Passed ceh 7feb2017
Easier then practice sim. I do not know percentage of my passing result. It just say pass. Am I under MiMattack. Was pearson test center was authentic or it was phishing attack.
How will I know it. Will I rec. email from eccouncil.
How will I know it. Will I rec. email from eccouncil.
Comments
-
riyanshah Member Posts: 4 ■□□□□□□□□□I want to write full review. But spam checker at TECHEXAM wont let me. Moment I put ref material name no post is getting thru it.
-
riyan Member Posts: 161 ■■■□□□□□□□Ok. One more try to write review.
Easier and lot more straight forward then boson exam sim. There was no multiple choices to select. You are rewuired to choose only one correct answer.
Wireshark output were poorly formatted and obstrusive. However nmap output were neat and clean. I was provided full page output and need to scroll down alot to select right choice.
Some questions were not correct in grammatical and syntax wise.
I was provided extra time ie 275 min. to compensate for being none native english.
I never touched or installed any other tool apart from nmap and wireshark which I used daily for personal use.
Saw lots of mainstream tool metaspoilt, burp and gold old nix and windows command for enumeration.
Finished it within two hour mark and never have any intension to sit for all allocated time. -
psiursus Registered Users Posts: 3 ■□□□□□□□□□Thanks for the info. I look forward to taking it in the future. What resources did you use to study?
-
riyan Member Posts: 161 ■■■□□□□□□□All in one book and practice exam 3 rd edition.
Went thru ceh courseware slide but not in detail
Played with nmap and wireshark.
Indepth knowledge of tcp,udp and ip addressing
Some question were more geared toward ethicsl side
1. Ur annoying neigbour shout wifi pass. What should u do
2. U discover bitcoin pass in one of admin server. What u would do now?
3. U found illegal or pirated sofware what would u do now?
4. Someone ask abt ur previous employer network infra setup. What will be ur response?
Members r welcome for the response. -
psiursus Registered Users Posts: 3 ■□□□□□□□□□Sounds good. So if I have Sec+ all I really need to do is more of the practical applications? (i.e. wireshark, nmap, etc....)?
-
ethical-hacker-73 Member Posts: 6 ■□□□□□□□□□I passed the CEH v9 today.
My suggestions.
Understand the following:
firewalking
nmap -A and -O commands
when to use hping
when a Microsoft O/S will not respond to ICMP
LM vs NTLM
password salting
Rainbow attacks
RC4, AES, PKI
process to encrypt message
use of hashes for integrity
written auth for pen testing
understanding impact of Heartbleed and ShellShock (Bashshells and O/S impacted)
few questions on IPSec (know what layer of OSI)
some interesting router protocol questions on OSPF
of course a subnet mask question
a IP4 vs IP6 question
know when to use HIPAA
some WireShark filter commands (4 or 5 of those)
know TCP three-way hand shake
a few IPS vs IDS and stateful firewall questions
MAC flooding and CAM buffer overflow
know asymmetric vs symmetric advantages