A Day in the Life of an Ethical Hacker / Penetration Tester

  Рет қаралды 341,041

The Cyber Mentor

The Cyber Mentor

Күн бұрын

25 Hour Practice Ethical Hacking Course:
www.udemy.com/course/practica...
90% Discount Code (valid through 2019): THECYBERMENTOR
0:00 - Introduction
0:49 - Day to day overview
2:31 - External / Internal Penetration Testing
6:11 - Web Application Penetration Testing
10:06 - Wireless Penetration Testing
12:13 - Physical/Social Testing
14:41 - SOC / Purple Teaming
16:33 - Report writing and debriefing
❓Info❓
___________________________________________
Need a Pentest?: tcm-sec.com
Learn to Hack: academy.tcm-sec.com
🔹The Cyber Mentor Merch🔹
___________________________________________
teespring.com/stores/the-cybe...
📱Social Media📱
___________________________________________
Website: thecybermentor.com
Twitter: / thecybermentor
Twitch: / thecybermentor
Discord: tcm-sec.com/discord
LinkedIn: / heathadams
💸Donate💸
___________________________________________
Like the channel? Please consider supporting me on Patreon:
/ thecybermentor
Support the stream (one-time): streamlabs.com/thecybermentor
Hacker Books:
Penetration Testing: A Hands-On Introduction to Hacking: amzn.to/31GN7iX
The Hacker Playbook 3: amzn.to/34XkIY2
Hacking: The Art of Exploitation: amzn.to/2VchDyL
The Web Application Hacker's Handbook: amzn.to/30Fj21S
Real-World Bug Hunting: A Field Guide to Web Hacking: amzn.to/2V9srOe
Social Engineering: The Science of Human Hacking: amzn.to/31HAmVx
Linux Basics for Hackers: amzn.to/34WvcXP
Python Crash Course, 2nd Edition: amzn.to/30gINu0
Violent Python: amzn.to/2QoGoJn
Black Hat Python: amzn.to/2V9GpQk
My Build:
lg 32gk850g-b 32" Gaming Monitor:amzn.to/30C0qzV
darkFlash Phantom Black ATX Mid-Tower Case: amzn.to/30d1UW1
EVGA 2080TI: amzn.to/30d2lj7
MSI Z390 MotherBoard: amzn.to/30eu5TL
Intel 9700K: amzn.to/2M7hM2p
G.SKILL 32GB DDR4 RAM: amzn.to/2M638Zb
Razer Nommo Chroma Speakers: amzn.to/30bWjiK
Razer BlackWidow Chroma Keyboard: amzn.to/2V7A0or
CORSAIR Pro RBG Gaming Mouse: amzn.to/30hvg4P
Sennheiser RS 175 RF Wireless Headphones: amzn.to/31MOgpu
My Recording Equipment:
Panasonic G85 4K Camera: amzn.to/2Mk9vsf
Logitech C922x Pro Webcam: amzn.to/2LIRxAp
Aston Origin Microphone: amzn.to/2LFtNNE
Rode VideoMicro: amzn.to/309yLKH
Mackie PROFX8V2 Mixer: amzn.to/31HKOMB
Elgato Cam Link 4K: amzn.to/2QlicYx
Elgate Stream Deck: amzn.to/2OlchA5
*We are a participant in the Amazon Services LLC Associates Program, an affiliate advertising program designed to provide a means for us to earn fees by linking to Amazon.com and affiliated sites.

Пікірлер: 316
@TCMSecurityAcademy
@TCMSecurityAcademy 3 жыл бұрын
I hope you enjoyed this video! If so, please consider dropping a like and subscribing.
@moesparc
@moesparc 2 жыл бұрын
As a pen tester are you forced to travel a lot. I worry about starting a family in the future and being away from home often.
@admajoremdeigloriam7772
@admajoremdeigloriam7772 2 жыл бұрын
What is the difference between TCM academy and a cybersecurity boot camp?
@MakingworldBetter88
@MakingworldBetter88 2 жыл бұрын
@@moesparc 7777777777777777777777777777777777777777777777777777777777777777777777777777777777777&7777777777777777777777777777777777777
@edmondkovacs6327
@edmondkovacs6327 Жыл бұрын
Hey bro how can I talk you privately
@Jfigueroa43
@Jfigueroa43 5 жыл бұрын
Can you make a video on how you personally got to the position you are in now? Like how did you get started? What were your first steps personally? What do you recommend for the upcoming generations?
@ultimitham
@ultimitham 4 жыл бұрын
Love to see this
@joverflow1050
@joverflow1050 4 жыл бұрын
Jfigueroa43 Hi, I might no be at his level but I do work as a penetration tester as well. What I can say to get started is watch videos on youtube related to hacking. Then if you have money maybe go for OSCP you’ll learn a lot from it. If knowledge is not enough try elearnsecurity first it was good as well highly recommended. Penetration Testing is huge I mean it have many fields as well, although idk if they call it as a field but what I’m trying to say is look for something also where you want to focus first whether it is on web app, sysytem/network, mobile, etc.. For example, focus on webapp pentesting first then you’ll learn to do other stuff along the way. Good luck and never stop learning :)!
