Тёмный

My Guide to HTB’s CPTS Course/Exam 

bmdyy
Подписаться 3,2 тыс.
Просмотров 42 тыс.
50% 1

Recently I passed the CPTS exam by HackTheBox. In this video I discuss my experience with the course and exam, as well as how it differs from the OSCP.
HTB Discord: / discord
Chapters:
0:00 Introduction
0:29 The Course
3:35 The Exam
5:38 The Report
8:11 Tips & Tricks
11:46 FAQ: How does CPTS compare to OSCP?
18:55 Outro
Background Music:
Airport Lounge - Disco Ultralounge by Kevin MacLeod is licensed under a Creative Commons Attribution 4.0 license. creativecommons.org/licenses/...
Source: incompetech.com/music/royalty-...
Artist: incompetech.com/

Опубликовано:

 

29 июн 2024

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии : 138   
@ejnixon
@ejnixon Год назад
Well done! I just finished OSCP and am starting the course modules . I think you are the first person to provide a review on the course. Thank you very much
@80572
@80572 Год назад
Other than AD, it doesn’t rly make sense to do CPTS after OSCP
@porschepal7932
@porschepal7932 Год назад
@@80572 More certifications for employers to look at I suppose.
@Haxr-dq6wt
@Haxr-dq6wt Год назад
Congrats on passing the OSCP, I have my exam in June How would you compare the OSCP material to the CPTS?
@porschepal7932
@porschepal7932 Год назад
​@@Haxr-dq6wt I've heard a lot of people say that the CPTS is harder and more challenging than the OSCP.
@fernandopierola
@fernandopierola Год назад
Nice video mate! Congrats on the CPTS!
@luddekn
@luddekn 9 месяцев назад
Very nice video! Gives a really good overview of what to expect and also your workflow, keep up the good content!
@augustinomageka1352
@augustinomageka1352 Год назад
Great video. I am currently working on the HTB pentester path. Looking forward to take the exam in the future.
@TheH2OWeb
@TheH2OWeb Год назад
Congrats ! Thanks a lot for your feedback !
@ZETOR_25
@ZETOR_25 Год назад
very informative, thank you for this!
@Appadonhtb
@Appadonhtb Год назад
Currently busy with the CPTS path and was a bit worried if it would be worth it, you convinced me that it is. Great vid! Thank you!
@himansh0715
@himansh0715 10 месяцев назад
hey! you cleared it?
@JuanBotes
@JuanBotes Год назад
thank you for taking the time to give review - great \o/
@JuanBotes
@JuanBotes 5 месяцев назад
Thanks again, I manage to pass my CPTS exam end of 2023, appreciate the content and reviews !
@phenom563
@phenom563 Год назад
Thank you for the information!
@calebhavens9799
@calebhavens9799 Год назад
Been waiting for a review on this since I saw it come out. I’m about 42% of the way through the path. Let’s see that CBBH review as well!
@R4z0r_arg
@R4z0r_arg Год назад
Great video, thanks
@billelghezal7855
@billelghezal7855 Год назад
ur amazing bro, god bless you
@gashone
@gashone Год назад
Great explanation, I'm also full time penetration tester and to be honest I was struggle with some labs with DNS etc. I will watch this one more time before taking exam because it is a full useful information
@SquareZeroGaming
@SquareZeroGaming Год назад
Bro.. you should keep making videos.. this was 🔥!!. Do share your pentesting knowledge.. i think you have done prettymuch every certs.
@ltnlabs
@ltnlabs Год назад
Great guide!
@chowdhurytowhidahmed7780
@chowdhurytowhidahmed7780 Год назад
Thanks a lot. Keep upload more video
@anshulbahrani8971
@anshulbahrani8971 Год назад
Great video🎉
@irvingirving6275
@irvingirving6275 9 месяцев назад
This is really good review.
@ti0sec
@ti0sec Год назад
Thnx man!
@hoodietramp
@hoodietramp Год назад
Thanks man
@md.arifurkabir1248
@md.arifurkabir1248 Год назад
Excellent.
