|
EH-Net
|
|
May 18, 2013, 02:54:39 PM
|
Show Posts
|
|
Pages: [1] 2 3 ... 40
|
|
7
|
Ethical Hacking Discussions and Related Certifications / ECSA - EC-Council Certified Security Analyst / Re: Passed!
|
on: February 04, 2013, 03:55:13 AM
|
thanks guys! i used non official courseware to study for the exam, also did a lot or extending research on the topics at hand, which helped me alot to prepare for the exam. I am not going to upgrade my certifications to LPT. I simply refuse to pay for being able to put the title behind my name which has no additional value to my knowledge. I'm thinking of going after eCPPT at the end of the year or something. I really like to get my hands dirty again after a 100% theoretical course. I know ECSA is not required by many jobs but that is not the reason i take these courses. I do it 100% for myself to gain knowledge and the reason i want to get certified is i see it as my reward/confirmation that i understand the material. and i simply like torturing myself 
|
|
|
|
|
13
|
Ethical Hacking Discussions and Related Certifications / General Certification / Re: How to become a good hacker?
|
on: July 04, 2012, 07:19:45 AM
|
|
i'm missing two things here:
along with alle the theoretical knowledge you can gain from the above mentioned sources (books and what not) spending time behind the keyboard just doing it (for example, configure windows security wise, fiddle with permissions for users on linux) gives you a great understanding on how the things work you want to break. also read material at exploit-db and securityfocus, even if you do not understand it (yet).
practice practice practice (practice makes perfect they say)...use hackme's/challenge websites to learn more about "real life" examples.
|
|
|
|
|
15
|
Ethical Hacking Discussions and Related Certifications / Web Applications / Re: WebInspect vs Burp Suite Pro??
|
on: May 08, 2012, 01:48:21 AM
|
|
I am not familiar with WebInspect, but i use burp pro every day, and the more i rely on it, the more features i discover (even after multiple years of use).
It is so much more than only a proxy. You can actively or passively scan webapplications, compare requests, use the intruder to perform brute forcing, it even has a compare function for sessions to check for randomness in the received session identifier. Heck, it even helps you spider the website, and if you use the active scanner it will find sql injections, xss, path traversals etc. so you can even use it as an automated tool.
|
|
|
|
|
Loading...
|