@monchurmiah1229
@monchurmiah1229 4 жыл бұрын
@@joverflow1050 Hi i realy like your comment i am student in cyber security winch is a ethical hacking i am bit shy about my course by college did not tech me any coding as u say Ur a hacker or pen tester can you tell me do i need to know coding most for pen testing job thank you it is will be helpful if u reply back kindly.
@episode6815
@episode6815 4 жыл бұрын
@@monchurmiah1229 You do.
@a1kev
@a1kev 4 жыл бұрын
Zero Thanks for the insight man.
@STYLUS_EDM
@STYLUS_EDM 2 жыл бұрын
Really enjoying your vids. Its honest and it's to the point. People ask to subscribe before videos but its drawn out and annoying. You are to the point with no over done intros lol. You do it without acting either. You do it like it's done in reality. Well done. Keep it up.
@haize198
@haize198 3 жыл бұрын
The BEST MENTOR I HAVE COME ACROSS. I am soo glad I found you.
@hxmo656
@hxmo656 5 жыл бұрын
Amazing insight into the field! Definitely makes me want to work even harder to become a PenTester
@TCMSecurityAcademy
@TCMSecurityAcademy 5 жыл бұрын
Thank you for the constant support, hxmo
@nicolaspope5599
@nicolaspope5599 10 ай бұрын
Did you ever get into it?
@hxmo656
@hxmo656 10 ай бұрын
@@nicolaspope5599 yes, been working as a Pentester for over 2 years now, thanks for commenting this brings back so many memories wow Got my OSCP in 2020
@hxmo656
@hxmo656 10 ай бұрын
I can also confirm this is an accurate summary of a pentesters daily life lol
@PrincePalmUwU
@PrincePalmUwU 2 жыл бұрын
that's pretty awesome! you're not just working in one field you're working in multiple fields. I like that! i'm not always stuck with just one same job.
@friedmystery9123
@friedmystery9123 5 жыл бұрын
I don't know if this intro is new since I came for the zero to hero pentesting but if it is new then congrats and I really like it.
@TCMSecurityAcademy
@TCMSecurityAcademy 5 жыл бұрын
Intro has been around a little bit, just not on the zero to hero vids. Glad you enjoy it!
@sd-sre
@sd-sre 4 жыл бұрын
Thanks for making all this content. For people like myself it's invaluable.
@treyv6804
@treyv6804 4 жыл бұрын
Great to have people like you guys in this world.
@agb2329
@agb2329 2 жыл бұрын
Didn't realize this was an older post. It made excited to see your 4,000 subscribers turned into 286,000!
@SgtArmstrongX
@SgtArmstrongX 3 жыл бұрын
Been watching a few of your vids, as I listened to this one I like how you went on a random rant about your cat! Subscribed
@gmartinez5760
@gmartinez5760 4 жыл бұрын
Just found your video and it gave me an insight into my future career once I am done with my master degree in cyber security network operations.
@TCMSecurityAcademy
@TCMSecurityAcademy 4 жыл бұрын
That's great :)
@daslyn3854
@daslyn3854 2 жыл бұрын
I just signed my offer letter as a Junior Pen tester! So excited to start!
@tracyracy
@tracyracy 2 жыл бұрын
How are you enjoying the job?
@samhoho8113
@samhoho8113 4 ай бұрын
How are you enjoying the job?
@bobthompson2776
@bobthompson2776 3 жыл бұрын
I've watched a few videos and you do a great job of defining Purple Teams as Red + Blue teams, but you never define Red or Blue teams. I presume one team attacks the other's network, but it isn't obvious to someone watching to learn about pentesting with absolutely no background because the boss tossed a post it on their desk late Friday that reads, "Hey, we need the new web app pentested. We're going live Monday." Otherwise, very much enjoying the 15 hour course and learning enough to ask better questions, which is fantastic. Thank you for sharing this.
@Liryn
@Liryn 4 жыл бұрын
Hi, I am here because a friend of mine told me about you. Nice videos.
@louiem5985
@louiem5985 5 жыл бұрын
This was a good video. I think the only thing I'm a little scared of talking to a group of people, plus writing reports. I know that's part of the job of being pentester. Keep up the group videos.
@TCMSecurityAcademy
@TCMSecurityAcademy 5 жыл бұрын
Thanks man. You get used to it as you go :)
@kusapaul2336
@kusapaul2336 Жыл бұрын
Am really enjoying this journey since i started following this channel. God will surely bless Adams in multiple folds. Am just a beginner but looking forward to becoming like him someday. I really admire your career.
@thegripmaster666
@thegripmaster666 3 жыл бұрын
The idea about using drones to survey the site, that's awesome. Never crossed my mind
@CristiVladZ
@CristiVladZ 5 жыл бұрын
Very informative Heath. Thank you!
