Where can I find an advanced ethical hacking/penetration testing course?

Where can I find an advanced ethical hacking/penetration testing course?

I'm looking for an advanced ethical hacking/penetration testing hands-on course. I'm not as interested in getting a certificate as I am in the training provided. I already have my CISSP certification and have been doing pen testing and vulnerability assessments for different customers for several years. What course(s) would you recommend?

To continue reading for free, register below or login

Requires Membership to View

To gain access to this and all member only content, please provide the following information:

By submitting your registration information to SearchSecurityChannel.com you agree to receive email communications from the TechTarget network of sites, and/or third party content providers that have relationships with TechTarget, based on your topic interests and activity, including updates on new content, event notifications, new site launches and market research surveys. Please verify all information and selections above. You may unsubscribe at any time from one or more of the services you have selected by editing your profile, unsubscribing via email or by contacting us here

  • Your use of SearchSecurityChannel.com is governed by our Terms of Use
  • We designed our Privacy Policy to provide you with important disclosures about how we collect and use your registration and other information. We encourage you to read the Privacy Policy, and to use it to help make informed decisions.
  • If you reside outside of the United States, by submitting this registration information you consent to having your personal data transferred to and processed in the United States.

There are two schools of thought when it comes to advanced penetration testing: 1) becoming an expert of tools and methods and 2) becoming an expert of the vulnerabilities and exploit code. Both are valid pursuits intellectually and professionally, and they are not necessarily mutually exclusive. But diving into exploit code clearly requires knowledge of programming.

Since the question stated that you are more interested in knowledge than a certificate/certification, one course popped into my head immediately. I would recommend the InfoSec Institute's Advanced Ethical Hacking Course taught by Jack Koziol. In the course he not only covers the tools and methods such as SQL Injection, sniffing SSL encrypted sessions and Metasploit, but he also covers the code end of the equation with reverse engineering and writing your own exploit code. In addition, there is an option to sit for the Certified Expert Penetration Tester (CEPT) exam (not to be confused with the more well known cert from Mile2 CPTE), but the CEPT barely registers a blip on the security credential scene, so this is completely optional. If knowledge is your reward, Jack is your man.

This was first published in November 2006