Image
 
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 12 guests online
EH-Net Donations

Enter Amount:
$

Google Ads
ChicagoCon 2008f
chicagocon2008f_125x200banner.jpg
ChicagoCon 2008f
EH-Net News Feeds
Latest Additions
Book Recommendations





 
Advertisement

You are here: Home arrow Forum arrow Ethical Hacking Discussions and Related Certificationsarrow Network Pen Testingarrow CEH - Certified Ethical Hackerarrow CEH - Official Course Modules v5arrow CEH v5 Module 1: Intro to Ethical Hacking
Ethical Hacker Community Forums
August 30, 2008, 05:50:26 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Registration Now Open for ChicagoCon 2008f Oct 27 - Nov 2! Visit www.chicagocon.com.
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: CEH v5 Module 1: Intro to Ethical Hacking  (Read 7251 times)
0 Members and 1 Guest are viewing this topic.
don
Editor-In-Chief
Administrator
Hero Member
*****
Offline Offline

Posts: 2229


Editor-In-Chief


View Profile WWW
« on: November 13, 2006, 04:22:31 PM »

- Why Security?
- Essential Terminologies
- Elements of Security
- The Security, Functionality, and Ease of Use Triangle
- What Does a Malicious Hacker Do?
  - Reconnaissance
  - Scanning
  - Gaining access
  - Maintaining access
  - Covering Tracks
- Types of Hacker Attacks
  - Operating System attacks
  - Application-level attacks
  - Shrink Wrap code attacks
  - Misconfiguration attacks
- Hacktivism
- Hacker Classes
- Hacker Classes and Ethical Hacking
- What Do Ethical Hackers Do?
- Can Hacking be Ethical?
- How to Become an Ethical Hacker?
- Skill Profile of an Ethical Hacker
- What is Vulnerability Research?
- Why Hackers Need Vulnerability Research?
- Vulnerability Research Tools
- Vulnerability Research Websites
- How to Conduct Ethical Hacking?
- Approaches to Ethical Hacking
- Ethical Hacking Testing
- Ethical Hacking Deliverables
- Computer Crimes and Implications
- Legal Perspective
  - U.S. Federal Law
  - Japan’s Cyber Laws
  - United Kingdom’s Cyber Laws
  - Australia’s Cyber Laws
  - Germany’s Cyber Laws
  - Singapore’s Cyber Laws

Source:
http://www.eccouncil.org/EC-Council%20Education/ceh-course-outline.htm

Don
Logged

CISSP, MCSE, CEH, Security+ SME
blackazarro
Full Member
***
Offline Offline

Posts: 217



View Profile
« Reply #1 on: November 30, 2006, 10:21:22 PM »

I just began studying for the CEH v5 and finished reading module 1 of the official courseware. As I was doing the exercises at the end of the module, I stumbled upon a question where I had to pause and think for minute. The question that I was referring is question #5: What are the similarities and differences between Ethical Hacking and Penetration Testing? I know that Vulnerability assessment and Pentesting are use interchangeably, however they have their differences. Vulnerability assessment is when you test a target for known vulnerabilities whereas Penetration Testing is use to conduct the actual exploitation based on the information obtained from the former test. But what is Ethical Hacking when compared to Penetration testing? The following is the information I found so far:

Quote
The term ethical hacking refers to the co-ordinate and comprehensive check of security of a network and on systems inside it, in order to assess the actual risk level data is exposed to, and to propose possible corrective actions aimed at raising the security level.

Penetration Testing involves simulating an attack using tools and techniques available to external hackers and willful insiders to probe for weaknesses and ascertain the potential damage that could be caused. Damage to an insecure network may involve recording and tampering with network traffic, obtaining passwords and gaining administrator access or exploitation of published software weaknesses where patches have not been updated, to name but a few common examples. In real terms, such attacks can lead to loss, theft or alteration of business-critical and highly sensitive data.

I think the term Ethical Hacking has a similar meaning to Vulnerability assessment. Although I originally thought that Ethical Hacking refer to the entire process of testing including Vulnerability and Penetration testing. Anyways,  as far as similarities between Ethical Hacking and Penetration Testing goes, well I guess both form of testing may utilize the same techniques and tools, however, each test providing different results.

So, what you guys think. Is there anybody that would like to share their insights on this subject.  Wink
Logged

Security+, OSCP, CEH
Kev
Guest
« Reply #2 on: December 02, 2006, 02:03:25 PM »

My understanding of the terms is that an Ethical Hacker uses the same techniques as a pentester but is bound by a code of conduct. He has “rules of engagement” and strives to do no harm.  Not all pentesters subscribe to that and sometimes go further than what they were authorized to do, as in the case of the pentester who went further into the FBI network than perhaps he should have.   
Logged
blackphantom
Newbie
*
Offline Offline

Posts: 1


View Profile
« Reply #3 on: June 18, 2007, 05:50:30 AM »

HI THERE I AM NEW TO THE CEH can any body help me out on the CEH i really want to learn it.
Logged
don
Editor-In-Chief
Administrator
Hero Member
*****
Offline Offline

Posts: 2229


Editor-In-Chief


View Profile WWW
« Reply #4 on: June 18, 2007, 07:31:54 AM »

Welcome to EH-Net. Start a new thread with details of your experience and where you want to go, and I'm sure you'll get plenty of help here.

Don
Logged

CISSP, MCSE, CEH, Security+ SME
lelakimipa
Newbie
*
Offline Offline

Posts: 6


View Profile
« Reply #5 on: July 27, 2007, 01:28:53 AM »

@blackazarro:
where d u get the modules or exam tryout, may i have the source? thank you.

i think you're right about that opinion man.
Logged
blackazarro
Full Member
***
Offline Offline

Posts: 217



View Profile
« Reply #6 on: July 27, 2007, 01:57:32 AM »


The module and exercise came from the EC-Council official courseware. This courseware cost me $500 bucks. However, you can get it now for $400 dollars. If that's too expensive for you then I suggest and recommend that you purchase CEH: Official Certified Ethical Hacker Review Guide: Exam 312-50. There are questions after each chapter plus it comes with a cd with a testing software. Some of the questions from this book were in my exam. Plus this book narrows it down to what you have to know for the exam.

In addition, I wrote a post here on how I passed the CEH(v5) exam. Check it out. Hope this helps.
Logged

Security+, OSCP, CEH
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.5 | SMF © 2006-2008, Simple Machines LLC
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.038 seconds with 25 queries.
 
Polls
Best for daily desktop use:
 
Support EH-Net
chicagocon2008f_125x200banner.jpg
ChicagoCon 2008f


Support EH-Net by
Buying all of your
Amazon items using
the search bar above.

cbtnuggets_logo_125.jpg
Try CBT Nuggets Free!
Recent Forum Topics
Vote For EH-Net

progenic.com
Click here to Vote!

Sadikhov.com
Top IT Cert Sites

binarica.com
Binarica Logo

Add to Technorati Favorites
technorati fave

chicagocon2008f_125x200banner.jpg
ChicagoCon 2008f
 
         
Advertisement

© 2008 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.