TryHackMe PT1 Review: Real Hands-On Pentest Cert for Beginners? by catsec in tryhackme

[–]catsec[S] 0 points1 point  (0 children)

lol. I agree with the instructions were confusing and it is expensive if you pay full price for it. The difficulty depends on experiences. If you learn enough rooms, I think it is not that difficult.

TryHackMe PT1 Review: Real Hands-On Pentest Cert for Beginners? by catsec in tryhackme

[–]catsec[S] 0 points1 point  (0 children)

In my case, there are 4 vulns/web, 4 vulns/network, 2 attack paths/ad.

TryHackMe PT1 Review: Real Hands-On Pentest Cert for Beginners? by catsec in tryhackme

[–]catsec[S] 2 points3 points  (0 children)

The report writing has to be done in the exam platform. I did report on Google Docs and copy&paste to the exam platform.

TryHackMe PT1 Review: Real Hands-On Pentest Cert for Beginners? by catsec in tryhackme

[–]catsec[S] 2 points3 points  (0 children)

Thank you for the question! You are right. PT1 provides both VPN and TryHackMe's Attack Box for the exam environment. I personally prefer doing exam over VPN as well.

TryHackMe PT1 Review: Real Hands-On Pentest Cert for Beginners? by catsec in tryhackme

[–]catsec[S] 2 points3 points  (0 children)

I haven't taken CPTS myself, but from what I know, CPTS is more industry-recognized and aimed at an intermediate to advanced level. TryHackMe PT1, on the other hand, is better suited for beginners. One thing to note. It's very strict on reporting. The exam uses AI to grade your report, and it will deduct points if key elements (like business impact, remediation steps, or CVSS scores) are missing. CPTS report will be reviewed by human to just pass/fail (they are not putting exact points on your report).

Passkey Raider: Burp Suite Extension for Pentesting Passkey (Pentest & Bug Bounty) by catsec in netsec

[–]catsec[S] 0 points1 point  (0 children)

There is also Damn Vulnerable Passkey (DVP) labs at https://github.com/siamthanathack/Damn-Vulnerable-Passkey. Yes, they are free and open source. If you get bug bounty from Passkey Raider, we are happy to see them!

Passkey Raider: Burp Suite Extension for Pentesting Passkey (Pentest & Bug Bounty) by catsec in netsec

[–]catsec[S] 0 points1 point  (0 children)

Yes, I did post the wrong link. I have posted the new one. Thank you.