Home
Calendar
Certifications
Columns
Features
Forum
Resources
Vitals
Latest Additions
April 2013 Free Giveaway Sponsor - eLearnSecurity
Human Intelligence to Navigate the Security Data Deluge
February 2013 Free Giveaway Winner of SANS CyberCon Training
Interview: Bugcrowd Founders on Herding Ninjas for Crowdsourced Bug Bounties
Network Forensics: The Tree in the Forest
March 2013 Free Giveaway Sponsor - Mile2
Book Review: Violent Python
February 2013 Free Giveaway Sponsor - SANS
Holiday 2012 Free Giveaway Winner of Metasploit Pro by Rapid7
Course Review: SANS FOR408 Computer Forensic Investigations – Windows In-Depth
The Security Consulting Sugar High
Tutorial: Fun with SMB on the Command Line
Interview: Ilia Kolochenko, CEO of High-Tech Bridge
October 2012 Free Giveaway Winner of LearningGate Training
The Broken: Assessing Corporate Security in 2012 to Make a Better 2013
EH-Net Login
Welcome Guest.
Username:
Password:
Remember me
Lost Password?
No account yet?
Register
Who's Online
We have 27 guests online
You are here:
Home
Ethical Hacking Discussions and Related Certifications
Network Pen Testing
CEH - Certified Ethical Hacker
Ethical Hacking exam
EH-Net
May 25, 2013, 11:53:28 AM
Welcome,
Guest
. Please
login
or
register
.
Did you miss your
activation email?
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
News
: Go back to The Ethical Hacker Network Online Magazine
Home Page
Home
Help
Calendar
Login
Register
EH-Net
>
Ethical Hacking Discussions and Related Certifications
>
Network Pen Testing
>
CEH - Certified Ethical Hacker
(Moderator:
don
) >
Ethical Hacking exam
Pages: [
1
]
2
Go Down
« previous
next »
Print
Author
Topic: Ethical Hacking exam (Read 22189 times)
0 Members and 1 Guest are viewing this topic.
laarijo
Newbie
Offline
Posts: 1
Ethical Hacking exam
«
on:
March 09, 2006, 07:14:30 AM »
Hi
I want to appear for the EH exam.
Need some info so as wht is the syllabi & which books to refer
needed inputs from all members
thanks
Logged
ehadsell
Newbie
Offline
Posts: 4
Re: Ethical Hacking exam
«
Reply #1 on:
March 09, 2006, 08:11:40 AM »
I want to appear for the EH exam.
Need some info so as wht is the syllabi & which books to refer
Here is the description of what is taught in the class -- all these topics are fair game for the test:
http://www.eccouncil.org/EC-Council%20Education/ceh-course-outline.htm
EC-Council sells the official study guide. Very expensive.
http://www.eccouncil.org/studyguide.htm
Other resources are coming out soon from Sybex, Exam Cram and CBT Nuggets. There is a thread of books over at the certifiedsecuritypro site.
http://www.certifiedsecuritypro.com/component/option,com_smf/Itemid,190/topic,126.0
Logged
don
Editor-In-Chief
Administrator
Hero Member
Offline
Posts: 4169
Editor-In-Chief
Re: Ethical Hacking exam
«
Reply #2 on:
March 09, 2006, 09:44:27 AM »
We had good intentions of starting a study group, but with running 2 sites, having a day job and trying to raise a family, it is difficult. Maybe we'll pick this up again in the next month or so. Either way, we did list several steps (and links) as a starting point for studying for the CEH / CPTS exams. You might find this helpful:
http://www.ethicalhacker.net/component/option,com_smf/Itemid,35/topic,29.0
Don
Logged
CISSP, MCSE, CSTA, Security+ SME
Oyle
Sr. Member
Offline
Posts: 264
"Man. Nature. Technology".
Re: Ethical Hacking exam
«
Reply #3 on:
March 10, 2006, 05:54:02 PM »
What with my studying for the CCE exam now, I have some time available; I could help lead the study group, if no one else minds. I do have the knowledge inbetween my ears, despite that there are no jobs for it here in the area.
How do you discourage a potential employer from thinking you might go rogue and disgruntled and bring their sysytems down? I think this is a major obstacle to finding a job in ssecurity, at least in my area. I already have removed the CEH logo from my resume, but I am still very heavy into the tech. It REALLY is cool.
