Hacker News new | ask | show | jobs
by tehskylark 4542 days ago
Would you say this is only for entry level pentesters? In my case I work as a professional application pentester but I'm looking for training to help me "get to the next level".

Currently I'm looking at Offensive Security's OSWE or SANS Advanced Web Pentesting, but I like the idea of an extended course with 1 on 1 interaction.

1 comments

While most of the material is aimed at those with little-to-no security experience, the second half of the class is above the level of most pentesters. If topics like advanced exploitation, WAF attacks, cryptography failings (ECB block reordering, padding oracle attacks, hash length extensions, etc) are of interest to you, I think you'd enjoy the class. But it all depends on where you're at and what you're looking to learn.
Thanks, yeah it sounds like the second half of the course would definitely be interesting. I won't be able to do the course this time around but I'll keep an eye out for future offerings. Might you consider an advanced course in the future? :)