The Ugly Truth About Hacking

The Ugly Truth About Hacking

The Cyber Mentor

2 недели назад

28,581 Просмотров

If you're looking to get started in Cybersecurity, we've got over 30 hours of free content, including a few of our courses: https://www.youtube.com/playlist?list=PLLKT__MCUeixqHJ1TRqrHsEd6_EdEvo47

00:00 Intro
00:21 A Message from TCM
00:49 Ambiguity when hacking
03:29 Hacking is more than just getting root
04:55 Hacking gets more fun over time
06:04 Be prepared for hostility in cybersecurity
07:00 Cybersecurity certifications are a necessary evil
08:18 Outro

Sponsor a Video: https://www.tcm.rocks/Sponsors
Pentests & Security Consulting: https://tcm-sec.com
Get Trained: https://academy.tcm-sec.com
Get Certified: https://certifications.tcm-sec.com
Merch: https://merch.tcm-sec.com

📱Social Media📱
___________________________________________
Twitter: https://twitter.com/thecybermentor
Twitch: https://www.twitch.tv/thecybermentor
Instagram: https://instagram.com/thecybermentor
LinkedIn: https://www.linkedin.com/in/heathadams
TikTok: https://tiktok.com/@thecybermentor
Discord: https://discord.gg/tcm

💸Donate💸
___________________________________________
Like the channel? Please consider supporting me on Patreon:
https://www.patreon.com/thecybermentor
Support the stream (one-time): https://streamlabs.com/thecybermentor

Hacker Books:
Penetration Testing: A Hands-On Introduction to Hacking: https://amzn.to/31GN7iX
The Hacker Playbook 3: https://amzn.to/34XkIY2
Hacking: The Art of Exploitation: https://amzn.to/2VchDyL
The Web Application Hacker's Handbook: https://amzn.to/30Fj21S
Real-World Bug Hunting: A Field Guide to Web Hacking: https://amzn.to/2V9srOe
Social Engineering: The Science of Human Hacking: https://amzn.to/31HAmVx
Linux Basics for Hackers: https://amzn.to/34WvcXP
Python Crash Course, 2nd Edition: https://amzn.to/30gINu0
Violent Python: https://amzn.to/2QoGoJn
Black Hat Python: https://amzn.to/2V9GpQk

My Build:
lg 32gk850g-b 32" Gaming Monitor:https://amzn.to/30C0qzV
darkFlash Phantom Black ATX Mid-Tower Case: https://amzn.to/30d1UW1
EVGA 2080TI: https://amzn.to/30d2lj7
MSI Z390 MotherBoard: https://amzn.to/30eu5TL
Intel 9700K: https://amzn.to/2M7hM2p
G.SKILL 32GB DDR4 RAM: https://amzn.to/2M638Zb
Razer Nommo Chroma Speakers: https://amzn.to/30bWjiK
Razer BlackWidow Chroma Keyboard: https://amzn.to/2V7A0or
CORSAIR Pro RBG Gaming Mouse: https://amzn.to/30hvg4P
Sennheiser RS 175 RF Wireless Headphones: https://amzn.to/31MOgpu

My Recording Equipment:
Panasonic G85 4K Camera: https://amzn.to/2Mk9vsf
Logitech C922x Pro Webcam: https://amzn.to/2LIRxAp
Aston Origin Microphone: https://amzn.to/2LFtNNE
Rode VideoMicro: https://amzn.to/309yLKH
Mackie PROFX8V2 Mixer: https://amzn.to/31HKOMB
Elgato Cam Link 4K: https://amzn.to/2QlicYx
Elgate Stream Deck: https://amzn.to/2OlchA5

*We are a participant in the Amazon Services LLC Associates Program, an affiliate advertising program designed to provide a means for us to earn fees by linking to Amazon.com and affiliated sites.
Ссылки и html тэги не поддерживаются


Комментарии:

@user-um8tq1tz7m
@user-um8tq1tz7m - 06.07.2024 14:16

How can you be a certified pro when every 30 mins there's new malicious coding popping up you never seen chat gpt has made it way too easy along with wizard payload

Ответить
@PaladinGMS
@PaladinGMS - 05.07.2024 00:49

Hi there Cyber Mentor I am a new Sub ,& love your advice ,I did want to ask you can you make a video of which exactly fundamentals labs we need to do on HackTheBox or which INE labs we’d need in prior to taking on the eJPT thank you in advance if you do this 🙏🏼

Ответить
@gainer5526
@gainer5526 - 04.07.2024 22:28

Great video but you left out 2 important things get a certification speciifcally in EH first to get a good foundation and learn to seperate bs from useful info otherwise you go down a rabbit hole.

