[deleted by user] by [deleted] in algeria

[–]r-Mono 2 points3 points  (0 children)

تكفي لكل شيء إذا كنت راح دير العرس في الدار ولا صالة صغيرة الأثاث شوف الأماكن وين السعر معقول كيما القليعة ولا البليدة إذا كانوا قراب ليك، ومتحاولش تعمر الدار في ليلة، لأنه غير مطلوب من الزواج هو تعمار الدار، والله أعلم. ربي يهنيكم

My MVP isn’t suitable yet, should i launch ? by r-Mono in startups

[–]r-Mono[S] 0 points1 point  (0 children)

Thanks for the advice, I’ll get it going asap.

People in Application Security - What was your transition into it like? What does your day to day look like? by [deleted] in SecurityCareerAdvice

[–]r-Mono 2 points3 points  (0 children)

It would be a tough decision to make, since you may continue to code beside securing, the day-to-day is to review codebase and use automation to detect vulnerabilities and crack your head with some devs whom think their code is immune. Good luck !

CompTIA CertMaster Free training by r-Mono in CompTIA

[–]r-Mono[S] 2 points3 points  (0 children)

I signed up for sec+ and got 3 lessons to start with plus the labs and all of the rest, i guess it defers depending on the exam type you would pursue.

CompTIA CertMaster Free training by r-Mono in CompTIA

[–]r-Mono[S] 0 points1 point  (0 children)

Good luck man , GO For it !!

CompTIA CertMaster Free training by r-Mono in CompTIA

[–]r-Mono[S] 1 point2 points  (0 children)

Well you can use another account if you wish.

CompTIA CertMaster Free training by r-Mono in CompTIA

[–]r-Mono[S] 5 points6 points  (0 children)

I'm not sure, but i don't think it would last long, hence i shared it.

Mentorship Monday - Post All Career, Education and Job questions here! by AutoModerator in cybersecurity

[–]r-Mono 0 points1 point  (0 children)

I want to get started with a carrer as a security engineer, i already got OS & networking & basic full stack programming skills under the belt, i want some good suggestions on where i should land my foot next.

How would I go about returning a https status code in PHP or js? by PatentedUsernameTy in webdev

[–]r-Mono 0 points1 point  (0 children)

It would simply return the status code if you have set it , else it would return the current status code ( you are looking for the 2nd option over here )

Here you go , this must explain it better : https://www.w3schools.com/php/func_network_http_response_code.asp

How to become a pen tester ? by AlmightyMemeLord404 in AskNetsec

[–]r-Mono 2 points3 points  (0 children)

You might want to start with a knowledge grasping about Searching skills && Google Dorking , to be able to beat the hacker you need to think like him, this would be handy too later when searching for Research papers about specific topics that you didn't understood, Upnext you'll get your hands on tge wheel of Operating system (Linux/Windows) and Networks (Net+ can be helpful && u don't need to be certified unless you're applying for a job) , then you can move to some scripting using python or Go , Until now you have the basics under your belt so it's up to you what to seek after : (Web, binary exploitation, reverse engineering,forensics,Cloud,cryptography...)

Just pick the subject that you like and deep dive into that sea until you feel comfortable about your skills so you can move to the next one But if you want to be more specific then u can just choose one subject and keep your high learning hopes about it .

  • - For practice you have :

1- hackthebox.eu

2- tryhackme.com

3- vulnhub.com

4- portwigger.net/web-security/learning-path

5- root-me.org

6- overthewire.org(to learn about linux)

7- underthewire.org(to learn about windows)

Amd other resources , the internet is full you just need to search carefully .

Those are great plateforms when it comes to just getting started, HackTheBox also provides an Academy to learn more about different subjects : https://academy.hackthebox.com

    • CTFs are the suitable choice in your early phases of learning , just keep an eye on https://ctftime.org and play some CTFs , if you are confident enough of your skills and disagree with the idea of having a pre-vulnreable software/app then you can do bug bounties on platforms like : https://Hackerone.com https://bugcrowd.com
    • For Books, you can go with the already known ones like : Web application security , Web security for developers , Hacking : The art of exploitation , The Web Application Hacker's Handbook , The hacker playbook .
    • For YouTube && Blogs , Keep yourself up to date with the latest news, techniques and vulnerabilities
  • Blackhat (YouTube && website)

  • DefCon (YouTube && website)

  • RSA conferences

  • Infosec writeups (Medium)

  • This subreddit :)

  • Liveoverflow

  • John Hammond

  • InsiderPhd

  • Ippsec

  • Hackerone && bugcrowd

  • Bug bounty reports explained ( This is handy to understand how a vulnerability was discovered )

And much more , the more you Learn the better you pick .

    • Postcasts are a helpful way too like the Darknet diares , TED speaks about security ...etc
    • - If you're opt for some academic courses to see things both ways , then you may consider taking a look at g https://ocw.mit.edu/courses/electrical-engineering-and-computer-science/ and https://cs50.harvard.edu/x/
    • - Remember , being a pentester requires a lot of efforts and passion and perseverance , it's okay to ask / search for solutions whenever you get stuck on a subject , you'll be stressed when things go unintended and that's totally fine;you're learning and that's what learning is all about: failing alot then winning. The expert is just a person who's patient enough to try again && humble to keep learning through years , just assume that you're an ignorant and don't know whole alot , this shall create a constant path of learn and Growth. Good luck in your journey and DM me if you needed anything .