White hack hackers do not infiltrate real systems unless performing penetration tests. However, since real world hacking is illegal and they don't participate in this, how do they know their skills are up to snuff if they aren't penetration testers? Have most of them even hacked anything? And how can they possibly, legally learn these skills when real world experience is illegal? How can they know if they are skilled? How can they become penetration testers?
Forum Thread: How Do You Know Your Skills
- Hot
- Active
-
Forum Thread: When My Kali Linux Finishes Installing (It Is Ready to Boot), and When I Try to Boot It All I Get Is a Black Screen. 8 Replies
1 day ago -
Forum Thread: HACK ANDROID with KALI USING PORT FORWARDING(portmap.io) 12 Replies
1 wk ago -
Forum Thread: Hydra Syntax Issue Stops After 16 Attempts 2 Replies
4 wks ago -
Forum Thread: Hack Instagram Account Using BruteForce 208 Replies
4 wks ago -
Forum Thread: Metasploit reverse_tcp Handler Problem 47 Replies
2 mo ago -
Forum Thread: How to Train to Be an IT Security Professional (Ethical Hacker) 22 Replies
2 mo ago -
Metasploit Error: Handler Failed to Bind 41 Replies
3 mo ago -
Forum Thread: How to Hack Android Phone Using Same Wifi 21 Replies
3 mo ago -
How to: HACK Android Device with TermuX on Android | Part #1 - Over the Internet [Ultimate Guide] 177 Replies
3 mo ago -
How to: Crack Instagram Passwords Using Instainsane 36 Replies
3 mo ago -
Forum Thread: How to Hack an Android Device Remotely, to Gain Acces to Gmail, Facebook, Twitter and More 5 Replies
3 mo ago -
Forum Thread: How Many Hackers Have Played Watch_Dogs Game Before? 13 Replies
3 mo ago -
Forum Thread: How to Hack an Android Device with Only a Ip Adress 55 Replies
4 mo ago -
How to: Sign the APK File with Embedded Payload (The Ultimate Guide) 10 Replies
4 mo ago -
Forum Thread: How to Run and Install Kali Linux on a Chromebook 18 Replies
5 mo ago -
Forum Thread: How to Find Admin Panel Page of a Website? 13 Replies
6 mo ago -
Forum Thread: can i run kali lenux in windows 10 without reboting my computer 4 Replies
6 mo ago -
Forum Thread: How to Hack School Website 11 Replies
6 mo ago -
Forum Thread: Make a Phishing Page for Harvesting Credentials Yourself 8 Replies
6 mo ago -
Forum Thread: Creating an Completely Undetectable Executable in Under 15 Minutes! 38 Replies
7 mo ago
-
How To: Use Burp & FoxyProxy to Easily Switch Between Proxy Settings
-
How To: Find Passwords in Exposed Log Files with Google Dorks
-
How To: Host Your Own Tor Hidden Service with a Custom Onion Address
-
How To: Change a Phone's Coordinates by Spoofing Wi-Fi Geolocation Hotspots
-
How To: Scan for Vulnerabilities on Any Website Using Nikto
-
How To: Dox Anyone
-
How To: Crack Password-Protected Microsoft Office Files, Including Word Docs & Excel Spreadsheets
-
How to Hack Wi-Fi: Stealing Wi-Fi Passwords with an Evil Twin Attack
-
How To: Brute-Force Nearly Any Website Login with Hatch
-
Tutorial: Create Wordlists with Crunch
-
How To: Hack 5 GHz Wi-Fi Networks with an Alfa Wi-Fi Adapter
-
How To: Load Kali Linux on the Raspberry Pi 4 for the Ultimate Miniature Hacking Station
-
SQL Injection 101: How to Fingerprint Databases & Perform General Reconnaissance for a More Successful Attack
-
How To: Use John the Ripper in Metasploit to Quickly Crack Windows Hashes
-
How To: Crack SSH Private Key Passwords with John the Ripper
-
How To: Find Vulnerable Webcams Across the Globe Using Shodan
-
How To: Check if Your Wireless Network Adapter Supports Monitor Mode & Packet Injection
-
How To: Hack Apache Tomcat via Malicious WAR File Upload
-
BT Recon: How to Snoop on Bluetooth Devices Using Kali Linux
-
How To: Enumerate SMB with Enum4linux & Smbclient
2 Responses
They can set up their own servers or computers to hack, primarily through Virtual Box or Virtual Machine.
However a majority of "cybersecurity" engineers lack any experience hacking, hence why security jobs are hot.
As for your other questions, I'm not sure how to answer them. A majority of "white hats" are not as skilled as they should be, but technology is always advancing and so they have to continuously learn new things.
Problem solving capabilities is key.
Developing that and coupling it with your technical knowledge is the best way to go about it. It's been said before by myself, OTW, and many others; problem solving is a critical skill to have for hacking.
Labs are a good option to test your hacking, as well as bug bounties to develop your zero day exploit finding skills, et cetera.
There are many ways to develop yourself that isn't just "hack this and you get better" and in fact, sometimes that isn't even the best way.
The worst thing to happen in a lesson, is for you to have no problems to solve. What if, for instance, you hack a website and it goes off without a hitch? You've not gotten better, you've learnt nothing.
The reason a lot of security professionals are maybe not as good as they'd like to be, is because their only experience, the only way they've dealt with security is defensively. However, learning how your opponents will attack you is critical. It's just like warfare, know your enemy. Having this knowledge will have you much better equipped to defend against attacks because you know what their next steps are likely to be, therefore, you can stay a step ahead.
This is why we're all here, this is what I try to explain to everyone. We can give you all the answers, and that's all well and good, but you learn very little that way. Learn to solve the problems you're faced with, and you're then that much better equipped to deal with future problems.
ghost_
Share Your Thoughts