@limmarponyets2135
@limmarponyets2135 Год назад
I'm at 40%, and it feels like the endless story movie
@gnuPirate
@gnuPirate 3 месяца назад
Wow, first to pass that's awesome. TOP review, thanks. Also, that is some serious elevator music.
@sydetraq3952
@sydetraq3952 Год назад
Convinced me to go for it.
@sgtkeebler
@sgtkeebler Год назад
Thank you for including the time limit you have on the exam. I have been trying to look for that info since I started the course. I am excited to complete the course and take the exam. I just wish you could turn off the black background on academy. In my personal experience it makes things hard to read without increasing my screen brightness.
@himansh0715
@himansh0715 Год назад
Certificate - Passing is all good but you have amazing note taking skills :)
@marlinshanklin-ww7em
@marlinshanklin-ww7em 7 месяцев назад
You convinced me to sign up.
@lucadistefano9259
@lucadistefano9259 Год назад
Looks Like CPTS shows more care for customers ,OSCP shows more care to the money :D
@impatientgaming9868
@impatientgaming9868 21 день назад
good one
@repairstudio4940
@repairstudio4940 Год назад
Thank you ... I saw that John Hammond failed and was just like 🥺...considering taking it so anymore advice is much appreciated. Liked and Subbed!!!
@smnomad9276
@smnomad9276 2 месяца назад
John Hammond is not as good as everyone think he is lol
@repairstudio4940
@repairstudio4940 2 месяца назад
@@smnomad9276 meh idk, I believe he'd be a formidable advisary. He certainly wouldn't be easily to compromise.
@smnomad9276
@smnomad9276 2 месяца назад
@@repairstudio4940 He failed cpts which is roughly the same level as oscp, which is a mid-level certification. Also he has been trying to get OSEE for 2 years now with no results. There are thousands of guys following him that are way more skilled than he is.
@Jake-km7wp
@Jake-km7wp Год назад
98 pages!?!?! SHEESH lol. Just picked the course up! I have done PNPT, CRTO, and CRTP. Hoping this can piggy back off of them.
@mota_bhai_rahul1891
@mota_bhai_rahul1891 Год назад
Thanks
@infoseckid
@infoseckid Год назад
nice review and congratulations on pasing the exam.
@bmdyy
@bmdyy Год назад
Thank you!
@yassinearahal831
@yassinearahal831 Год назад
Thank you william for tgis video and would you share with us how to build a pentesting note hierarchy ?
@grzegorztlusciak
@grzegorztlusciak Год назад
I was waiting for your subjective opinion on which exam is more difficult :) My understanding is that CPTS is more difficult as it covers a lot more stuff (see John Hammond's video) Also, is going through HTB Academy Pentester path + TCP Security Practical Ethical Hacking + HTB machines + Proving Grounds a good preparation for OSCP?
@JakeL-wr7xr
@JakeL-wr7xr Год назад
hey I just started the CPTS course. So far its going great. Its definitely alot of reading for now. They really are hard about information gathering and covering all aspects of finding all vulnerabilities. How did you organize all your notes, screenshots, found credentials, and commands? Possibly a quick video?
@himansh0715
@himansh0715 7 месяцев назад
how's your preparation going on?
@weniweedeewiki.6237
@weniweedeewiki.6237 Год назад
Wow the first well done!
@kumarniloy8004
@kumarniloy8004 Год назад
Hi , first of all great video. I want to know about your note taking, I don't want your personal notes. Just want to know the detailed way in which you take notes and if you prefer. One tip I can provide is when you copy-paste commands for quick use in your notes, replace the "target ip" with $IP in your notes and in your terminal just do export IP="target ip", so you can just paste the commands directly and the "$IP" would replace with the exported target IP in the terminal. When you close that terminal instance it would clear the $IP var.
@bmdyy
@bmdyy Год назад
Thanks, I prefer to use CherryTree just because that's what I started with. In the video is my HackTheBox-specific CherryTree document which is organized by Machines(Easy/Med/Hard), Challenges(Web/Crypto/...), Academy(Modules/Exams). I don't have notes which are for specific things, like one section for SQL injections, I kinda just use 'search all nodes' for what I'm looking for.