Logged
MCP, MCP+I, MCSA, MCSE(NT4/W2K), CCNA, CCA, NWCCC, VH-PIRTS, CEH
--------------------
"hackers are like jedi, crackers are like the sith: do not fall prey to the dark side".
From 1337 h4x0r h4ndb00k: "the ten laws of geek", law x
-Tapeworm
mitchmcse
Newbie
Offline
Posts: 7
Re: Ethical Hacking exam
«
Reply #4 on:
March 11, 2006, 03:03:57 AM »
If you start a study group I may be interested in joining it. I will be ordering the courseware from ec-council in the next week or two. Kinda nice that my work is paying for it.
Logged
Oyle
Sr. Member
Offline
Posts: 264
"Man. Nature. Technology".
Re: Ethical Hacking exam
«
Reply #5 on:
March 11, 2006, 11:38:26 AM »
Sounds cool to me. I passed the CEH exam in Dec. 04. I had to pay for it myself, but I was able to get a 20% discount on the price. I still cannot find any work doing any of it, though.
If your work is paying for it, great. One word of caution: Like I said, I passed my exam in Dec. 04. Around May of 05, EC-Council announced a CEH "ver.4". If I look at the CEH syllabus now
www.eccouncil.org/ceh.htm
I can see a few things that were not included in the class I took.
For Instance: there is something listed in the ver.4 course syllabus under Module 13, "Web Based Password Cracking Techniques--Mary Had A Little Lamb formula". I still cannot find out anything about what that is.
Don, do you have any idea about the "Mary Had A Little Lamb formula?"
«
Last Edit: March 11, 2006, 11:46:16 AM by Oyle
»
Logged
MCP, MCP+I, MCSA, MCSE(NT4/W2K), CCNA, CCA, NWCCC, VH-PIRTS, CEH
--------------------
"hackers are like jedi, crackers are like the sith: do not fall prey to the dark side".
From 1337 h4x0r h4ndb00k: "the ten laws of geek", law x
-Tapeworm
mitchmcse
Newbie
Offline
Posts: 7
Re: Ethical Hacking exam
«
Reply #6 on:
March 11, 2006, 09:11:19 PM »
It is pretty good that my work pays for it. But then again I work for IBM. They did give me the opting to go to the boot camp. But I figured I would do the self study and then either go to either the CHFI or IBM EH course next year.
Logged
Oyle
Sr. Member
Offline
Posts: 264
"Man. Nature. Technology".
Re: Ethical Hacking exam
«
Reply #7 on:
March 12, 2006, 11:41:03 AM »
Do you do any programming? It would help for the exam. I don't do any programming, so I didn't pass until my third time. I just studied what I wasn't sure of, and kept plugging away.
Be warned, after you pass the exam, it will be a loooonnnng time until you recieve the cert. Just ask Dengar13, also on this forum. It took me almost 3 months to get mine. Dengar didn't get his until it was after 3 months.
«
Last Edit: March 12, 2006, 11:46:48 AM by Oyle
»
Logged
MCP, MCP+I, MCSA, MCSE(NT4/W2K), CCNA, CCA, NWCCC, VH-PIRTS, CEH
--------------------
"hackers are like jedi, crackers are like the sith: do not fall prey to the dark side".
From 1337 h4x0r h4ndb00k: "the ten laws of geek", law x
-Tapeworm
don
Editor-In-Chief
Administrator
Hero Member
Offline
Posts: 4169
Editor-In-Chief
Re: Ethical Hacking exam
«
Reply #8 on:
March 12, 2006, 02:58:28 PM »
I have no idea what a "Mary Had A Little Lamb" Formula for cracking passwords is. I could make some guesses, but that's all they would be... guesses. I'll ask around.
Also, I have no problem with you leading the study group. I'll try to participate as much as I can. Also, being part of a group may help motivate me.
Should we continue this part of the conversation in a new thread of The Charter Study Group?
Don
Logged
CISSP, MCSE, CSTA, Security+ SME
Oyle
Sr. Member
Offline
Posts: 264
"Man. Nature. Technology".
Re: Ethical Hacking exam
«
Reply #9 on:
March 12, 2006, 04:37:22 PM »
Sure, that sounds fine. I've never really done this before, but like you say, you don't have a lot of time, and I guess I have more time than you. After winning that great prize. I'd like to give a little back. Help out wherever I can, y'know?
