Jump to content

confuscious1080

Active Members
  • Posts

    29
  • Joined

  • Last visited

Posts posted by confuscious1080

  1. Thank you for your detailed response on the subject at present I am reading through the Web Application Hackers Handbook had a recent interview for a pen test company and failed the test rig scored to low with regards to XSS and SQL injections. I have also been practicing more with Mutillidae.

    At present I have also just achieved a Cisco CCNA in Cyersecurity through their scholarship programme, this is where I believe that I learned the most especially with regards to network protocols and attacks ie ARP spoofing, DNS poisoning, DHCP starvation, MITM stuff on switched networks.

    Looking for more experience actually pen testing think I need to run through more CTF's have a solid knowledge of all the tools and how they work its just the looking through code and finding injection points in say HTML etc that lets me down as I have zero programming knowledge though picking up HTML, CSS and Javascript quite quick would also like to learn Python.

  2. Anyone know of any affordable pen testing courses I cannot afford the OSCP and think the CEH is probably irrelevant.

    Was looking at some of Elearns courses specifically the EJPT but thought it may be to junior as I already have a Cisco CCNA in Cybersecurity

  3. So I happened to run an Nmap on my entire subnet and my router came back with some interesting open ports including 139 the Netbios

    So I thought I would probe a little further using a Metasploit auxiliary scanner module, after setting the RHOST, RPORT and exploit the

    exploit took place and said it completed but I received no enumeration information, is this because its not vulnerable I should not have to use ngrok or

    port forward as its my own LAN im on

×
×
  • Create New...