Ответить
@dancarr6613
@dancarr6613 - 04.07.2024 16:09

Certification part really hit home. I'm awful at exams and I do panic thinking how am I ever going to progress. Thanks for your input!

Ответить
@jordanaldrich
@jordanaldrich - 04.07.2024 06:42

Fantastic advice!

Ответить
@cervezafria4807
@cervezafria4807 - 04.07.2024 05:55

Thanks for this, the more I deep in hacking techniques, the more overwhelming it is, and many times i just learn the technique as an algorithm, without fully understand why. Yeah, It's really important to build things to really understand why, but this helped me to deal with my impostor symdrome untill i become a really expert.

Ответить
@cameronribeiro9660
@cameronribeiro9660 - 03.07.2024 13:13

Just remember: certifications can be a fun way maybe to test your self: but like a university degree or any other certification: they are ultimately meant to prove to someone else that you can work for them. My question was always: why would you want to work for someone else? That means: you are letting that someone else decide your quality of life. The salary that they decide you are worth, decides everything about your life! In cyber security: the only people I know that work on contract for some company are the people that have the mindset “What if I can’t find any bugs?”. Stop thinking of reasons why you can’t do something and stop looking at all the negative negatives! Use that same energy to figure out how you can find bugs! Because I promise you…. If you don’t find the bugs…..SOMEONE ELSE WILL! A person who works on a contract at a cyber company is like a domesticated dog that knows when he will be fed each day! The “black hat” is the wolf outside in the woods who has to re-create each night how to find food again and he has to do it whether it is 100° outside or 0 and snowing like crazy! Who has no choice but to find the food!

Ответить
@Abc-sl1nf
@Abc-sl1nf - 02.07.2024 21:07

Thanks for being honest about your learning experience.

Ответить
@Mugen_FB317
@Mugen_FB317 - 02.07.2024 16:46

Thanks, sir!!!! I’m working on improving my skills and learning to become a Pentester I was struggling but I’m not giving up!!

Ответить
@rr-fn5bs
@rr-fn5bs - 02.07.2024 05:32

hearing u say that first part about not understanding everything but proceeding was such a relief to here. holy shit

Ответить
@Antagonisten
@Antagonisten - 02.07.2024 01:34

"Ifølge noen brukere på Reddit, spesifikt en som allerede hadde erfaring som pentester, var TCMs praktiske etiske hackingkurs ikke verdt pengene. De mente at mye av materialet overlappet med det de allerede hadde lært fra andre kilder, og at noen av labene var tidkrevende å sette opp. Aktivitetskatalogen var også utdatert!"

Ответить
@benthere2065
@benthere2065 - 01.07.2024 23:48

First off…thank you for all of the videos, they’re awesome!!! In my current job I spend a lot of time driving so I can listen to them and try to learn something new while getting paid, woo hoo! While taking a break from learning I came across a video where a guy got a tattoo of one of your logos and got free access to all of your courses for life. Is this a real thing? If so how do you go about it, I’d definitely get a tattoo for free lifetime education!!!

Ответить
@lexi-vx1pd
@lexi-vx1pd - 01.07.2024 19:07

Drinking from a firehose would be the most accurate description!

Ответить
@yesssanibelle
@yesssanibelle - 01.07.2024 14:57

In the corporate world, cyber and IT cost money.. they don’t make any. And it’s all about the bottom line. Harsh but true coming from someone who lives it firsthand. It will never be at the same level as the sales org, responsible for bringing in hundreds of thousands of dollars at any organization.

