On Cyber War
TwitterGitHubLinkedIn
  • Welcome
  • Source Zero Con References
  • 1. Reconnaissance/ OSINT
    • Information gathering
    • OSINT tools
    • Search Engine OSINT
    • Sock puppets
  • 2. Scanning
    • Host discovery
    • Port Scanning with Nmap
    • Nmap Scripting Engine
  • 3. Enumeration
    • 21 - FTP
    • 22 - SSH
    • 25 - SMTP
    • 53 - DNS
    • 80/443 - HTTP(s)
    • 111 - NFS
    • 135 - RPC
    • 139/445 - NetBIOS/SMB
    • 161 (UDP) - SNMP
    • Wordpress
    • Finger (Solaris)
    • Active Directory
  • 4. Exploitation
    • Public exploits
    • Web application attacks
      • Command injection
      • Cross site scripting
      • Directory traversal
      • File inclusion
      • SQL injection
    • Password attacks
    • Buffer overflows
    • Active Directory
    • Metasploit
  • 5. Maintaining access
    • Upgrading simple shells
    • Reverse shells
    • MSFvenom
    • File transfers
    • Linux privilege escalation
    • Windows privilege escalation
    • Tunneling/Port Forwarding
  • 6. Miscellaneous
    • Connections
  • 7. Walkthroughs
    • HTB - Blunder
    • HTB - Haircut
    • THM -HackPark
Powered by GitBook
On this page
  • Training
  • Certifications
  • Experience

Source Zero Con References

Thanks for watching!

PreviousWelcomeNextInformation gathering

Last updated 2 months ago

Training

Books

Engebretson, Patrick. (2013) The Basics of Hacking and Penetration Testing. Syngress.

OccupyTheWeb. (2019) Linux Basics For Hackers: Getting Started with Networking, Scripting, and Security in Kali. No Starch Press.

Weidman, Georgia. (2014) Penetration Testing: A Hands-On Introduction to Hacking. No Starch Press.

Courses

The Cyber Mentor. (2023, January). Practical Ethical Hacking – 15 Hrs [video]. Youtube. . (FREE!)

TCM Academy. Practical Network Penetration Tester.

CompTIA. Multiple Certifications (Security+, Network+, Pentest+).

Offensive Security. Fundamentals (100-level) and Multiple Certifications.

SANS. Several Penetration Testing Courses (Offensive Operations Learning Path).

TryHackMe. Jr. Penetration Tester and Offensive Pentesting Learning Paths.

HacktheBox. Numerous Learning Paths Including Certified Penetration Testing Specialist.

Certifications

Entry Level

Intermediate

Experience

Certified Penetration Testing Certification (CPTS).

Junior Penetration Tester (eJPT).

GIAC Penetration Tester Certification (GPEN).

Offensive Security Certified Professional (OSCP).

CompTIA Pentest+.

Practical Network Penetration Tester (PNPT).

Certified Red Team Operator (CRTO).

GIAC Exploit Researcher and Advanced Penetration Tester (GXPN).

Offensive Security Experienced Pentester (OSEP).

HackTheBox. .

OSCP-Like Hack The Box Machines.

Proving Grounds (Offsec).

TryHackMe.

https://www.youtube.com/watch? v=3FNYvj2U0HM&lc=UgwWx_P1fsJGXFhwLfd4AaABAg
https://certifications.tcm-sec.com/pnpt/
https://www.comptia.org/training/by-certification
https://www.offsec.com/courses-and-certifications/
https://www.sans.org/cyber-security-skills-roadmap/?msc=main-nav
https://tryhackme.com/hacktivities
https://academy.hackthebox.com/#pills-job-role-paths-tab
https://academy.hackthebox.com/preview/certifications/htb-certified-penetration-testing-specialist
https://info.ine.com/ejpt/
https://www.giac.org/certifications/penetration-tester-gpen/
https://www.offsec.com/courses/pen-200/
https://www.comptia.org/certifications/pentest
https://certifications.tcm-sec.com/pnpt/
https://training.zeropointsecurity.co.uk/courses/red-team-ops
https://www.giac.org/certifications/exploit-researcher-advanced-penetration-tester-gxpn/
https://www.offsec.com/courses/pen-300/
https://www.hackthebox.com/
https://docs.google.com/spreadsheets/d/1dwSMIAPIam0PuRBkCiDI88pU3yzrqqHkDtBngUHNCw8/edit#gid=1839402159
https://www.offsec.com/labs/
https://tryhackme.com.