Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 35 guests online
 
Advertisement

You are here: Home
EH-Net
May 21, 2013, 10:34:14 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
  Home Help Calendar Login Register  
  Show Posts
Pages: 1 ... 34 35 [36] 37 38 ... 45
526  Ethical Hacking Discussions and Related Certifications / GPEN - GIAC Certified Penetration Tester / Re: Hallelujah! I passed GPEN with 87% :-) on: May 28, 2011, 01:03:02 PM
Congratz Hayabusa and MaXe!!!

When I passed it last November, they were very quick at sending my emails to become a SANS mentor. But they said you need to own two SANS certification before you can become a mentor. So let me know guys if you receive an email from them...

Thanks H1t M0nk3y!  Smiley

They were very quick with me as well, I wonder if it's an auto-mail if you pass with 85% or above? I received 2, one in common and another for EMEA (since I live in Europe). I didn't read anything about you need two SANS or GIAC certifications, but maybe they'll reply back to me with that info not written anywhere  Wink

I'll try to remember to inform you what the reply was, so far I'm close to waiting 10 business days (which is the handling time they wrote it would take). I'm patient anyway  Cheesy
527  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Questionnaire for Pen Test. on: May 28, 2011, 10:00:36 AM
Some questions I like to ask include:

What is my target?
What systems are in scope?
What systems are off limits?
When can I test?
When must I never test?
What tools and techniques can I use (or not use, e.g. DDOS, social engineering, physical, etc)
Who is my PoC for the test?
Is the test announced?
Where can I test from? (internal, DMZ port, internet remote site, etc)

I completely agree that you should ask these questions first, when defining the scope  Smiley
528  Ethical Hacking Discussions and Related Certifications / GPEN - GIAC Certified Penetration Tester / Re: Hallelujah! I passed GPEN with 87% :-) on: May 26, 2011, 04:38:13 PM
Congrats, MaXe!

Went ahead and took my freebie (from both CEH v7 and OSCP in the last year) GPEN exam, this morning, and passed, too.  Just under 2 hours (1:54), with an 85%.  So now there's 2 of us, in the past week!   Wink

Edit - BTW, without giving the questions out / away...  Did you have a couple that you felt were ALL incorrect answers?  I had one, and because I felt they were ALL wrong, I intentionally just picked the MOST incorrect one, anyway...  I actually, supposedly, got that one right...  Needless to say, I commented in the survey, afterward, about that one, and a couple of others.

Thanks hayabusa!  Smiley Congratulations with the 85%, you'll receive a mail from SANS most likely as well about becoming a mentor, if you passed with that score or above, but the bummer is that you have to find students yourself I heard.  Cheesy

With some of the questions, I felt that more than one could possibly be correct, so I got in doubt, and chose the one that I believed GIAC would think was correct. Then it appeared to be most likely the one I initially would've picked. It was mostly some of the non-technical questions that can easily be misunderstood due to there's so many different terminologies imho, but I like my passing score  Smiley

I commented also about the very application specific questions, informing them that not all pentesters use this particular program, some uses others as this other program may have more features, be more reliable, or simply just be more efficient and simple than the other.


Congrats to you also, hayabusa!  Pretty awesome knowing the knowledge level of the user-base here (and willingness to share experience and help out).  I finally have a place to go to search/ask my questions!

I think that is one of the reasons most of us is here, the user-base  Smiley
529  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Questionnaire for Pen Test. on: May 26, 2011, 03:41:04 PM
I require a formal questionnaire which would be provided to the client used for penetration test .

If no one is having it how about if some of you guys list up some of questions which you might ask considering the fact that pen test is of network + web app .

Take a look at the OSSTMM pentest framework, or the PTES framework. If there's absolutely nothing within these..

These are some questions I might ask, to make my life easier as a Penetration Tester:
- Where is the Web App hosted? In-house or outsourced?
- Which operating system is hosting the Web App?
- What kind of possible virtualization is being used on the Web App server?
- Are you using any known CMS's and similar Web Apps, or are you using custom coded applications or a mix?
- What type of database are you using, if any?
- Which server-side language is used on the Web App server? (PHP? ASP?)
- Are you using a well known webserver, if yes, which? If not, coded in-house or via 3rd party?
- Any particular modules / add-ons you have installed on your webserver?
- Is it possible for me / us to obtain a copy of the code you host on your webserver, so we can review it for vulnerabilities?

These are of course technical questions. You might ask these questions as well:
- Are there any critical web applications, we should avoid using dangerous attacks on?
- Is there a mirrored backup server, for us to test the web application(s)?