Ответить
@patrickchan2503
@patrickchan2503 - 01.07.2024 14:05

if people hate pentesters... and start a fight in a JIRA ticket.... isn't that a management + HR + mental health problem?

Ответить
@satheeshwaranJ
@satheeshwaranJ - 01.07.2024 13:22

State management in React? Let me know what you would want to understand.

Ответить
@hosunchoe9831
@hosunchoe9831 - 01.07.2024 07:32

I love the straight-forward-ness of this video. Clear, to the point and without over-sensationalizing. Thank you.

Ответить
@yayadiallo3803
@yayadiallo3803 - 01.07.2024 07:02

It feels good to hear this from a pros 🎉😊

Ответить
@DakotaFord592
@DakotaFord592 - 30.06.2024 18:26

This man is so beautiful. I want to put my face next to the arch of his foot!

Ответить
@yehyamneimne
@yehyamneimne - 30.06.2024 12:58

What about blueteams?

Ответить
@opencuriosity
@opencuriosity - 30.06.2024 11:30

Thanks for saying this out, i constantly feel like it is something I'll never understand, and just feeling alone as a beginner, unlike programing where there is a lot of people to reach out to for help.

I also felt bad when i received a real world opportunity to Pentest a website just to find out the technology and systems (lay of the land) in real world challenges are nothing like the htb(hack the box) or owasp tutorial i was doing, It broke my heart.

Ответить
@KosstAmojan
@KosstAmojan - 30.06.2024 00:33

"There is no certification leaderboard." oof.

Ответить
@quantaVastitude2021
@quantaVastitude2021 - 29.06.2024 15:30

I joined hackers group and they told me "Hackers are people who train themselves"

Ответить
@whyYUbee
@whyYUbee - 29.06.2024 10:19

It is overwhelming but cybersecurity is still my goal. However I will start from IT first and see where it gets me.

Ответить
@ayvid.
@ayvid. - 29.06.2024 09:48

I chose this domain for myself thinking the my interest will push me further but when I came to know that we need to do certifications to prove our knowledge to industries, I was done. Those certifications are wayyyyy beyond my ability to pay 😢. I'm just a college student, Even if I wanted to learn, these expensive certifications are stopping me from doing so 😢.

Ответить
@EUROSPORTS4TECH
@EUROSPORTS4TECH - 29.06.2024 06:48

We need group to support us beginners

Ответить
@davidf_bs
@davidf_bs - 29.06.2024 02:38

Thanks for the video man, it’s interesting to see as someone who is just starting out. There were 2 things you said that I would like to ask about, the first is that pentesters are only brought in for regulatory stuff. What are some of the laws that pentesters are needed to help comply with? I was unaware that there were any. Second - just curious, but what is an example of an issue in a jira ticket that got escalated to an office confrontation?

Ответить
@PatrickMcCoyJr
@PatrickMcCoyJr - 29.06.2024 01:29

Lets talk about other problems:
- Cybersecurity is always going be to the group that gets the most blame when they are trying to fix things aka you will get the most hate of all the IT groups unless you are part of are cyber focused group.
- Because cyber doesn’t make money it can be hard to justify the salaries that we make but as soon as a company is hacked these often double and triple when before they had no “budget”. We are a lost leader that constantly protects night and day but we don’t make money, we stop the bad guys from getting the money.

Ответить
@h5e
@h5e - 29.06.2024 00:35

You don't even know how much I needed to hear this

Ответить
@priyanshuroy4861
@priyanshuroy4861 - 29.06.2024 00:28

Congratulations on 750k subs ✨
It'd be really helpful if you can make a video on how to contribute in open source from the cybersec domain

Ответить
@marshall1693
@marshall1693 - 28.06.2024 23:34

Guys help. Should i take the ejpt or pjpt. Which is better?

Ответить
@TheMusicalArtist
@TheMusicalArtist - 28.06.2024 23:00

The funniest things about this field is graduating with a degree will still require Certifications. Your degree is supposed to cover the need of the certification, it’s supplemental. Most professional hackers are script kiddies at best. Technicians using tools. It’s become odd now.