Oyle
Logged
MCP, MCP+I, MCSA, MCSE(NT4/W2K), CCNA, CCA, NWCCC, VH-PIRTS, CEH
--------------------
"hackers are like jedi, crackers are like the sith: do not fall prey to the dark side".
From 1337 h4x0r h4ndb00k: "the ten laws of geek", law x
-Tapeworm
Negrita
Sr. Member
Offline
Posts: 299
Re: Ethical Hacking exam
«
Reply #10 on:
March 13, 2006, 05:09:44 PM »
From what I understand, "Mary had a little lamb" is not a password cracking method, but rather a manner in which passwords can be composed. The idea is to take the abbreviation of the first letters of a well known song or poem an use it as a password. For example the password derived from
M
ary
h
ad
a
l
ittle
l
amb would be
Mhall
. While the password is not quite a complex password it is some-what obscure and obviously not a dictionary word, while on the other hand is still easy for users to remember because of the association to the song or poem.
Obviously you could compose a list of the first lines of many well known songs and add them in to the dictionary to use in a dictionary attack.
If my explanation is wrong, could someone please correct me.
Logged
CEH, CCSA NG/AI, NNCSS, MCP, MCSA 2003
There are 10 kinds of people, those that understand binary, and those that don't.
Oyle
Sr. Member
Offline
Posts: 264
"Man. Nature. Technology".
Re: Ethical Hacking exam
«
Reply #11 on:
March 13, 2006, 07:12:15 PM »
Hey, it's the first explanation I've seen for it anywhere. I guess it makes sense, although you're right, it's not a complex password, or even a good password. But I could find plenty of obscure enough songs to use to create a decent password.
But I use a method to create complex passwords even easier: I just use any 5 to 8 characters off the Microsoft COA (Certficate of Authority) labels on PCs installed with Microsoft OSes, Microsoft software, etc. Microsoft has a server in Redmond that does nothing but crank out those 25 character Product Keys, 24/7. Any of these, taken in any order, makes for an excellent password.
You're new here, right? Welcome. Hope you have a good time here.
BTW, on the EC-Council CEH syllabus, "Mary Had A Little Lamb Formula" is technically listed as a "Hacking Tool", at least it looks like to me.
«
Last Edit: March 13, 2006, 07:14:20 PM by Oyle
»
Logged
MCP, MCP+I, MCSA, MCSE(NT4/W2K), CCNA, CCA, NWCCC, VH-PIRTS, CEH
--------------------
"hackers are like jedi, crackers are like the sith: do not fall prey to the dark side".
From 1337 h4x0r h4ndb00k: "the ten laws of geek", law x
-Tapeworm
don
Editor-In-Chief
Administrator
Hero Member
Offline
Posts: 4169
Editor-In-Chief
Re: Ethical Hacking exam
«
Reply #12 on:
March 13, 2006, 07:27:02 PM »
Actually, Negrita was one of the first to register on CSP Mag (April 8 of last year) and has been with us a while.
Glad to see you participating on this site, too.
Don
Logged
CISSP, MCSE, CSTA, Security+ SME
Negrita
Sr. Member
Offline
Posts: 299
Re: Ethical Hacking exam
«
Reply #13 on:
March 14, 2006, 12:43:48 PM »
Thanks for the welcome. I was actually the 3rd member to register here too (on September 10th 2005). I stumbled upon this site when it was still an empty shell under construction, that was even before registering at CSP. At that stage I didn't know that both domains belong to don.
Logged
CEH, CCSA NG/AI, NNCSS, MCP, MCSA 2003
There are 10 kinds of people, those that understand binary, and those that don't.
cese59
Newbie
Offline
Posts: 1
Re: Ethical Hacking exam
«
Reply #14 on:
March 30, 2006, 12:48:26 AM »
I am new to the site and am interested in joining the studying group for the CEH Exam.
I just recently passed the CISSP and am on to the next giant to conquer.
If you have started a group and there are pre-requisits let me know...