@TCMSecurityAcademy
@TCMSecurityAcademy 5 жыл бұрын
Thanks as always, Cristi
@orca2162
@orca2162 3 жыл бұрын
Keep up the good work, understand you are now chasing paper, enjoy, have fun
@paulseldn
@paulseldn 4 жыл бұрын
Very informative Keith..Many thanks :)
@karthibalaji3817
@karthibalaji3817 5 жыл бұрын
Great info buddy!
@TCMSecurityAcademy
@TCMSecurityAcademy 5 жыл бұрын
Thank you
@lelouchvibritannia4495
@lelouchvibritannia4495 4 жыл бұрын
This guy's got RGB fans and a Bugatti Chiron in the background... That's how you know this profession makes money.
@TCMSecurityAcademy
@TCMSecurityAcademy 4 жыл бұрын
Well, a miniature model because the real thing will never happen :)
@AniruddhPatil03
@AniruddhPatil03 3 жыл бұрын
@@TCMSecurityAcademy I hope 1 day it will be happen.
@thedarkthrone4699
@thedarkthrone4699 3 жыл бұрын
You do realize you just cursed yourself?
@unite527
@unite527 3 жыл бұрын
@@thedarkthrone4699 he cursed himself a year ago
@bertmeza8673
@bertmeza8673 3 жыл бұрын
The salaries of this field are insane, they range from the 6 figure range and I have met people making up to 200k pending their knowledge and experience in this field.
@kw8538
@kw8538 5 жыл бұрын
LEDs... so hypnotic O.o.O.o
@TCMSecurityAcademy
@TCMSecurityAcademy 5 жыл бұрын
Glad you like them :)
@somelazyimp
@somelazyimp 3 жыл бұрын
I enrolled in College for a Cyber Security degree and I haven’t been sure if it was the degree I’d like to run with but after this, I’m sure that I want to work as a Pen Tester. Thank you so much for this video
@batalorian7997
@batalorian7997 2 жыл бұрын
hows it going so far?
@somelazyimp
@somelazyimp 2 жыл бұрын
@@batalorian7997 well so far I’ve had to delay multiple times from catching COVID, I have COVID again currently 😅
@grayson1200
@grayson1200 Жыл бұрын
Thanks for a great video! Super informative!
@BoBch97
@BoBch97 4 жыл бұрын
Great video with lots of useful info. Quick question from someone who's interested in starting out - can you dive straight into testing web apps, without any previous pen testing experience, or is it better to firstly start off with networks?
@TCMSecurityAcademy
@TCMSecurityAcademy 4 жыл бұрын
Yes. Web apps are their own separate thing. A lot of similar methodology, but the tools and exploits vastly differ. There are people who only know how to do web apps, for example
@davyrogersuk
@davyrogersuk 5 жыл бұрын
Beautiful... this was a super good video.
@TCMSecurityAcademy
@TCMSecurityAcademy 5 жыл бұрын
Thank you, Davy!
@danieltr94
@danieltr94 4 жыл бұрын
I've been a System Administrator for 7 years with the DoD and I was looking on changing over to become a Pentester. It is something I've always had a passion for growing up and was wondering where I should start in regards of getting a job. I have A+, Sec+ and Linux+.
@niclorenzo2603
@niclorenzo2603 4 жыл бұрын
Great video bro!
@ladyhaze7016
@ladyhaze7016 2 жыл бұрын
You’re living my dream life!
@BoricuaFez
@BoricuaFez 4 жыл бұрын
Great video! A lot of good information. Recently purchase Burp Suite to expand my technical skills.
@TCMSecurityAcademy
@TCMSecurityAcademy 4 жыл бұрын
Awesome. It's such a great tool!
@omermujtaba6511
@omermujtaba6511 5 жыл бұрын
Hey awsome video 👍 Can you guide us on the certs and their importance?
@TCMSecurityAcademy
@TCMSecurityAcademy 5 жыл бұрын
Thank you. Check out this video for that: kzfaq.info/get/bejne/g7NnpLOfr7nSfIU.html
@dannylee9639
@dannylee9639 3 жыл бұрын
Simply put... Thank you
@h1-hackermater
@h1-hackermater Жыл бұрын
thnks you so much! it was motivational for me and also informative too. Great video
@amandas.7546
@amandas.7546 5 жыл бұрын
Great video! Do you have any advice as to how to set up a resume for a starter in this career? I did my masters in Digital Forensics and wrote a sample thesis for WiFi Penetrating Testing. I don’t exactly have to much work experience in this career, but everyone (those who are in this field of work) keeps telling me I am a great candidate for this career.
@rss235
@rss235 3 жыл бұрын
This is very helpful!
@optimisticblackorange
@optimisticblackorange 3 жыл бұрын
Thanks for the Vid! I have just started programming and currently learning python, I have gone through quite a few tutorials and a lot of people have been suggesting to me that I should start a project asap so that I can try and apply what I have learnt so far into making something practical. I have been thinking for a while now whether I could start a project related to cyber security as this is the field that I am more interested in. What do you think? If you think that it's not half bad of an idea, would you mind suggesting a couple of feasible projects ideas? Thanks Cyber Mentor!