Well, there's a lot more and these are just some of my contributions. About networks in short: Topology, Switches, Routers, Protocols, etc.


Good luck, I hope some of these questions were useful even though you should use those you believe are the right to use  Smiley
530  Ethical Hacking Discussions and Related Certifications / Programming / Re: What language should I learn first? on: May 26, 2011, 12:12:46 PM
Can anyone recommend any good books for C and C++??

if($option == 'C') {
$x = 'C';
} else {
$x = 'C++';
}

// OR perhaps like this: $x = ($option == 'C') ? 'C' : 'C++';
// It's been a few months since I used one-liner if-conditions but it should work  Grin (Note: That's PHP syntax I used.)

echo 'Search for this on Google: Learn '. $x .' in 21 days or similar.';


It isn't the most user-friendly guide, and there are real books as well.
Try: C Primer Plus or C++ Primer Plus, if that is what you want to learn.

Enjoy!  Wink
531  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: Issues ordering PWB on: May 25, 2011, 12:47:08 PM
You can use a free email, I used my Google Mail account. There are just some extra hoops you have to jump though. Like providing them a copy of your Government Issued ID. (State driver's license).

If you wonder why, it's to make sure you're who you say you are, so you don't start sharing their course material, on warez forums, etc.  Smiley Just be patient and try sending them a mail, from another account as chrisj suggested.
532  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: OSCE Review on: May 25, 2011, 12:44:23 PM
Hopefully by practicing the exploit-db exploits and checking out the book, I should be ready to tackle this course.  Thanks again for the info.   Grin

Good luck, you'll need it  Wink
533  Ethical Hacking Discussions and Related Certifications / General Certification / Re: Choosing certifications - New in this business on: May 24, 2011, 11:38:38 AM
Ask Acidgen on the Freenode IRC network, when he's online  Smiley He will know, even though he loves Offensive Security too and will probably recommend that since it gives you good hands-on experience in a legal and challenging lab  Smiley

If you want something internationally accepted, it's CISSP and CEH most likely. Right after it's SANS courses and GIAC certifications, or additional ISC2 certifications.
534  Ethical Hacking Discussions and Related Certifications / CEH - Certified Ethical Hacker / Re: CEH exam review on: May 24, 2011, 11:34:49 AM
@MaXe I would agree with that. I definatly feel like I can attack a target using tools and compromise a host. What I need to learn is how best to bypass defenses and how to preform a pentest.

How to bypass defenses the best way, is not something GPEN will teach you nor many other certifications. OSCE (actually CTP) can show you the door including handle, but it is only a part of it you see. OSCP (PWB) will show you the base of the door, and the surface of it.

To see it all, and walk through it, OSCP and OSCE can help you, but I am not aware of any certificate that goes to such a level that you describe. By defense in this case I'm describing, I mean all kinds of defenses. (e.g., 802.11 / WiFi, Physical Security (Social Engineering?), Logical / Virtual Security (Protocols and Programs mainly), and all that lies in between.


Writing a good report (this is also a part of the pentest), is something OSSTMM and GPEN (actually the associated SANS course, at a very basic level) can help you with. There was a very nice article in the May Issue of the PenTest Magazine about writing articles, with some very nice jokes as well on how not to do it. I just wish it was free so I could share it with you  Smiley

Performing a good pentest, this is something not only GPEN (and probably CEH too) but also OSCP and OSCE can help you with. GPEN is not very much hands-on, mostly theoretical while OSCP and OSCE are big-time hands-on and very practical courses, but you probably already know that.

Even CISSP can contribute to becoming a better PenTester but this certificate alone, is not a guarantee imho  Smiley (These are just humble opinions.)
535  Ethical Hacking Discussions and Related Certifications / Programming / Re: What language should I learn first? on: May 23, 2011, 10:53:10 AM
If you want another nice guide, on how you could begin writing simple shellcode, try reading this:
http://intern0t.net/papers/Manual Shellcode.pdf

At the end of it, with perhaps a little research of your own, you should be able to play and understand assembly at the basic level  Smiley This paper also has some information about the use of assembly, but it is not directly about it: http://intern0t.net/papers/BPAV - InterN0T.pdf
536  Ethical Hacking Discussions and Related Certifications / CEH - Certified Ethical Hacker / Re: CEH exam review on: May 23, 2011, 10:17:40 AM
Awesome review, it sounds somewhat like GPEN but then again, it also does not  Grin I guess the main difference is GPEN focuses on Penetration Testing in particular while CEH focuses more broadly on the ethical hacking topic?

