-Foxer- wrote: » I'd say that it was quite a bit easier than CEH, but that may be just because it builds on CEH. Where in CEH it taught you the concepts of an attack, and how to do it, this cover have to detect it, and how to stop it.
SephStorm wrote: » Amazing, so this cert is not about forensics, its about intrusion detection and response?
SephStorm wrote: » i've been wondering for some time why some training companies offer CEH and CHFI as a package. It's never made complete sense to me. Is CHFI a logical gateway for a pentester?
JDMurray wrote: » I've not taken any EC-Council cert exams, but I'll guess that any new EC-Council cert builds on material from existing EC-Council certs. Therefore, it's likely that the CHFI exam has a lot of overlapping material with the CEH and ECIH certs. And using software tools, and looking for evidence of attacks and intrusions (such as in log files), in itself isn't "forensics." It's the processes and procedures that are followed and how they are documented and presented to a court that are "forensics." The exam objectives certainly make it seem as if this sort of material is covered by the CHFI, but the reviews by exam candidates make it seem otherwise.
-Foxer- wrote: » Forensics are definitely covered in this exam.
-Foxer- wrote: » I guess I didn't provide a very good review. Forensics are definitely covered in this exam. Looking at the titles of the 5 official books gives you a pretty good idea of what is one the exam.
-Foxer- wrote: » Well, I passed! I ended up getting 84%, so not bad, but not super great either. Overall I'm pretty happy with the score though. It was 150 questions, and you have 4 hours to take it. It took me just over an hour. I'd say that it was quite a bit easier than CEH, but that may be just because it builds on CEH. Where in CEH it taught you the concepts of an attack, and how to do it, this covers how to detect it, and how to stop it. One other review of it said that they had a lot of legal questions, but I didn't have too many. I'd say there was a pretty good ratio of all the topics covered. Although there were technical questions, and some where you had to look at logs, know commands and such, overall it wasn't a very technical test, especially compared to CEH (which I think is a pretty good comparison, since they're both Ec-council). I only used the 5 official books to study, and no practice tests, because that's what was provided me by WGU. If anyone has questions, let me know and I'll try and answer them.