@jacoels2712
@jacoels2712 5 жыл бұрын
Great video, If you need a idea maybe focus on making that magical connection from external to internal networks, I understand what you said about credential stuffing and possibly coming over a vpn but if that is not possible what do you do social engineering or physical pentesting? Try and expand on that? I am not sure if I missed the video, I still need to watch all of your training video.
@TCMSecurityAcademy
@TCMSecurityAcademy 5 жыл бұрын
Thanks for the ideas :) I do have a couple of videos discussing credential stuffing and alternative ideas. In most assessments for an external, social engineering is out of scope. That and physical pentesting fall under their own category unfortunately.
@jacoels2712
@jacoels2712 5 жыл бұрын
@@TCMSecurityAcademy I am in charge of our cybersecuriy and wow everything can be so overwhelming, I am studying evey min I can if I am not busy responding or investigating alerts from our SIEM/AV/Firewall your vids is helping allot.
@jacoels2712
@jacoels2712 5 жыл бұрын
Your Purple teaming idea has opened a new way of thinking.
@TCMSecurityAcademy
@TCMSecurityAcademy 5 жыл бұрын
Thank you for the kind words sir. I really appreciate it
@Neox9114
@Neox9114 4 жыл бұрын
do you travel a lot to do on location assessments? Great Vid Btw!
@TCMSecurityAcademy
@TCMSecurityAcademy 4 жыл бұрын
No I work remote unless absolutely impossible to do so
@jb-hz9of
@jb-hz9of 4 жыл бұрын
Hey, what a great course you have on Udemy. With you working remotely what sort of machine spec do you send your client and what sort of software do you have to call home on? Do you work on the remote machine or do you proxy chain your traffic from your machine to the remote machine?
@Hezz3y
@Hezz3y 4 жыл бұрын
The physical part of it sounds like a lot of fun I’d take those jobs
@Andrei-ds8qv
@Andrei-ds8qv 3 жыл бұрын
17.00 you made me laugh so much with the consideraions about the cat 😂😂😂
@skeppy8925
@skeppy8925 3 жыл бұрын
Going to a cybersecurity bootcamp soon, and after gaining my experience + certs + even more learning, I hope I can become a Pen Tester. Love the video
@moodz271
@moodz271 2 жыл бұрын
We need a update
@skeppy8925
@skeppy8925 2 жыл бұрын
@@moodz271 Well I finished my bootcamp in November 2021, and I just passed my Sec+ cert this week. Looking at this comment I left months ago made my day from the progress I've made since then lol
@tracyracy
@tracyracy 2 жыл бұрын
@@skeppy8925 !!!! Congratulations
@awesomemikeinc
@awesomemikeinc 2 жыл бұрын
@@skeppy8925 congratulations bro. Hope the journey has been enriching?
@boblegree1213
@boblegree1213 5 жыл бұрын
Thanks for the video, i also read your story and found it fascinating how you left accounting to get into IT. Very motivational since i'm in a similar fork in my life, and am about to pull the trigger on switching careers. You said you landed a help desk job by convincing them you're worth training; any tips on what certifications or skills i should acquire in order to land a help desk job? I don't have anything on my resume to show for (construction work for 10 years), but i have a lot of time and dedication.
@TCMSecurityAcademy
@TCMSecurityAcademy 5 жыл бұрын
Thanks. I didn't have any skills or certifications. Just confidence that I could do the work, which I think helped. You have to find someone willing to take a chance on you. If you want a leg up, the A+ will help immensely with your basic computer knowledge and troubleshooting skills. It will also help land an entry level job.
@boblegree1213
@boblegree1213 5 жыл бұрын
@@TCMSecurityAcademy got it, people were saying the a+ is unnecessary but for someone with no experience i think its better than nothing. And i know every jobs has its hardships, but are you satisfied with choosing cyber security in the IT field, or would you take a different path looking back on it
@GeekyGizmo007
@GeekyGizmo007 4 жыл бұрын
Do you vpn into a shared workspace from home and then do assessments into client networks from there? Or do you use your own tools on your rig and vpn into client's network(for inteneral) and do your assessments?
@TCMSecurityAcademy
@TCMSecurityAcademy 4 жыл бұрын
No either the client whitelists my IP (external testing) or I send a machine and remote into it. The machine automatically phones home on a VPN.
@donniedarkodies
@donniedarkodies 5 жыл бұрын
Hey dude, since you took the WAPT course lemme ask you something! I just started my journey trying to change careers and I'm doing the PTS while also following your series and reading a book here and there. Ideally I'd love to do both PTP and WAPT afterwards, but money and time being an issue, what do you reckon would be the best next step? Web apps pentesting seems a bit more promising money-wise, but being well rounded is also pretty nice. PTP apparently goes into web pentesting as well, but I'm not sure how deep or how the two courses overlap. Maybe taking the PTP and reading The Web Application Hackers Handbook is enough to kickstart a career? Anyway, haha, I'm writing too much already. Would love to hear your ideas! Thanks :)
@TCMSecurityAcademy
@TCMSecurityAcademy 5 жыл бұрын
Howdy. Start with PTP and build a hacking foundation first. The web app can come later. I think doing PTP + WAHH is a great idea. If you're passionate about web apps after that book, give the WAPT a go. It's a fantastic course, but definitely get some general pentesting chops first.