It's hard to say, at least for my part as I haven't done CEH, yet  Smiley
537  Ethical Hacking Discussions and Related Certifications / Programming / Re: What language should I learn first? on: May 23, 2011, 09:18:50 AM
This is how I would classify each area within InfoSec associated with languages:
- Web Application Security: PHP or ASP(x), additionally: HTML, CSS, JavaScript. (And other web technologies perhaps.)
- Buffer Overflows: Python is good for starters, if you don't like this, try Ruby or Perl.
- Code Review of Programs: C, C++, or perhaps even C# depending on the programs you're going to review. I'd suggest C and then C++, but that is just my humble opinion.
- Linux Automation: Bash (generally good for various tasks during pentesting.)
- Shellcoding: Assembly (IA32 for starters.) Check http://www.projectshellcode.com/

For most web application languages: w3schools
Python: There's so many resources and books about this, ask in IRC Smiley
538  Ethical Hacking Discussions and Related Certifications / CEH - Certified Ethical Hacker / Re: Finally! on: May 23, 2011, 09:01:43 AM
Congrats SephStorm ! Grin Keep up the good work, I'll be reading the review as well  Smiley
539  Ethical Hacking Discussions and Related Certifications / GPEN - GIAC Certified Penetration Tester / Re: Hallelujah! I passed GPEN with 87% :-) on: May 23, 2011, 08:56:32 AM
Congrats MaXe! impressive score for sure Grin any new developments/plans yet?

Thanks j0rDy! If I had trusted my own opinions more, (I was thinking in "GIAC terms" on occasion), I probably would've scored a little bit higher. But it was a nice score that I found acceptable  Smiley Nothing new currently, well, besides a few projects, etc. but that is not related to this certification  Grin


Maxe,

Congrats. I am giving some serious thought to taking it. I presume you self-studied? Can you provide info on referenced material/books?

n1p

Thanks n1p! If you want the easiest way I'd go with a self-study course of SANS SEC560, but the OSCP course with perhaps OSWP, general knowledge, laws in e.g., UK, USA, Japan, Singapore, Germany and perhaps a few other countries will do much good. (Don't forget ethics, terminology, how a report is written, and other topics like these.)

It is possible to pass without any knowledge of laws, but it will probably be right on the edge. If you read The Penetration Testers Open Source Toolkit vol. 2, NIST SP800-42, skim through ISSAF, know about OSSTMM, have a good idea of the ethics and terminology of a penetration test, and have a good base knowledge within Web Application Security, Post-Exploitation, Buffer Overflows, commands in linux and windows (post-exploitation), reconnaissance, information gathering, exploits in general, password attacks, and wireless attacks, then you're good to go.

I wrote a few more things here as well:
http://www.ethicalhacker.net/component/option,com_smf/Itemid,54/topic,7071.msg38351/#msg38351

In short: "Jack of all Trades" (no speciality), or "Know most of the common attacks, defenses and information / technology related to these, this is your baseline for passing GPEN.

Without having studied (at all), I got a score of 77% during a practice test. (enough to pass.)
I failed primarily on laws, because they were not related to neither Denmark nor Sweden at all. Some of the terminology was a bit rusty on my part as well, but all it took was some dedication  Smiley


Congrats Maxe!! I was also wondering how it compared to the OSCE exam.  A lot of people here seem to have the GPEN so it must be very informative and a good certification to have.

Thanks Agoonie! Oh it can't be compared to OSCE at all! GPEN is a good baseline certificate, but it does not give you the hardcore hands-on experience that OSCE or for that sake even OSCP does.

I haven't taken CEH yet, but I think it may be somewhat related to GPEN. Another certificate I've seen from GIAC was GSEC, it looks similar to CISSP. (I haven't done these either.)

It was nice in many ways, to obtain my second certification though  Smiley
540  Ethical Hacking Discussions and Related Certifications / GPEN - GIAC Certified Penetration Tester / Re: Hallelujah! I passed GPEN with 87% :-) on: May 22, 2011, 05:37:13 PM
Thanks lorddicranius!

Congratz MaXe. How did you find it? I found that it complemented the OSCP quite well.

It forced me into some nice theory, about topics I hadn't read much about, until I had to prepare for the exam  Smiley
Pages: 1 ... 34 35 [36] 37 38 ... 45
Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.074 seconds with 21 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Free Business and Tech Magazines and eBooks

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.