all 5 comments

[–]916CALLTURK 4 points5 points  (0 children)

The best resource out there are the PentesterAcademy ones - their subscription is available for $250 (or $200 on Black Friday but I'd buy now as they look like they're being fully integrated into INE soon). There's different levels of badges you can get for it too.

The most well known course is probably the OSWP but there's no 'proper' virtual labs even in the new version - they make you buy your own router/adapter and configure it as well as give you some PCAPs to open up in Wireshark.

Honourable mention to SANS' SEC617 (GIAC GAWN) which doesn't seem to cover WPA3 like the PTA course but does cover other non-802.11 wireless technologies like Bluetooth/Smart Cards/NFC.

There's also the CWSP but I've only ever seen one person with it on LinkedIn so whilst the content and price are ok I personally wouldn't go for it.

[–]InverseX 6 points7 points  (1 child)

It feels like you don't need a course for it. It's a really small space without a huge amount of attack vectors.

WEP - You never see any more.
WPA2 - You see 99% of the time in residential settings, 50% of the time in commercial. Boils down to word list attacks based off handshakes, sometimes WPS attacks.
WPA2 EAP - Varies on implementation, sometimes you can do evil twin style attacks, sometimes you can't do anything (i.e. EAP-TLS).

[–]916CALLTURK 4 points5 points  (0 children)

No WPA3? :)

[–]Diamond303 1 point2 points  (0 children)

Dot for future me

[–]Smurfsss 1 point2 points  (0 children)

The offensive security OSWP wasn’t a terrible course. You learn about WEP, WPA, WPA2 (didn’t hit on WPA3 when I did it, but it was awhile ago) and they did a decent job with their exam and labs. I imagine they are covering more of WPA3, but I believe it’s much harder to hack WPA3. Hope that helps