@deansmith2012
@deansmith2012 5 жыл бұрын
Yeah I agree with TCM, I passed my PTS and then moved straight on to OSCP and just grinded and eventually passed. I'm now doing PTP and find it sooooooo useful! There's so much in PTP that can be put to use in real pentest engagements
@sqari4536
@sqari4536 4 жыл бұрын
I just recently started my course in cyber security, not much fun just all theory. I really like what you do and what would your advice be for starter pen tester?
@ampzeehd740
@ampzeehd740 4 жыл бұрын
At the external penetration section you are talking about network pentesting. Does that mean that you are trying to break in or find vulns on wi-fi networks? Or do you mean like a server? Can a server be considered as a network? Btw nice and informative video :)
@justinheehaw
@justinheehaw 4 жыл бұрын
I'm getting into your Udemy course!
@x0rZ15t
@x0rZ15t 3 жыл бұрын
Thanks a bunch!
@MrRiddler12a
@MrRiddler12a 8 ай бұрын
Amazing the difference 4 years make
@justinboudreau6362
@justinboudreau6362 4 жыл бұрын
Subscribed, SMASHED the like button.
@TCMSecurityAcademy
@TCMSecurityAcademy 4 жыл бұрын
Welcome :)
@jahangirakbar4524
@jahangirakbar4524 3 жыл бұрын
After one year now he have 141k Subscribers. Great 👍
@harishsharma9621
@harishsharma9621 4 жыл бұрын
On the video with Chuck you mentioned that you worked at a help desk early on in your career, how long did you do that for?
@TCMSecurityAcademy
@TCMSecurityAcademy 4 жыл бұрын
About a year and a half. If you're curious about my journey into infosec: veteransec.com/2018/09/11/how-i-landed-my-first-infosec-job-in-a-competitive-market-advice-and-takeaways/
@chrisamelio1
@chrisamelio1 5 жыл бұрын
I’ve always been interested in pentesting and cyber-security overall, I’d say it’s my passion and know a little bit of it. I went to college for IT Engineering but I decided to drop it after 3 years since it was not giving me the tools I needed and just felt like I was wasting time I could spend learning new stuff or working and saving money, plus it was outside the US and it was not the level of knowledge I thought it would be. It’s been almost a year, I’m in the US, I’m 24, I have a decent job in Marketing as a PPC Analyst but I still think about it on a daily basis if I should still aim for a job like this. My question is, do you think it’s too late to get in the field? Do I need a degree or can I work in strong certifications to get a good job in it?
@TCMSecurityAcademy
@TCMSecurityAcademy 5 жыл бұрын
It's never too late. Check out my story: veteransec.com/2018/09/11/how-i-landed-my-first-infosec-job-in-a-competitive-market-advice-and-takeaways/. I left accounting at 26 and worked my way into cybersecurity. I make close to triple now in 3 years. If you work hard and stay motivated, nothing can get in your way. A degree doesn't matter if you have the knowledge.
@reda4632
@reda4632 5 жыл бұрын
It's Never too late
@bakemonodesu103
@bakemonodesu103 5 жыл бұрын
...Never
@MrKnockout66
@MrKnockout66 5 жыл бұрын
@@TCMSecurityAcademy do you have a degree? Certs? I am just getting started and am wondering what is the best path
@vexifyonipad7281
@vexifyonipad7281 4 жыл бұрын
Would you say you regret going to college was a waste of time and money?
@vinodvasudevan9638
@vinodvasudevan9638 4 жыл бұрын
super video sir thank you
@TCMSecurityAcademy
@TCMSecurityAcademy 4 жыл бұрын
You're welcome!
@giorgiocelestre6801
@giorgiocelestre6801 2 жыл бұрын
Hi, thank you for your awesome content, is your course for ethical hacking (the 25hours one) ok for completely newbies, please?
@rjcarmineglorso7323
@rjcarmineglorso7323 4 жыл бұрын
Yesss Ava is so cute! =^..^= Great video, thanks
@TCMSecurityAcademy
@TCMSecurityAcademy 4 жыл бұрын
She's the best haha
@chicconumber1
@chicconumber1 4 жыл бұрын
Hi, I'm an aspiring Pen-tester. I would like to know more about Penetration Testing job. Do you usually work alone or do you have a pentest team. One more question, as a pen-tester do you have to know how to pen-test into everything... lets say, the network, software, system, people (social engineering) or is this divided into the teams?