@kumarniloy8004
@kumarniloy8004 Год назад
@@bmdyy Great , I also use cherryTree , just wanted to know the format you organize your data in, thank you for the reply.
@weeshen
@weeshen Год назад
OSCP might be left in the dust soon. The only reason I say that is, with organizations like HTB and TCM Security putting out certifications that are "realistic" in nature (ALL TOOLS available and actual test environment) it almost puts the OSCP to shame. The OSCP both shines and fails by requiring the 24 hour test and no automated tools available which removes the realism of a penetration test but also helps in forcing you to know how to "live off the land" so to speak. This is, of course, just my two cents.
@khorclcl
@khorclcl Год назад
could you make a video to share what is the best way to store all the command line used and credential found?Are there an automated way of doing it or simply just copy and paste whenever a command worked?
@booluinji7298
@booluinji7298 Год назад
Let’s fucking gooooo
@podavu7044
@podavu7044 Год назад
Hey man, thank you so much for the review. Very informative! I also saw that your notes on Cherrytree look very neat. Please share them with me if possible. I m preparing for the same cert, and I find it very hard to organize my notes
@bmdyy
@bmdyy Год назад
Thank you! I won't share my personal notes because a lot of it is just answers to the module questions and in my opinion using someone else's notes is not nearly as beneficial as creating your own. Personally I organize my notes by creating separate nodes for each module and then writing down all the commands / answers.
@shonen78
@shonen78 Год назад
Great video! One small suggestion, your audio is a little low. Maybe bump it up a wee bit.
@bmdyy
@bmdyy Год назад
Thanks for the suggestion, I wasn't sure if it was too quiet or not
@bishopjackson2264
@bishopjackson2264 Год назад
You could also do 1 month Platinum and 1 month gold that will give 1500 cubes, rest should come from completing modules.
@reverend481
@reverend481 Год назад
Can you share your notes? Really liked the way it's formatted
@rodnet2703
@rodnet2703 Год назад
If you were to hire a penetration tester and you had 3 candidates. All 3 have no experience. One has OSCP, one has PNPT, and one has CPTS. Which candidate would you be confident would be able to perform the job with minimal training?
@bmdyy
@bmdyy Год назад
I took the PNPT exam without the course, and I took OSCP 2 years ago (before AD was added). With that in mind, I feel like CPTS taught the most.
@kennethsantiago6517
@kennethsantiago6517 3 месяца назад
New Subs here! just a question, I want to shift career into pentesting. I'm just starting my eJPT course and will take the once I get comfortable and learn by heart. after that PNPT or eCPPT but along with that, will you recommend doing the CPTS course for a beginner like me ? can I cope up with the course ? i need your honest opinion thank you
@KlockWise1
@KlockWise1 Год назад
Nice one, clear, concise, and articulate explanation. One question I have is in regards to time management. how did you manage to work full time, do gym and prepare for the cert? I’m in a bit of a pickle myself where I’m about to enter a full-time job but I also have training on the side, and to add the CPTS cert on top would be quite deadly. I’d like to know how you ended up managing everything in sync so that I can apply it to myself 💉 Keep it up with the videos, very informative!
@bmdyy
@bmdyy Год назад
It was not easy, pretty much all the free-time I had went towards studying. I did the whole course in about a month though, if you were to spread it out over a longer period of time it would be quite managable.
@KlockWise1
@KlockWise1 Год назад
Understood, it’s surely been a sacrifice in time as a payment coin. Thanks for answering my inquiry!
@super3d201
@super3d201 8 месяцев назад
Hey, thanks a lot for the insight. Do you think the cert is doable if didnt have any other certs or job experience? Do you think the modules prepare you well enough?
@darrylwest3106
@darrylwest3106 7 месяцев назад
Yes can
@RomeoYong
@RomeoYong Год назад
Great video, thank you for the info. Can you point me to the report template?
@SoCalAeroViews
@SoCalAeroViews Год назад
thanks for this review i just started the modules and i was wondering if i would pursue the cert at the end. is the cert something that would get you into a job as a pen tester?
