Summary
Keywords
Full Transcript
To get the Course Notes & Practice Questions, Join Hackaholics Anonymous as an Agent or Above: https://youtube.com/@HankHacksHackers/join By joining the Hackaholics Anonymous community, you'll get direct access to me, a community of supportive likeminded individuals, and exclusive perks like: - Exclusive Downloads (Like the PenTest+ course notes & practice questions) - Bug Bounties - Python Automations for CySec, PenTesting, SysAdmin - Exclusive Content - Live Chats / Q&A's / AMA's - And much, much more! https://youtube.com/@HankHacksHackers/join ************************** Module 1 Time Stamps: 00:00 Meet Your Instructor 00:47 How to Get the Notes & Practice Questions 04:50 Welcome to the Course 09:07 CompTIA PenTest+ Exam Objectives 12:51 Course Outline & Content Overview 17:20 Who Is the Certification For? 19:09 Average Salary of a PenTester 21:07 Prerequisites for This Course 26:34 Hardware Requirements 29:28 Software Requirements 32:26 Essential Tools 34:34 What You Need to Do Before the Next Episode 37:01 Closing Remarks & Next Steps 38:57 Hackaholics Anonymous 40:25 SECTION 1.1 INTRO 42:18 How to get the Notes & Practice Questions 43:47 SCOPE 44:51 Regulations, Frameworks & Standards 45:44 Common Regulations & Compliance Standards 56:33 RULES OF ENGAGEMENT 57:46 Exclusions & Escalation Process 1:03:05 Testing Window 1:05:13 AGREEMENT TYPES 1:05:52 Non-Disclosure Agreement & Master Service Agreement 1:07:00 Statement of Work & Terms of Service 1:09:24 TARGET SELECTION 1:09:50 CIDR Ranges 1:12:22 Domains & URLs 1:14:34 IP Addresses 1:15:32 ASSESSMENT TYPES 1:20:02 SHARED RESPONSIBILITY MODEL 1:23:51 LEGAL & ETHICAL CONSIDERATIONS 1:28:22 SECTION 1.1 PRACTICE QUESTIONS 1:46:13 SECTION 1.2 INTRO 1:50:36 How to Get the Notes & Practice Questions 1:52:05 Peer Review In PenTesting 1:55:35 Peer Review Process 2:05:22 Stakeholder Alignment 2:14:11 Key Communication Strategies 2:17:47 Root Cause Analysis 2:21:28 Common Root Causes of Security Flaws 2:25:19 Escalation Paths 2:30:06 Secure Documentation Practices 2:34:10 Goal Reprioritization 2:38:57 Business Impact Analysis 2:42:01 SECTION 1.2 PRACTICE QUESTIONS 2:50:17 Hackaholics Anonymous 2:51:44 SECTION 1.3 INTRO 2:53:54 How to Get the Notes & Practice Questions 2:55:23 Section Overview 2:59:09 OSSTMM Framework 3:02:32 CREST Framework 3:05:31 PTES Framework 3:09:08 MITRE ATT&CK Framework 3:17:36 OWASP Top 10 3:26:34 OWASP MASVS 3:29:21 Purdue Model 3:34:41 DREAD Model 3:36:00 STRIDE Model 3:42:08 OCTAVE Model 3:45:04 SECTION 1.3 PRACTICE QUESTIONS 3:56:36 Hackaholics Anonymous 3:58:03 SECTION 1.4 INTRO 4:01:08 How to Get the Notes & Practice Questions 4:02:37 Report Format & Documentation Best Practices 4:07:41 Risk Scoring & Vulnerability Descriptions 4:08:32 Common Risk Scoring Models 4:11:08 Common Vulnerability Scoring System 4:17:19 Essential Components of a Penetration Test Report 4:17:47 Executive Summary 4:20:14 Methodology 4:22:40 Findings & Risk Analysis 4:28:35 Attack Narrative 4:35:49 Recommendations & Remediation 4:37:31 Test Limitations & Legal/Ethical Considerations 4:41:05 SECTION 1.4 PRACTICE QUESTIONS 4:50:04 Hackacholics Anonymous 4:51:31 SECTION 1.5 INTRO 4:53:16 How to Get the Notes & Practice Questions 4:54:45 Overview of Section 1.5 Contents 5:01:09 The Vulnerability Triage Process 5:06:43 The Global Cyber Attack Map 5:11:41 Prioritization Example 5:17:04 TECHNICAL CONTROLS 5:17:32 System Hardening 5:22:02 Multi-Factor Authentication 5:25:21 Encryption & Data Protection 5:32:49 Patching & Vulnerability Management 5:38:11 ADMINISTRATIVE CONTROLS 5:39:24 Role-Based Access Control (RBAC) 5:42:29 Secure Software Development Lifecycle (SDLC) 5:50:17 Security Policies & Compliance 5:56:30 OPERATIONAL CONTROLS 5:57:11 Job Rotation & Separation of Duties 5:59:01 User Training & Security Awareness 6:03:30 Access Restrictions & Monitoring 6:07:52 PHYSICAL CONTROLS 6:09:43 Biometrics & Multi-Layered Authentication 6:11:16 Video Surveillance & Security Logs 6:13:00 Google Hacking Example - Finding Live WebCam Feeds 6:20:08 Access Control Vestibules (Mantraps) 6:23:42 SECTION 1.5 Practice Questions 6:32:24 How to Get the Notes & Practice Questions - Hackaholics Anonymous