@markooo4429
@markooo4429 5 жыл бұрын
Excellent video. What is the day like when you don't have an engagement, what do you do, do you get paid for those days or only per engagement?
@TCMSecurityAcademy
@TCMSecurityAcademy 5 жыл бұрын
Ah, I knew I left something out! We call that "bench time". Yes, we still get paid. Perfect time to write a blog, study for a cert, read some news, build a new tool, etc. :)
@aviralrastogi
@aviralrastogi 5 жыл бұрын
@@TCMSecurityAcademy or make a cool video helping others!
@TCMSecurityAcademy
@TCMSecurityAcademy 5 жыл бұрын
That too :)
@uti894
@uti894 2 жыл бұрын
Can you switch from software testing to penetration testing? What would be the first steps, courses or is there a course that covers the main subjects and includes certification?
@leonardohernandez4538
@leonardohernandez4538 4 жыл бұрын
I may have missed it but how important is Wireshark or a packet analyzer to your assessments? I couldn't imagine not firing Wireshark up when doing an internal pentest at least
@nelk28
@nelk28 5 жыл бұрын
hey great content in your channel new sub here!...one question im gonna take your zero to hero course but i'm trying to hackthebox do u think i can get it? or i need to study more from some books? ....i'm gonna try to do this as my main job and thanks again!....sorry for my english i'snt my native language saludos from venezuela!
@TCMSecurityAcademy
@TCMSecurityAcademy 5 жыл бұрын
Put in the work and anything is possible my friend
@AwesomeMrT-007
@AwesomeMrT-007 Жыл бұрын
Hi. Excellent video and info; Appreciated. I am in a very high paying IT field but want to transition in to CyberSec and create a company to do so (like I have done in the afore-mentioned field). However the bottom line dollar amounts will dictate if it is feasible. - Could you please give us an idea of what the industry average is for the 40hr assignment you mention (what range is feasible to charge the client) - how does one find clients initially?
@dustyboyle
@dustyboyle 5 жыл бұрын
Great video
@TCMSecurityAcademy
@TCMSecurityAcademy 5 жыл бұрын
Thank you :)
@dankmemes7658
@dankmemes7658 5 жыл бұрын
out of curiosity is penetration tester the same thing as a security engineer?
@TCMSecurityAcademy
@TCMSecurityAcademy 5 жыл бұрын
Titles are kind of overrated. It's more about the job description. Typically, no. However, I know people working as security engineers who do pentesting.
@DDBAA24
@DDBAA24 5 жыл бұрын
Alright this is definitely not the question I want to ask you but when you mention your Alfa card, you also say GPS dongle ? I just wanted to know the uses of a GPS dongle on an internal/external pentest ? I still have another important question for you , its about my career. Is there an inbox where I can send you a short message ? Its not crazy personal or anything I just do not feel comfortable putting information like that on KZfaq. Thanks
@fightforfreedom21
@fightforfreedom21 2 жыл бұрын
Hi, what type of certificate do you recommend to take and if they are necessary
@sureshchand1131
@sureshchand1131 4 жыл бұрын
Your cpu is mind blowing and terrible monster thing awesome
@andyd1805
@andyd1805 3 жыл бұрын
Damnnn Black and Blue Bugatti Chiron huh, mans out here FLEXIN
@cl1ckb4it91
@cl1ckb4it91 5 жыл бұрын
Nice vid!
@TCMSecurityAcademy
@TCMSecurityAcademy 5 жыл бұрын
Thank you :)
@crypto9459
@crypto9459 3 жыл бұрын
Appreciated.
@r00tginger
@r00tginger 4 жыл бұрын
With you working from home primarily how do you go about wireless assessment? Do you deploy a machine and network card to the client site and remote into it?
@TCMSecurityAcademy
@TCMSecurityAcademy 4 жыл бұрын
I usually go on site for a wireless, but we are starting to figure out that even that can be done with a deployed machine. :)
@onlylikenerd
@onlylikenerd 4 жыл бұрын
Thank you for this video. I'm a junior in University majoring in Cyber security. This year I plan on (hopefully) getting an internship. My ultimate goal is to be able to work from home, so hearing that's what you do is reassuring. Do you set your own schedules? I'm more of an early bird so I like to begin my work around 4 a.m or 5.
@TCMSecurityAcademy
@TCMSecurityAcademy 4 жыл бұрын
I set my schedule around my clients, which is pretty flexible
@bebetonseyani2801
@bebetonseyani2801 2 жыл бұрын
@@TCMSecurityAcademy looking for a mentor
@youtrip1037
@youtrip1037 2 жыл бұрын
what laptop do you recommend for a part time pentester and cyberseucurity professional
@Zerael071
@Zerael071 2 жыл бұрын
For someone starting off in school on this path, do you think it’s better to have a windows computer or MacBook?