@bmdyy
@bmdyy Год назад
The cert is very new / not widely known, so I don't think it would be very likely that you get hired just for having it
@igor5339
@igor5339 Год назад
big congrats on the certification and the video. Dude I need to ask. If you had done the opposite, first you had studied for the CPTS, with the knowledge of it you can pass the OSCP. Dude, I've already done OSCP 2 times and I'm going to the third exam, my best score was 60 points (no hypocrisies, no examservices dumps of course). I ask all this because I'm thinking about studying for the CPTS and I wanted to take advantage of the knowledge to refine and pass the OSCP too. Do you think it is possible ? thanks man
@bmdyy
@bmdyy Год назад
Hi, I think that the knowledge you gain from completing the CPTS course and exam will certainly help you pass the OSCP. Not to say that the CPTS course only will prepare you for the OSCP exam, but it will definitely supplement your currently knowledge.
@j.c.5011
@j.c.5011 Год назад
CPTS goes further than OSCP. If you do the HTB Academy pentester course first, then get the CPTS, OSCP will be a lot easier.
@mahdihasan42
@mahdihasan42 Год назад
Can you make a crash course video of particular subjects?
@bishopjackson2264
@bishopjackson2264 Год назад
Hey, how has doing the CPTS benefited you in doing the HTB active/retired content?
@sleepstudyreleaxsounds6975
@sleepstudyreleaxsounds6975 Год назад
I have many account passwords, tried evim-winrm, psexec... all failed I don't know what to do next, I may have missed some way to get the shell, I hope you to advise for me I guess it is the Active Directory penetration knowledge that I have missed. I searched the relevant modules and still have no answer. I saw the mind map you recommended, which is very good.
@domingomejia9111
@domingomejia9111 4 месяца назад
Excelent video 🎉 cheers is it possible to share your notes? I been looking for notes CPTS. I find more about CISSP than from the CPTS.
@jocamp5
@jocamp5 3 месяца назад
You don’t share notes , that’s personal . It also defeats its purpose . You learn while you take notes not stealing someone else’s
@pangbas
@pangbas Год назад
Hi, is it possible on HTB to cancel a monthly subscription after 3 or 4 months or it's a monthly payment but for a full year ? Because i just need 2000 cubes.
@IvanPopov-pg5yp
@IvanPopov-pg5yp Год назад
Do you think CPTS covers most of the CBBH and would be a better option if taking only one of the two exams, or is CBBH way more in-depth for apps? (I know it's for web specifically, but a lot of modules overlap :( ) The real question is, if CPTS has enough web/app info for Bug bounty? Since it's got a broader scope I see it as a better option.
@orpheus0108
@orpheus0108 Год назад
Tbh I'm thinking it might be better to do CBBH and the do CPTS. Alot of CBBH overlaps with CPTS and you'll get a good web foundation you can use for CPTS.
@akanegro05
@akanegro05 10 месяцев назад
What you think about THM SOC level 1
@franciscopahati8782
@franciscopahati8782 Год назад
Hi this is really informative Thanks! Just wanna ask, is it better to buy cubes or just get the Silver Annual subscription that includes exam? ($490)
@bmdyy
@bmdyy Год назад
I believe any subscription ends up being cheaper than buying the cubes directly
@franciscopahati8782
@franciscopahati8782 Год назад
@@bmdyy thanks man! will consider this. If you don't mind, may I ask if I can cancel my subscription any time? and if do, does it remove my access to modules? btw, i subbed. :)
@bmdyy
@bmdyy Год назад
Yes you can cancel any time. You maintain access to modules which you completed 100%
@franciscopahati8782
@franciscopahati8782 Год назад
@@bmdyy Thanks! I appreciate your fast response.
@geeksified
@geeksified 10 месяцев назад
how many cubes can I get for the monthly student plan?
@tryhackme5636
@tryhackme5636 Год назад
Would a 2 cpu cores 4 gb ram vm be enough?
@waynelee891
@waynelee891 Год назад
In terms of the training aspect, can you compare/contrast the type of people who may enjoy the training part of PNPT versus that of CPTS?
