Posts

How to Renew Your CompTIA Security+ Cert by Adding CE Units

Image
  Important: You only need to renew the highest-level active cert you have and your active lower-level certs will also renew. For example, if you renew Security+, then if you also have active Network+ and A+ certs, they will also renew. Ways to Renew your Cert (yes, they all cost money): ·         Pass the current /   latest version of the same exam. ·         Pass a higher level CompTIA Exam. ·         Take the CompTIA CertMaster CE course. o    This includes the $150 renewal fee (check CompTIA for the current price of this course). o    Currently available for A+, Network+, and Security+. o    Must score 100% to pass (but unlimited retakes allowed). o    Takes about 8 to 10 hours to finish. ·         Upload Continuing Education credits (CompTIA calls them Continuing Educat...

Authentication Vulnerabilities

Image
HackersArsenal 's video  WhyYou Still Can’t Hack Anything (VERY SPECIFIC)  hits many good points . As I watched  Rana Khalil’s Authentication Vulnerabilities| Complete Guide , I was able to make connections between the fundamentals that I learned from Google’s Professional Cybersecurity course and studying for the CompTIA Network+ and Security+ to what Rana was teaching. Tools are the most useful when you understand: ·         How data moves ·         How systems communicate and ·         Where assumptions fail And knowledge gets rusty so I need to make it part of my routine to review the fundamentals and understand a little more in-depth, so NetworkChuck’s Free CCNA 200-301 Complete Course is now on my schedule. An in case you need a really quick refresher on BurpSuite, check out Hacker Blueprint’s Burp suite Explained in 100 Seconds . Before ...

PortSwigger's Server-Side Vulnerabilities Path: What the Labs Don't Tell You (And Why Rana Khalil's Videos Fill the Gap)

Image
  To start learning BurpSuite I embarked on the PortSwigger Server-side vulnerabilities path (for Apprentice level). You would think this would be a course for absolute beginners. Yes and no. Let me break it down. What you need to know: First , it would be helpful if you took an Intro to Cybersecurity course so you understand the terminology they are talking about. ·         Path traversal ·         Access Control ·         Authentication ·         Server-side request forgery (SSRF) ·         File upload vulnerabilities ·         OS command injection ·         SQL injection Are the areas covered in this path. They do give some information, but it’s more an overview of a topic than an in-depth explanation. Second , watc...