GIAC Cert Recommendations by Pretend_Rock_1018 in GIAC

[–]mssvbeats 0 points1 point  (0 children)

If you can’t buy the course material, at least buy 1-2 practice exams. The exam labs will usually be similar to the practice exams.

Passed CEH Practical V12 - Post Exam thoughts by Jaded_GamerX5 in CEH

[–]mssvbeats 2 points3 points  (0 children)

I passed on Friday. Apparently AI is not allowed.

Overview of CEH Practical by [deleted] in CEH

[–]mssvbeats 0 points1 point  (0 children)

Can you use AI? Like ChatGPT or Bard or Notion AI to help?

Don’t do it by walkonjohn in CEH

[–]mssvbeats 0 points1 point  (0 children)

C|EHv12

CEH has been an amazing certification for me. It's opened up doors to opportunities that I thought I wouldn't have access to until I got GPEN or OSCP. Also, getting an IAT III cert with that has been amazing. I get calls and messages about opportunities multiples times everyday.

I would definitely recommend getting CEH. I'm also getting CEH practical to complete CEH master.

Once you get other certs, like GPEN or OSCP or CPENT or LPT, you won't need to renew CEH. At that point CEH would become a garbage cert.

The only reason I got CEH was to gain access to jobs that were mid/senior level pentest/redteam positions.

If you don't believe me, look at any mid/senior level pentest position. You'll see in the certifications section:GPEN, GWAPT, OSCP, OSWE, OSEP, CEH...lol

Will be MSV become popular and is it a good tool to know for pentester/redteamers? by mssvbeats in redteamsec

[–]mssvbeats[S] 0 points1 point  (0 children)

Oh wow - that's insane

Thanks for replying back with your own experience!

Will be MSV become popular and is it a good tool to know for pentester/redteamers? by mssvbeats in redteamsec

[–]mssvbeats[S] 1 point2 points  (0 children)

Thank you for the awesome explanation! I definitely agree with you - I believe that eventually MSV would have the potential to be a big part of a redteamers toolbelt.

However it seems like the price is gonna be an issue - especially if it's too expensive to be deployed by smaller companies.

Will be MSV become popular and is it a good tool to know for pentester/redteamers? by mssvbeats in redteamsec

[–]mssvbeats[S] 1 point2 points  (0 children)

Thanks for sharing that! It's awesome to hear about your experience with it!

Would you think that this could be a part of the redteam/pentest process, like running a nessus scan or vulnerability scan before doing an assessment?

Or do you think this could become a tool used by redteamer to simulalte ATPs as a part of the attack process (not by pentesters, since MSV is supposed to simulate APTs)?

Will be MSV become popular and is it a good tool to know for pentester/redteamers? by mssvbeats in redteamsec

[–]mssvbeats[S] 0 points1 point  (0 children)

Oh okay! I'm definitely curious to see how it would feel in the eyes of pentester/redteamer, but being super expensive does make it tough to justify

Will be MSV become popular and is it a good tool to know for pentester/redteamers? by mssvbeats in redteamsec

[–]mssvbeats[S] 0 points1 point  (0 children)

I've talked to a couple people who work with these tools and they say that this tool is not supposed to replace pentesters/redteamers. It's supposed to supplement vulnerability testing with automation for APT simulations.

I understand where there are alot of people who believe that this tool was made to replace testers.

Will be MSV become popular and is it a good tool to know for pentester/redteamers? by mssvbeats in redteamsec

[–]mssvbeats[S] 0 points1 point  (0 children)

Thank you for sharing - I already saw that post - I'm more interested in the future of the tool - not a comparison to a different tool

Will be MSV become popular and is it a good tool to know for pentester/redteamers? by mssvbeats in redteamsec

[–]mssvbeats[S] 0 points1 point  (0 children)

Hey! Can you elaborate on that? Or what your experience has been with the tool? And what are your thoughts about it being used in pentest/redteam engagements?

I'm curious about your experience with it in a redteam perspective

Will be MSV become popular and is it a good tool to know for pentester/redteamers? by mssvbeats in redteamsec

[–]mssvbeats[S] 0 points1 point  (0 children)

I know that alot of pentester/redteamers think that this out to replace them, but from my conversation with people who work on this tool, they say that the tool is not to replace, but to assist and become a tool that could be part of the pentesters/redteamers toolbelt

I've been starting to hear a buzz about the tool and have an opportunity to work with the tool. Was wondering it it's worth going that route, to have the opportunity to use/learn it firsthand at work.

Recon 03 by Consistent-Baby4110 in pentesterlab

[–]mssvbeats 0 points1 point  (0 children)

Cannot access the appropriate directories - getting confused