@bmdyy
@bmdyy Год назад
Hi, I took the PNPT exam without doing the training so I can't really compare the two, sorry
@alextrades888
@alextrades888 5 месяцев назад
Do you think CPTS it's enough to get an entry level job ? Thanks!
@ahmadnader8586
@ahmadnader8586 2 месяца назад
thanks a lot. could you share these notes with us?
@JohnCKirk
@JohnCKirk Год назад
Looking at your time log (c. 5:00), I'm guessing that some of those slots are for sleep! (E.g. 01:09-08:07 on day 4.) Were you basically full-time in exam mode during your waking hours, or did you fit the exam in around your day job? Just as a minor correction, OffSec will now offer feedback on the OSCP exam report. I'm not allowed to share mine: "Sharing OSCP exam feedback details with others is prohibited and will be considered a violation of our academic protocol." However, I'd say that it's less detailed than the feedback you got.
@bmdyy
@bmdyy Год назад
Hi, yes some of the slots are for sleep of course :P I was "almost" full-time exam mode for these days, I did have some things I needed to do for my job.
@marlinshanklin-ww7em
@marlinshanklin-ww7em 5 месяцев назад
What the difference between this course and the CBBH course ?
@ivanpopov4550
@ivanpopov4550 Год назад
Does the exam let you into a VM to do the testing or you use your own VM. Also for everyday testing, do you use VMs or a machine with main OS linux?
@bmdyy
@bmdyy Год назад
I use VMs daily, the exam requires you to use your own setup
@niklasjern7211
@niklasjern7211 Год назад
I read somewhere that if you manage CPTS , you should be able to do OSCP without any bigger problems. Do you agree with this? If yes, does this mean that the CBBH is the equitant to OSWE?
@bmdyy
@bmdyy Год назад
OSWE is a white-box course which focuses on code analysis and CBBH is a black-box approach for bug bounty hunters. They are not equivalent
@mrg3tty672
@mrg3tty672 Год назад
You can indeed still download the PDF. I just came off of my 4th failure. The exam format is very stressful indeed. You feel the pressure of the clock. I'm taking a break for about a month, but I am thinking about going after the CPTS. The lack of feedback on the OSCP kinda sucks.
@rodnet2703
@rodnet2703 Год назад
How would you compare this in difficulty to PNPT?
@bmdyy
@bmdyy Год назад
Good question. CPTS was harder, and had a larger exam network than the PNPT for sure
@ferasalfarsi897
@ferasalfarsi897 4 месяца назад
Is CPTS harder than OSCP? if I take CPTS course and exam, I will be prepared enough to take OSCP exam?
@necromancerbb
@necromancerbb 21 день назад
I remember when OSCP exam attempts user to be $60 a pop. Sigh
@TheDomork
@TheDomork Год назад
I'm a lucky guy
@lunacastillo9981
@lunacastillo9981 Год назад
Hello, Does this exam have tool restrictions like sqlmap, metasploit, etc, etc just like the OSCP?
@bmdyy
@bmdyy Год назад
No restrictions afaik
@alaatouil1377
@alaatouil1377 Год назад
Hey !! I have a question: I'm very interested in the internet security exams and certificates, but I have a very basic knowledge in coding, do you think it's possible?
@bmdyy
@bmdyy Год назад
Hey, many people in cybersecurity don't know how to code, so even a basic understanding is beneficial. What more important is an understanding of Windows/Linux
@alaatouil1377
@alaatouil1377 Год назад
@@bmdyy great !!! Thank you for your time to answer 😸🐱😸🐱
@PhotoSlash
@PhotoSlash Год назад
well this looks like hell tbh, the report part in particular. damn it looks so demanding
@papahorse3347
@papahorse3347 Месяц назад
can you post your commands file you made?
@massylii
@massylii Год назад
Hey bro I'm new to pentesting I wanted to ask you what should I start first... The pnpt certification or the cpts
@bmdyy
@bmdyy Год назад
It's really up to your preference, both are aimed at beginners and both cover more or less the same content.