@Actechnologys
@Actechnologys 2 жыл бұрын
Bro make a video on bsc cybersecurity and it's syllabus
@grippysockgf
@grippysockgf 4 жыл бұрын
Working on my CCT and CCNA, also an A+ cert then some python and a degree in Network Administration, I really like the idea of trying to crack stuff... what should I do next education wise
@josephblanchard8099
@josephblanchard8099 4 жыл бұрын
DonGaming phd in theoretical physics
@psychorockz123
@psychorockz123 4 жыл бұрын
Could you please share the checklist that you use?
@jpineda79
@jpineda79 2 жыл бұрын
Hi, as beginner in cybersecurity, how do you setup your laptop? How do you secure it from being hacked?
@jaydeecrous4404
@jaydeecrous4404 5 жыл бұрын
Hey man i had to drop out in highschool becuase of personal reasons i dont have my grade 8 or amything im supposed to be in grade 10 this year and i want to become a pen tester its always been a goal of mine i bought 2 courses of of udemy and i was wondering am i able to get a job as a pentester without school ... if so i want to do it online cuz i live in south africa and there arent alot of jobs here so could i work overseas from here in sa and where do i look for jobs its alot to ask im just wondering and also do i have to freelance and look for clients or do i work for a company
@TCMSecurityAcademy
@TCMSecurityAcademy 5 жыл бұрын
Is it possible? Sure. It's going to be an uphill battle though. You're going to have to prove you're knowledgeable on the topic and have the drive to stay focused and finish tasks at hand. School is only partly for education. It also shows you're able to finish what you started. I don't know your situation, so just focus on being the best version of you that you can be. Start working on Hack The Box and other cheap resources. If you can get to a really high level, even Omni, you might get taken more seriously through their job boards. That's just one thought path. There are many avenues in, but they all consist of hard work. Remote is also possible with a ton of patience and good skill level. It will be hard to obtain as a first job, but it's possible because I did it :)
@jaydeecrous4404
@jaydeecrous4404 5 жыл бұрын
@@TCMSecurityAcademy thanks man i was worried i have money saved up for couses i just wanted to know if its possible aprecuate it man im subbed now :)
@jaydeecrous4404
@jaydeecrous4404 5 жыл бұрын
A video idea maybe is to show wbat is required to be a pentester what knowledge is required i jave been messing with linix since i was 13 its just a idea if youre interested
@TCMSecurityAcademy
@TCMSecurityAcademy 5 жыл бұрын
@@jaydeecrous4404 You mean....like this one? kzfaq.info/get/bejne/g7NnpLOfr7nSfIU.html :)
@aleksandarrikic9208
@aleksandarrikic9208 3 жыл бұрын
Hi there! Im currently finishing up my comptia security+, looking to get into entry level security first. I always wanted to be pen tester. Im sure once I get experience in security I will move forward into ethical hacking. Question: my goal is to work on remote access and travel the world. Is that possible or difficult to achieve as security analyst or ethical hacker? Thx in advance.
@Haidderispro
@Haidderispro 2 жыл бұрын
Bro this is the most relatable comment I've seen in a long time. I'm literally finishing up my security+ exam and planning on taking the test in the next 2-3 weeks. And I'm planning on getting into entry level security and am Interested in pen testing as well. I also have the same dream/plan to work remotely while traveling to different countries. Did you figure out more about this and do you know how it works?
@aleksandarrikic9208
@aleksandarrikic9208 2 жыл бұрын
@@Haidderispro I actually got the job in cyber security 13 months ago. So far they don't let me work remotely due to security reasons. At this point I am not sure if it's possible to work remotely in cyber security somewhere else. I think coding is easier to work on remote access.
@Haidderispro
@Haidderispro 2 жыл бұрын
@@aleksandarrikic9208 Thanks for the response and I was thinking that could be a possibility. I know people who work remotely but don't know if they can work outside the country. Maybe its dependent on the type of company though.
@aleksandarrikic9208
@aleksandarrikic9208 2 жыл бұрын
@@Haidderispro on top of everything cyber security is very stressful and boring. be well aware if you wanna step into this.
@maheshkumarkaushik7582
@maheshkumarkaushik7582 2 жыл бұрын
Love from india
@wambamcamcam
@wambamcamcam Жыл бұрын
I threw all your recommended books into an Amazon shopping list. Working on my eJPT and I feel like there's a lot I still just don't know. Just tired of being n00b and I want to be at least decent before my 30th bday... Now my only question is whether I should get all physical copies or should I get a Kindle and put them on there...?
@idk-pf8du
@idk-pf8du 4 жыл бұрын
Would you say you enjoy your job? Do you work for a company that contracts you to other businesses? Like do you have to travel to businesses around the area
@TCMSecurityAcademy
@TCMSecurityAcademy 4 жыл бұрын
I work for myself now and I did enjoy my job at the time of the video. Companies pay to do pentest work as a consultant not a contractor (in my work experience). I did not travel much and now only travel if the client wants me there. Usually they dont want to front that bill :)
@Liryn
@Liryn 4 жыл бұрын
Do you have any video about Mobsf?
@ob34915
@ob34915 4 жыл бұрын
very handy thx
@TCMSecurityAcademy
@TCMSecurityAcademy 4 жыл бұрын
you're welcome!
