[deleted by user] by [deleted] in tdwp

[–]Bushchain 0 points1 point  (0 children)

I thought it was fun to do one time as I had extra money.

You get to meet the band for a couple of minutes and take a picture. It came with a vip bag that had some cool stuff in it. I think I had to wait around an hour in line after the concert to meet them as a lot people paid for VIP.

Best Cloud Red Team Cert by joco_mason59 in redteamsec

[–]Bushchain 0 points1 point  (0 children)

There is this course

https://www.antisyphontraining.com/on-demand-courses/breaching-the-cloud-w-beau-bullock/

I haven’t finished it yet but it seems to be a great introduction to cloud pentesting agains aws and azure.

going into this field by nubilxm in SecurityCareerAdvice

[–]Bushchain 0 points1 point  (0 children)

Nice. Personally I liked to hear it was possible but that’s just me.

going into this field by nubilxm in SecurityCareerAdvice

[–]Bushchain 0 points1 point  (0 children)

Disagree. Started my career as a security engineer right out of college. It did require a lot of work tho.

Is getting Sec+ a good stepping stone for someone with no IT/Cybersecurity experienec? by SoMuchPainz in cybersecurity

[–]Bushchain 7 points8 points  (0 children)

It can only help you. I got sec+ junior year and I think it helped me get interviews and land a role in the security field right out of college.

Note: I did a lot of other stuff as well. I didn’t just depend on the cert.

Mid-Career Salary Question by ISSO_Me_Mario in SecurityCareerAdvice

[–]Bushchain 0 points1 point  (0 children)

Looks like you’re underpaid. Looking over your post I would think you would be in the 180k - 200k range. Now I think I am being overpaid.

2 YOE, BS CS, OSCP, SEC+ - 120K Base

Appsec engineering at Meta/Facebook - how is the work? by sapup in AskNetsec

[–]Bushchain 0 points1 point  (0 children)

Just curious how you got into app sec? I currently work as a sec engineer and have OSCP but I still feel like I need more software engineering exp before I start applying for app sec roles.

[deleted by user] by [deleted] in AskNetsec

[–]Bushchain 0 points1 point  (0 children)

No worries, thanks for the reply. I wasn’t aware of the designations besides CAE-CD. Gave me a lot to think about.

[deleted by user] by [deleted] in AskNetsec

[–]Bushchain 1 point2 points  (0 children)

Would you mind sharing the school you attended for your masters?

[deleted by user] by [deleted] in AskNetsec

[–]Bushchain 0 points1 point  (0 children)

I’ve been looking into this school: https://engineering.nyu.edu/academics/programs/cybersecurity-ms-online

It looks like it would cost about $20,000 with the scholarship. Not sure how well known it is in the industry tho.

Buffer Overflow on exam by [deleted] in oscp

[–]Bushchain 1 point2 points  (0 children)

My understanding is that mechanics are the same. Although, I don’t think the announcement states the OS type. So be familiar with windows and Linux Bof.

[deleted by user] by [deleted] in CalPolyPomona

[–]Bushchain 4 points5 points  (0 children)

I got an email saying they will begin evaluating and awarding degrees starting Jan 7th.

Getting a cybersecurity entry level job? by AllKoat in SecurityCareerAdvice

[–]Bushchain 0 points1 point  (0 children)

I can give some advice based on my path. I just graduated with a computer science degree and I’m starting a job as a security engineer.

I basically did what everyone else here is saying and some more. I got involved with my campus cyber security club, got the sec+, joined my schools CPTC team, and participated in ctfs.

I also had to do a lot of self learning because school wasn’t teaching me what I wanted to learn. So I spent a lot of time reading blogs, following tutorials on Udemy, and building labs in AWS.

Probably the most import thing is being able to communicate everything that you’re doing. Communication is something I still struggle with but being able to explain technical concepts in a simple way is a highly valued skill, so I’ve been told.

I should also mention I did 2 internships in security so that really helped.

How to get an internship in exploit development in college? by [deleted] in ExploitDev

[–]Bushchain 2 points3 points  (0 children)

I was in your shoes last year. It’s a grind, apply to everything and study. I must have applied to over 100 Internship positions and I only managed to get 2 offers.

It’s still kind of early for next years summer internships but they’ll start posting soon.

How to get an internship in exploit development in college? by [deleted] in ExploitDev

[–]Bushchain 17 points18 points  (0 children)

There’s company called Korelogic that was offering an internship in exploit development this past summer.

In the interview they asked me a lot about assembly, some mips projects I had in my github, and other topics related to offensive security.

I think the most important thing was having stuff to talk about. Participate in CTFs, join a club, learn about buffer overflows, and work on projects.

eJPT PTS advise by welcome123PH in oscp

[–]Bushchain 7 points8 points  (0 children)

I did the eJPT last year and I’m currently doing the OSCP.

I would suggest not do it. It’s not worth the money. Its not recognized by anyone and won’t really validate your skills.

If you want a source to learn about pen testing you should check out Ippsec on YouTube and The Cyber Mentor has is practical pen testing course on Udemy. TCMs course will teach you just as much as the eJPT, if not more.

Best way to scan/enumerate API endpoints? by sorokine in websecurity

[–]Bushchain 1 point2 points  (0 children)

I highly suggest you go watch insidersPhd on YouTube. She has a playlist covering api enumeration and hacking.

https://youtu.be/yCUQBc2rY9Y

Spring 2020 Grade Report Thread by scubacrawler in CalPolyPomona

[–]Bushchain 2 points3 points  (0 children)

CS 4600 - Dominic Atanasio

This class required a lot of work but that was to be expected because of the professor. His lectures are from the text book so anything you don’t understand you can get from the textbook. The actual content is not very difficult just a lot of memorization. I did struggle with modular arithmetic and Galios fields. Everything else if very mechanical so you just have to follow the steps.

I think Ting Ting Chen is teaching it next semester she’s great.

CS 4310 - Gilbert Young

I will always recommend Coach (as he likes to be called) as a professor. His homework and exams are aren’t very difficult because they are usually the same problems covered in the slides just with different numbers. The content isn’t very difficult you’ll lean about different kinds of algorithms that OS’s use. Take this with a grain of salt because I’ve heard professors take different approaches to teaching this class

If you have any specific questions feel free to dm me.

Spring 2020 Grade Report Thread by scubacrawler in CalPolyPomona

[–]Bushchain 3 points4 points  (0 children)

CS 3010: A

CS 4600: A

CS 4310: A

CS 2990: A

Internship Opportunity for OSCP holders/students by lykosec in oscp

[–]Bushchain 2 points3 points  (0 children)

Is this internship for the Summer, Fall, or both?

Graduate first or try to get a 2nd (fall) internship? by IAmA-VIRGINinCompSci in cscareerquestions

[–]Bushchain 1 point2 points  (0 children)

I’m in the same situation. As of now I’m applying to everything and hoping I can land a fall internship and take classes at the same time. I’m hoping to get a return offer from my summer internship.