 |
| |
| |
|
Who's Online |
|
We have 33 guests and 1 member online |
|
| |
|
|
 |
|
EH-Net
|
|
May 18, 2013, 09:55:07 PM
|
Show Posts
|
|
Pages: 1 [2] 3 4
|
|
17
|
Resources / Career Central / Re: Where to start
|
on: October 24, 2011, 12:58:02 AM
|
|
Here are some books to help:
The Web Application Hacker's Handbook: Finding and Exploiting Security Flaws 2nd Edition - Dafydd Stuttard (Author), Marcus Pinto (Author) ^ big book just came out. Helped me alot with my GWAPT certification.
HACKING EXPOSED WEB APPLICATIONS, 3rd Edition by Joel Scambray, Vincent Liu and Caleb Sima ^ Dont know much about this one. It has good reviews on amazon.
|
|
|
|
|
18
|
Resources / Career Central / Re: My new career path..tell me what you think?
|
on: October 24, 2011, 12:43:12 AM
|
|
One thing to remember is to expect to be derailed. My path has changed sooo much since i started, for example i expected to do the OSCP and CISA among other things by now. Like the greats you must be able to adapt.
My path was the following.
Linux (When i was in H.S.) Network Security (College Degree) Learned Python (In College) I got a Info Sec Analyst Job (which I am now.) Took GCIA Took GCIH Took GPEN Taking GWAPT exam - err... thursday *crosses fingers* Going Back to School for M.S. CIS Looking to take EnCe Then GCFA and CCE Then GSEC, CISSP Finally GSE
I really want to throw the OSCP in there somewhere. it may have to wait until i complete school.
As for impulses path i would change it to the following. 1. Linux Skills (selfstudy) – Done – Took 1 month and 20 days (10/20/11) 2. Python skills (selfstudy) - Process (this will be a never ending step. push to background look at 'gray hat hacking with python') & 3. CEH (do this earlier it will set a good foundation) 4. tcpdump / Wireshark skills (monitoring) (selfstudy) (first understand tcp dump and packet analysis, you will get wireshark better.) 5. Wireless certification from Offensive Security (Online training) 6. Metaploit / Nessus Skills (self study) (understand how exploits and payloads work. pre and post exploitation) 7. OSCP certification from Offensive Security (online training) 8. GPEN (selfstudy) (the business side of pen testing) 9. Web pen tester certification from Elearnsecurity (online training) 10. GWAPT?
|
|
|
|
|
30
|
Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: My Next Path (Advice)
|
on: August 12, 2011, 02:38:48 PM
|
|
Wow this actually covers from stuff i am going through right now.
I am scheduled for the CISA in Dec. I wanted to complete a cert in the mean time by end of Oct. then study for the CISA. As I just completed the GPEN, I am up in the air as to if i should do the GWAPT or the OSCP.
P.S. I am also going back to school for my masters in Jan. I will be talking web app development which may compliment the GWAPT
Should i do my OSCP now. then cisa and Gwapt in jan or should i do the gwapt then CISA and OSCP?
|
|
|
|
|
Loading...
|
|
 |
|