Hacker News new | ask | show | jobs
by Maven911 2566 days ago
I've been trying to learn infosec for a few years now with the eventual goal of either an offense/defense role. Plan to work on my OSCP next.

I have a few basic questions please:

1. Aside from: linux cmds, nmap, metasploit, sqlmap, mimikatz, kali's well known tools - what other tools are often used by pen testers ?

2. How is MFA beaten in today's enterprises ?

3. Do most engagements assume one is already in the network ? If not, how does one scan (basic OSINT towards their externally facing website, but let's assume that is very secure)

4. How well do pen testers know the defense side and amalgamation of so many defensive tools - how do they learn what to beat ? Is it really as simple as try to fingerprint and then look for known vulnerabilities on msf ? Or do pen testers not care if xyz enterprise is using this version of Palo Alto or a carbon black EDR etc.

e.g. Alphabet soup of products in a large enterprise for defensive solutions - NGAV, EDR, SIEM, honeypots etc. etc.

5. How do you keep up ? aside from Reddit

6. any advice to future job seekers working their way into learning more infosec ?

1 comments

I've replied to your thread level comment, but please do feel free to reach out to me if you want any advice or discussion: i@willcode.it
Foremost, I'd also like to say thank you for providing such a detailed reply to the top level comment

But I also wanted to extend my admiration of that very crafty email address. I'm sorry I didn't think of it first