Compare cert salaries and plan your next career move
da_vato wrote: » @mokaz: thanks for that list, I have read a few of those and never heard of others. I will definitely look into the titles I have not read. I am using your same approach in regards to metasploit, I have not used it once. I don’t see the point if we can’t use it for the exam and I always train as I fight (it’s a soldier thing).
BlackBeret wrote: » Keep in mind that msfencode, msfpayload, and other things are allowed during the exam. I agree with the statement that you should use the heck out of it in the lab and see how it all works. One thing I did in the labs was to use msf for an exploit, then rework the exploit manually myself. I learned a ton doing that.
impelse wrote: » I just got to my 5 machine
impelse wrote: » In my case I was moving slowly because I concentrated not to move to the next machine until I hack the one I was working
da_vato wrote: » I am going to take BlackBeret's advice of using metasploit then manually rework... I think that is some of the best advice I have heard in regards to OSCP.
mokaz wrote: » These are my array of resources i'm currently using (in bold are my favorites): Black Hat PythonConquering The Command LineCoding for Penetration Testers Command Line Kung FuCounter Hack Reloaded, Second EditionEthical Hacking and Penetration Testing Guide Google Hacking for Penetration Testers Kali Linux Network Scanning Cookbook Linux Pocket Guide, 2nd Edition Mastering Kali Linux for Advanced Penetration Testing Metasploit Penetration Testers Guide Netcat StarterNinja Hacking - Unconventional Penetration TestingPython Penetration Testing Essentials Python for Secret Agents Python Programming for Hackers and PentestersPenetration Testing with the Bash shellPenetration Testing - A Hands-On Introduction to HackingProfessional Penetration Testing - Creating and Learning in a Hacking LabThe Linux Command line - A Complete Introduction Although after reading a lot, i understood that hacking is not really something a book can/will teach you, i mean for me the enumeration is not a problem but i tend to have issues at seeing clearly and rapidly enough "how" will I break in this system or "how" will I escalate privileges correctly and efficiently. I think I've understood that books will give me a quick answer to this or that but the attack angle should be my own jiu jitsu, which can only come after failing for the 100 times hence the Try Harder i guess.. RTFM is really good as well and super handy to have on your desk everyday really... On your last question, I've read somewhere that PWK/OSCP rely uniquely on exploit-db exploits. Which i think makes sense. So i guess that a correctly targeted searchsploit on your updated db should bring the goods to surface i'd say. Last, i've made a statement not to touch metasploit (i mean as an automated point and shoot weapon) in the labs so i might move slowly but i'm moving manually hehe.. Cheers, m.
robantonucci wrote: » Anyone taking the live class (PWK) at BlackHat in August?
mokaz wrote: » These are my array of resources i'm currently using (in bold are my favorites): Black Hat PythonConquering The Command LineCoding for Penetration Testers Command Line Kung FuCounter Hack Reloaded, Second EditionEthical Hacking and Penetration Testing Guide Google Hacking for Penetration Testers Kali Linux Network Scanning Cookbook Linux Pocket Guide, 2nd Edition Mastering Kali Linux for Advanced Penetration Testing Metasploit Penetration Testers Guide Netcat StarterNinja Hacking - Unconventional Penetration TestingPython Penetration Testing Essentials Python for Secret Agents Python Programming for Hackers and PentestersPenetration Testing with the Bash shellPenetration Testing - A Hands-On Introduction to HackingProfessional Penetration Testing - Creating and Learning in a Hacking LabThe Linux Command line - A Complete Introduction
wd40 wrote: » Many Books form the list are from PACKT publishing, any one have a subscription with them? I think 12.99$ per month is a good value ..https://www.packtpub.com/books/subscription/packtlib
Compare salaries for top cybersecurity certifications. Free download for TechExams community.