@user-pt5ty6lf2g
@user-pt5ty6lf2g 3 жыл бұрын
Too bad the coupon has expired. Would love to enroll in your Udemy course to learn the hacking techniques
@notawolf494
@notawolf494 4 жыл бұрын
What about like physically pen testing (really any pen testing/cyber security position that doesn't have you sitting at a desk all day).. is there a position that mostly does that?
@Ickytreyyy
@Ickytreyyy 3 ай бұрын
I think that’d be red teaming tbh
@voidhorizon7406
@voidhorizon7406 3 жыл бұрын
For physical Assessments, social engineering, won't the workers know who you are or is it a freelance job?
@hxdaro
@hxdaro 4 жыл бұрын
How much traveling does the average pentester do? I'd want to be a consultant for different companies!
@Eddini
@Eddini 3 жыл бұрын
What's your favorite password cracker ? I'm definitely no hacker but I here Cain and Abel is great as you can test for a MITM attack, arp poisoning ...etc. Also what DoS [Denial of Service] tool do you prefer most to see if a client has good DoS mitigation ?
@sd3116
@sd3116 3 жыл бұрын
What's your opinion on becoming a pen-tester with automated pen-testing emerging. Companies would want to purchase a.i testing as it's faster, makes less mistakes than humans and is a 1 off cost in some cases. Is the future of pen-testers doomed like factory workers? Software from companies like pcysys/netsparker
@trippymc5545
@trippymc5545 2 жыл бұрын
what qualliflecations does it requier
@Magic_Mann
@Magic_Mann 4 жыл бұрын
So i want a career in this what steps as far as courses or taking classes that i need
@Kas_Styles
@Kas_Styles 5 жыл бұрын
Do you do any risk assessments? If so can you talk about them
@TCMSecurityAcademy
@TCMSecurityAcademy 5 жыл бұрын
Yes, but it's really rare. The ones I have done were checklists provided by a client for compliance purposes. You fill out the checklist like an audit. We also sometimes do console assessments where we review security postures (take a firewall for example) or cloud assessments, which also assesses security posture. These are all few and far between, so I dont count them as day to day. Some shops might not do them at all.
@Kas_Styles
@Kas_Styles 5 жыл бұрын
@@TCMSecurityAcademy More people should do them. Especially osint risk assessments. Osint is one of the first things I go to for pretty much everything. I want to be a pentester (social engineer) after I get done with school. (I'm doing my AAS in network engineering then hopefully a BAS in Cybersecurity at my school.)
@LinkWave290
@LinkWave290 4 жыл бұрын
2:35 Would a security researcher/exploit developer follow a similar 'methodology'?
@git-tauseef
@git-tauseef 4 жыл бұрын
Your course on udemy on ethical hacking the preview part is not working,.
@joaquimmenezes7396
@joaquimmenezes7396 4 жыл бұрын
100k very close
@Ps3JessicaBr
@Ps3JessicaBr 2 жыл бұрын
I think I saw you in a Linux course, are u a teacher? The content was amazing I’m pretty sure it was you XD
Why You Shouldn't Be an Ethical Hacker
12:22
The Cyber Mentor
Рет қаралды 190 М.
How To Get CEH Certification ? #shorts
0:54
Bitten Tech
Рет қаралды 30 М.
Luck Decides My Future Again 🍀🍀🍀 #katebrush #shorts
00:19
Kate Brush
Рет қаралды 4 МЛН
1❤️#thankyou #shorts
00:21
あみか部
Рет қаралды 88 МЛН
Is it Cake or Fake ? 🍰
00:53
A4
Рет қаралды 19 МЛН
I'll Let Myself In: Tactics of Physical Pen Testers
44:56
Wild West Hackin' Fest
Рет қаралды 2,8 МЛН
What to Expect in an Ethical Hacking Interview
14:05
The Cyber Mentor
Рет қаралды 28 М.
Day in the Life of a Cybersecurity Student
5:28
Grant Collins
Рет қаралды 3,8 МЛН
I Gave a Hacker 28 Days To Ruin My Life
21:37
Zac Alsop
Рет қаралды 2,2 МЛН
An Illustrated Guide to OAuth and OpenID Connect
16:36
OktaDev
Рет қаралды 557 М.
How to Be An Ethical Hacker: 2023 Edition
57:09
The Cyber Mentor
Рет қаралды 84 М.
Penetration tester Jayson E. Street helps banks by hacking them
5:38
Tomorrow Unlocked
Рет қаралды 2 МЛН
💅🏻Айфон vs Андроид🤮
0:20
Бутылочка
Рет қаралды 568 М.
После ввода кода - протирайте панель
0:18
Разряженный iPhone может больше Android
0:34
APPLE совершила РЕВОЛЮЦИЮ!
0:39
ÉЖИ АКСЁНОВ
Рет қаралды 3,1 МЛН
i like you subscriber ♥️♥️ #trending #iphone #apple #iphonefold
0:14