Respectfully,
cese59
Logged
Pages: [
1
]
2
Go Up
Print
« previous
next »
Jump to:
Please select a destination:
-----------------------------
EH-Net
-----------------------------
=> Calendar Of Events
===> ChicagoCon 2007
===> ChicagoCon 2008s
===> ChicagoCon 2008f
===> ChicagoCon 2009s
=> Ethical Hacktivism
=> News Items and General Discussion About EH-Net
===> Greetings
=> Special Events
-----------------------------
Ethical Hacking Discussions and Related Certifications
-----------------------------
=> General Certification
===> Networking
===> OS
===> Security
=> Compliance, Regulations & Standards
=> Control Systems
=> Cyber Warfare
=> Forensics
===> CCE / MCCE - (Master) Certified Computer Examiner
===> CHFI - Computer Hacking Forensic Investigator
===> EnCE - EnCase® Certified Examiner
===> GCFA - GIAC Certified Forensics Analyst
=> Hardware
=> Incident Response
===> CSIH - Computer Security Incident Handler
===> GCIH - GIAC Certified Incident Handler
=> Malware
===> Advisories
=> Mobile
=> Network Pen Testing
===> CEH - Certified Ethical Hacker
===> CPTC - Certified Penetration Testing Consultant
===> CPTE - Certified Penetration Testing Engineer
===> CSTA - Certified Security Testing Associate
===> eCPPT - eLearnSecurity Certified Professional Penetration Tester
===> ECSA - EC-Council Certified Security Analyst
===> GPEN - GIAC Certified Penetration Tester
===> OSCP - Offensive Security Certified Professional
=> Physical Security
=> Programming
=> Social Engineering
=> Web Applications
=> Wireless
===> CWNP Certs
===> GAWN - GIAC Assessing Wireless Networks
===> OSWP - Offensive Security Wireless Professional
=> Other
-----------------------------
Columns
-----------------------------
=> Editor-In-Chief
=> Andress
=> Gates
=> Haddix
=> Hadnagy
=> Heffner
=> Hoffman
=> Linn
=> RichM
=> Murray
=> J. Peltier
=> Weidman
=> Wilson
-----------------------------
Features
-----------------------------
=> /root
=> Book Reviews
=> Opinions
=> Skillz
===> Examples
===> May 06 - Star Hacks, Episode V: The Empire Hacks Back
===> July 06 - Hack Bill!
===> Sept 06 - Netcat in the Hat
===> Nov 06 - Hitch-Hackers Guide to the Galaxy
===> Dec 06 - A Christmas (Hacking) Story
===> Feb 07 - Charlottes Web Site
===> April 07 - Microsoft Office Space
===> June 07 - Serenity Hack
===> Oct 07 - Worst. Ethical. Hacker. Challenge. Ever.
===> Dec 07 - Frosty the Snow Crash
===> March 2008 - It Happened One Friday
===> Oct 2008 - Scooby Doo and the Crypto Caper
===> Dec 08 - Santa Claus Is Hacking to Town
===> Feb 2009 - Brady Bunch Boondoggle
===> July 2009 - Prison Break
===> October 2009 - SSHliders
===> December 2009 - Miracle on Thirty-Hack Street
===> December 2010 - The Nightmare Before Charlie Browns Christmas
-----------------------------
Resources
-----------------------------
=> Career Central
===> Looking For Work
===> Looking To Hire
=> Links to cool sites.
=> Mass Media
=> News from the Outside World
=> Tools
=> Tutorials
===> Tutorial Requests
Loading...
Exclusive Deal
SANSFIRE 2013
June 15 - 22
5% Off
w/ Code
:
EHN_5
SANS Deals 4 EH-Netters
5% OFF
Any
SANS Course
in Any Format!
Coupon Code:
EHN_5
Including
SANS Rocky Mountain 2013
&
SANS Boston 2013
Polls
Compared to this year, 2013 will be:
Great!
Better.
About the same.
Little worse.
FUBAR!
Recent Forum Topics
News Items and General Discussion About EH-Net
: Change is Coming to EH-Net!!
(30) by
don
Tools
: Symbolic Exploit Assistant project is looking for collaborators
(0) by
galapag0
Greetings
: Hi from the UK
(5) by
prats84
GCIH - GIAC Certified Incident Handler
: Passed my GCIH
(9) by
prats84
Network Pen Testing
: Want a challenge? Want a GXPN practice exam?
(0) by
ajohnson
GCIH - GIAC Certified Incident Handler
: GCIH Free Practice test attempt
(1) by
prats84
EH-Net News Feeds
Latest Additions
Privacy Notice
for TDCC & All Properties
© 2013 The Ethical Hacker Network
Joomla!
is Free Software released under the GNU/GPL License.