Compare cert salaries and plan your next career move
NightShade03 wrote: » (aside from spending countless hours figuring out different tools and technologies one by one).
dynamik wrote: » OWASPhttps://www.owasp.org/images/8/89/OWASP_Testing_Guide_V3.pdfDamn Vulnerable Web App | Get Damn Vulnerable Web App at SourceForge.net (the main site: http://www.dvwa.co.uk/ seems to be down at the moment)Amazon.com: The Web Application Hacker's Handbook: Discovering and Exploiting Security Flaws (9780470170779): Dafydd Stuttard, Marcus Pinto: BooksAmazon.com: Web Security Testing Cookbook: Systematic Techniques to Find Problems Fast (9780596514839): Paco Hope, Ben Walther: BooksGIAC Web Application Penetration Tester (GWAPT)Pentest Labs: Web Application Edition Security Aegishttp://www.phreaknic.info/Videos/PN13/Brian_Wilson_&_Ryan%20Linn_-_Its_9AM_do_you_know_where_your_hashes_are_(PN13).aviSamurai Web Testing Framework It's also imperative that you understand HTML, Javascript, SQL, various web programming languages, etc.
slinuxuzer wrote: » you might also want to check out Backtrack4 a version of linux builit and preloaded for the purpose of pentesting. Also, check out the hacking exposed series they make a book specifically for Web app pentesting, I own most of their books and they are invaluable.
dynamik wrote: » Yea, JS is huge, especially for things like XSS. That's a must.
Compare salaries for top cybersecurity certifications. Free download for TechExams community.