Ответить
@siphokazee
@siphokazee - 28.06.2024 22:03

Thanks for the videos as the beginner I constantly feel like I don’t know what’s going on. I can’t wait for everything to click.

Ответить
@rw2783
@rw2783 - 28.06.2024 21:55

Another good and positive video !

Ответить
@ammarabu5mes271
@ammarabu5mes271 - 28.06.2024 21:19

One thing about me is I don't know anyone (friends) that have the same energy. I see people in linkedin who always achieve certs and amazing things but they are in different places(colleges or cities), I can't connect with them. But, in my college or my friends they're always surprised by my energy toward pentesting. I can't find friends like me who are motivated to learn more and more in cybersecurity. I feel like I am all alone but it's ok, I know how to live with that I understand that one day at some point in my path I will find friends who have the same energy as me.

Ответить
@3dprintinglady
@3dprintinglady - 28.06.2024 20:47

I think the most depressing thing about the field of Cyber is that there is a limitation to what can you learn in theory or by doing labs alone. At some point you need a personal mentor, ideally in the work context where you can work on actual projects, but with no entry level jobs anywhere I wonder how many people give up, or worse - how many get positions in dodgy online/ ransomware groups as these are the only people who want to work with you as a beginner…

Ответить
@Indraneel_Ray
@Indraneel_Ray - 28.06.2024 20:27

Thanks a lot, you are so kind and I watch you as my mentor in cybersec

Ответить
@sarathaayerkulam146
@sarathaayerkulam146 - 28.06.2024 20:20

Hey guys I tell you something and my personal experience... If you're a beginner and try to learn cybersecurity and ethical hacking... And you want be a real time hacker... Then you need to understand something very clearly...

Hacking is like art, so you should spend more time to learn.

Basic
Hardware knowledge
Networking knowledge
Network+ and CCNA

Then go to learn
Web development
HTML, CSS, JavaScript, any one backend program language Python or Java.
SQL or any DBMS

Note
If you don't know how working website and database.. then you can't hack them with your own ideas...

Then go to learn
Linux kernel
And About severs like an AWS, MCSE

Then go to learn
C++ or C
Because if want be a hardware hacker this language is very powerful...
Most of malware and Antivirus written in c++ or C.

One's you learn these all then you take any CEH course then you become real time hacker...

Without knowing these knowledge then just you wasting your time... Really for beginners it's impossible to learn ethical hacking in 40 hours... Just you understand what is hacking how it's works... But you can't hack anything...

So study Hard and gain your knowledge
I hope this information is helpful to beginners.

Ответить
@romilpatel8640
@romilpatel8640 - 28.06.2024 20:05

"🎉 Congratulations on 750k subscribers!

touch of XSS humor:

<script>alert('I love PWPT!')</script>

Looking forward to diving into the world of web penetration testing with the PWPT certification. Thanks for the opportunity!"

Ответить
@harshalmourya982
@harshalmourya982 - 28.06.2024 20:05

How should I start ethical hacking as a beginner

Ответить
@FactsbyMuslim
@FactsbyMuslim - 28.06.2024 19:40

Happy 750K Subs 🥰.
Lets see if we can grab a (free) voucher for PWPT.
Thanks,
@MuslimFromPK

Ответить
@kazmir_
@kazmir_ - 28.06.2024 19:36

being less salty in tickets...oh boy😆

Ответить
@JoeC_aka_PwnerJoe
@JoeC_aka_PwnerJoe - 28.06.2024 19:26

Happy 750k!

Fantastic video, Alex. Thanks for the positive insights! One thing that hit home for me is how difficult pentesting can be in the beginning. I'm glad you said it gets better and more fun as time goes on, I needed to hear that :)

Ответить
@Abiha596
@Abiha596 - 28.06.2024 19:23

Should I go for ejpt?

Ответить
@azimuddin3658
@azimuddin3658 - 28.06.2024 19:10

"certifications are a necessary evil" harsh true

Ответить
@shygrammer
@shygrammer - 28.06.2024 19:06

state management is not hardddd

Ответить
@KiranSinghOfficial
@KiranSinghOfficial - 28.06.2024 19:03

Really i feel 😅 Same here
In Ethical Hacking domain

Ответить