again, the material is very good. It does however tend to be a bit more focused.

Labs
-----------------
OFFSEC: Hands down the best lab I have experienced to date. And this is both in terms of layout and exercises.

Course Material:
SANS: You actually recieve text books that you can add to your library I guess. The content is well laid out and easy to get through.

OFFSEC: You receieve a water marked pdf file. So in the end it boils down to preference. A pdf you can always take with you. Walking around with a bag full of books ................

Exam
----------------------
SANS: Still multiple choice. Now even though this is open book, if you do not KNOW the material you will still have a hard time passing.

OFFSEC:To the DEATH. Enough said Smiley

Offerings:
SANS: Has a wider array of certifications to choose from. However OFFSEC has recently added a few new ones.

In the end it boils down to your learning style. If you want guidance and a bit of hand holding then go SANS. If you want to suffer immense pain then go OSCP. For best results do them both.



85  Columns / Hadnagy / Re: [Article]-Top 5 Tips To Make Social Engineering Your Career on: January 25, 2012, 07:18:43 PM
Niceeeee....as for books here is my list:

http://www.amazon.com/Its-Not-All-About-ebook/dp/B0060YIBLK/ref=sr_1_1?ie=UTF8&qid=1327540531&sr=8-1

http://www.amazon.com/Social-Engineering-Human-Hacking-ebook/dp/B004EEOWH0/ref=sr_1_1?s=digital-text&ie=UTF8&qid=1327540603&sr=1-1

This I have not read but I hear it is very good:

http://www.amazon.com/Ghost-Wires-Adventures-Worlds-Wanted/dp/0316037702/ref=tmm_hrd_title_0?ie=UTF8&qid=1327540644&sr=1-1

I am looking forward to this series.
86  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: SANS SEC 660 - Advanced Penetration Testing, Exploits, and Ethical Hacking on: January 09, 2012, 03:53:23 PM
Haha Dark_Knight I know the feeling, and even that, is just "touching the door", CTP is opening the door, and AWE is stepping through the door and into the unknown  Smiley I haven't done AWE, but I've heard from plenty of people it's insane, but really nice  Grin
I can only imagine. I have heard that the classes normally start out "full enough" and as time goes by the number usually gets smaller. At one point I heard one guy just got up and left after a couple hours Smiley
87  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: SANS SEC 660 - Advanced Penetration Testing, Exploits, and Ethical Hacking on: January 09, 2012, 01:00:58 PM
I can't wait to hear about it too, and eventually you should do OffSec AWE too and see how that compares hehe I bet it's like nothing you've ever imagined  Grin

I recently did the fc4.me challenge and it felt like a course all by itself Smiley I cannot begin to imagine what AWE will be about.
88  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: SANS SEC 660 - Advanced Penetration Testing, Exploits, and Ethical Hacking on: January 06, 2012, 05:26:16 PM
I have taken this course, though I have not taken the OSCE yet, but I am going to within the next month or so, so I could give you a direct comparison based on experience in the near future. Otherwise, based on what I have been told about the OSCE and my experience with SEC660.

660 you will learn not just how to write advanced exploits, but you will learn some of the theory and technology of memory and processors to better understand why and how exploits work thus enabling you to better build your own no matter what anti exploit technology faces you.

660 also shows a lot of neat tricks for just hacking in general which go well beyond what you learn in any other hacking style courses.

It is in my opinion that 660 coupled with 710 are a great combo since 710 picks up where 660 leaves off in regards to exploit development and goes well beyond what OSCE covers(based on what I have heard about OSCE).

Now OSCE forces you to actually build exploits, but not necessarily understand how or why they work, and you are prompted to learn some of that on your own since it is self paced.

I think those who take 660 are a more well rounded advanced pen tester, and those who take just the OSCE are very good at writing exploits for many situations but not all.

Keeping in mind my opinion may change after I take the OSCE.

I hope this helps!
Much appreciated.
89  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / SANS SEC 660 - Advanced Penetration Testing, Exploits, and Ethical Hacking on: January 06, 2012, 12:40:21 PM
Has anybody here taken this course: https://www.sans.org/security-training/advanced-penetration-testing-exploits-ethical-hacking-1517-mid

I am wondering how it compares to say the OSCE.

Thoughts???
90  Features / Opinions / Re: Breaking In on: January 02, 2012, 08:57:59 PM
cd1zz,
Very good write up Smiley
Pages: 1 ... 4 5 [6] 7 8 ... 20
Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.115 seconds with 21 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.