@massylii
@massylii Год назад
@@bmdyy thank you bro 🙏
@XenolVlatriX
@XenolVlatriX 8 месяцев назад
could you advise the pre-requisite for taking the CPTS as a complete beginner? is the course provided enough to pass the exam? appreciate your reply bro!@@bmdyy
@sleepstudyreleaxsounds6975
@sleepstudyreleaxsounds6975 Год назад
May I ask how to use genericwrite in ad? I know that I can modify the user password, add spn and get hash, but I have many accounts and passwords but I can’t get the shell. Please advise, thank you
@bmdyy
@bmdyy Год назад
The Bloodhound has a great explanation for this: bloodhound.readthedocs.io/en/latest/data-analysis/edges.html
@sleepstudyreleaxsounds6975
@sleepstudyreleaxsounds6975 Год назад
@@bmdyy thank you
@HarshGajbhiyaOfficial
@HarshGajbhiyaOfficial Год назад
PNPT review
@poplu7076
@poplu7076 Месяц назад
Why did you stop uploading 😢
@buretmarcano8851
@buretmarcano8851 Год назад
What about the AD part of the exam!? It was heavy!?
@bmdyy
@bmdyy Год назад
A large portion of the exam dealt with the various AD techniques taught in the course, I think most attacks taught showed up in the exam although not all led somewhere.
@ricardo22448
@ricardo22448 Год назад
What about beginners? i think i need more time than 49 days hahaXD
@theintrovert-extrovert1552
@theintrovert-extrovert1552 2 месяца назад
Why you stopped making videos?
@martinlastname8548
@martinlastname8548 Месяц назад
Life
@theintrovert-extrovert1552
@theintrovert-extrovert1552 Месяц назад
​@@martinlastname8548he died? 🙄
@danishishtiaq347
@danishishtiaq347 Год назад
Really were you the first person to pass this exam?
@aiportalofficial
@aiportalofficial Год назад
Looking at your wall you are obviously not only certified from top to bottom part have a ridiculous amount of experience I wanted to ask you and I hope you actually see this for someone that is handicapped and can only work from home from all the courses and search Etc would you say that the hack the box would be ideal given that they are highly practical and I believe one of them was in collaboration with heck of one and it doesn't need to be on a resume I guess what I'm saying is from your experience if you strip everything away and you had your standard Security knowledge do you think that those two pathways would allow you to begin working from home at least to begin? If not would you choose a different approach I really appreciate it if you don't answer.
@Stopinvadingmyhardware
@Stopinvadingmyhardware Год назад
Sure, now stop using my hardware for a dam dart board
@ryszkos
@ryszkos Год назад
Bro turn off this music.
@aziela1024
@aziela1024 Год назад
Great vid ! I’m a student and want to start my journey early. Would this be considered a good pathway? given the CPTS is harder than the PNPT. 1. Tryhackme 2. eJPTv1 and/or v2 3. PNPT 4. Hackthebox academy - CBBH - CPTS 5. OSCP ( or maybe the OSCP before the CPTS?) Thanks in advance!
@bmdyy
@bmdyy Год назад
Thanks, I have not taken any eLearnSecurity certs so I can't comment on those, but apart from that the path looks solid.
@youssefzero9059
@youssefzero9059 Год назад
It's the same path he took
@7DuRd3n
@7DuRd3n Год назад
they lost me when they said it was free then expected ppl to pay tryhack me + vulnhub is a much better option
Далее
You want a real DNS Server at home? (bind9 + docker)
32:31
My little bro is funny😁  @artur-boy
00:18
Просмотров 8 млн
НЕ ПОКУПАЙТЕ ЭТО!
00:29
Просмотров 32 тыс.
My Guide to HTB’s CBBH Course/Exam
11:07
Просмотров 19 тыс.
OSCP ⚔️ CPTS
19:46
Просмотров 29 тыс.
How I Passed The OSCP On My First Attempt!
39:58
Просмотров 24 тыс.
HackTheBox - PC
29:32
Просмотров 13 тыс.
HTB CPTS Review
14:02
Просмотров 3,8 тыс.
My little bro is funny😁  @artur-boy
00:18
Просмотров 8 млн