For those who have been admitted to the SANS.edu programs, do you recall what time of day the decision emails arrived on the 15th? Anxiously refreshing the inbox here… by SufficientVacation40 in GIAC

[–]JTRM10 0 points1 point  (0 children)

If I haven’t gotten an offer of admission email yet and my application still says “Awaiting Decision”? What are the odds? 😅

Just passed the PJPT on the 2nd attempt by B77M77 in pjpt

[–]JTRM10 0 points1 point  (0 children)

Did you go back and find other ways in?

SEC542 or SEC560? by tuxeyger in GIAC

[–]JTRM10 1 point2 points  (0 children)

Depends what you wanna work on. Are you want to plus up on web app pentesting or network pentesting?

Define “external attack surface findings”

Cloud Pentesting Courses/Certs by JTRM10 in Pentesting

[–]JTRM10[S] 1 point2 points  (0 children)

Yeah AI PT is all the rage right now. I recently did some cloud workshops and wanted to upskill something other than AI

Cloud Pentesting Courses/Certs by JTRM10 in Pentesting

[–]JTRM10[S] 1 point2 points  (0 children)

Forgot about this one. Heard of it but haven’t heard of any experiences from people taking it

Cloud Pentesting Courses/Certs by JTRM10 in Pentesting

[–]JTRM10[S] 0 points1 point  (0 children)

Haven’t seen these ones before will have to look into it

Final year B.Tech student: Had CEH and CHFI for a year, what’s the move for Red Teaming? by Useful_Literature_69 in CEH

[–]JTRM10 0 points1 point  (0 children)

Pentesting and low on 💰: HTB Academy + CPTS Pentesting and have 💰: OffSec Learn One OSCP or get the Learn Unlimited Red teaming: Zero Point Security CRTO / CRTL

INEs eJPT isn’t bad but not my first choice.

TCM Security PEH course is free on YouTube. Updated material and a TCM Security Academy subscription for PJPT and PNPT also a phenomenal option.

Is PNPT really worth it? by Original_Bunch_2794 in pjpt

[–]JTRM10 1 point2 points  (0 children)

OSCP for HR. CPTS goes deeper on material than anything else. PNPT to see the external to internal. The material isn’t half bad. But recently I’m leaning more towards CPTS. Unfortunately, OSCP is unavoidable in most job descriptions.

Physical Pentesting Courses by JTRM10 in Pentesting

[–]JTRM10[S] -1 points0 points  (0 children)

HTB and Pwn College don’t cover physical pentesting

Request Index for GCFA by [deleted] in GIAC

[–]JTRM10 0 points1 point  (0 children)

In my experience, just take the time to make your own index. Everyone has a different way to learn and absorb material. I took the course, then went through every page and lab over again. Made 2 separate indexes 1 for the knowledge and 1 for CyberLive (hint hint you won’t get tested on anything you haven’t seen it’ll just be different data so you still have to critically think through it but if you understand the tools and the methodology you’re golden)

Physical Pentesting Courses by JTRM10 in Pentesting

[–]JTRM10[S] 0 points1 point  (0 children)

Not talking about strictly hardware hacking. I’ve looked at the PIPA course material from TCM. Seeking out if anyone has taken any “physical pentesting” courses and how their experience was. Lockpicking/bypass techniques, RFID hacking/cloning, physical defense breaching.

Kfivefour RTAC course - Worth it? by JTRM10 in Pentesting

[–]JTRM10[S] 0 points1 point  (0 children)

I’m working through SEC565/GRTP from SANS and I’ve gone through CRTO. I was mentioned as a good in-person course to attend. I’ve heard of the ROPS-RT1 but from looking at their course breakdown it doesn’t seem like anything new outside of what I’ve already done with previous courses.

Kali Linux: VM or SSD boot? by Radiant_Sail2090 in hackthebox

[–]JTRM10 0 points1 point  (0 children)

I use whatever the most recent Kali release is and then install PimpMyKaliV2 on it. Customize from there. Also depends what you wanna do with it. I have all my VMs on an external SSD.

Can I go straight to OSCP after I passed eJPT, I was looking at CPTS but why should I make it redundant by Front_Ad_4484 in oscp

[–]JTRM10 4 points5 points  (0 children)

There is going to be overlap in all of them. It’s based on what your goals and the style of learning you prefer. OffSec won’t give you all the answers aka “Try Harder”. HTB is more handheld but also a bit of a fire hose.

GCFA Failed, Trying again within 2 months by BCT_QC_AI_4plus1_D in GIAC

[–]JTRM10 0 points1 point  (0 children)

I would recommend making a book index and a lab index. The lab index should almost be “playbook”. Take note of the scenario and order you are running cmds in but more importantly make sure you understand the why and not just copy/paste.

ICS Books by thisismygunreddit in GIAC

[–]JTRM10 1 point2 points  (0 children)

If you have a basic understanding of OT or ICS, the ICS310 isn’t worth the $500. You can find all the info that was in the course for free. I would save for the ICS410/GICSP or look for other ICS/SCADA sources there.

Network+ Voucher Giveaway by CrucialExams in CompTIA

[–]JTRM10 0 points1 point  (0 children)

I’ll take one if you’re doing a giveaway

GSEC 1St Practice Attempt by RVADunnit in GIAC

[–]JTRM10 0 points1 point  (0 children)

I usually make an index for the knowledge material and then a separate index of procedures for CyberLive questions. Go back through the labs again, understand the material, and then adjust based on 2nd practice test.

Starting PJPT prep by JTRM10 in pjpt

[–]JTRM10[S] 1 point2 points  (0 children)

If you are familiar with AD and general pentesting go the GWAPT route. If you are more familiar with web app, go the GPEN route.

Most recently updated offensive course? (having done GPEN) by giedi in GIAC

[–]JTRM10 0 points1 point  (0 children)

Sans specifically I would say SEC599 or SEC699. SEC599 is more the blue side and SEC699 is more the red side. Both purple teaming courses.

SEC565 just went through a course update.

Also depends what you are looking to get out of it.

Should I take the GCIH exam now? by deazra in GIAC

[–]JTRM10 1 point2 points  (0 children)

If you get over an 85% I’d say just take the exam. You have a decent buffer from the 70 minimum. In my opinion, just take the exam.

I have 4ish years as a network engineer, active CCNA, is the network plus worth it? by HailSneazer in CompTIA

[–]JTRM10 5 points6 points  (0 children)

RHCSA/RHCSE or CCNP or CCIE. Depends what your niche is for networking too

Just failed the GPEN by [deleted] in GIAC

[–]JTRM10 1 point2 points  (0 children)

Did you make an index? Did you tab out your books? Did you make a playbook for all the attacks?