Effective Exam Guidelines for Successful Pentesting

cnwpp exam guidelines by uncle rat n.w
1 / 15
Embed
Share

"Learn how to plan, document, and execute your pentesting exam effectively with these guidelines. Understand the requirements, deliverables, and technical issues involved. Receive important instructions on scheduling, testing, reporting, and feedback completion."

  • Pentesting
  • Guidelines
  • Exam
  • Planning
  • Requirements

Uploaded on | 0 Views


Download Presentation

Please find below an Image/Link to download the presentation.

The content on the website is provided AS IS for your information and personal use only. It may not be sold, licensed, or shared on other websites without obtaining consent from the author. If you encounter any issues during the download, it is possible that the publisher has removed the file from their server.

You are allowed to download the files provided on this website for personal or commercial use, subject to the condition that they are used lawfully. All files are the property of their respective owners.

The content on the website is provided AS IS for your information and personal use only. It may not be sold, licensed, or shared on other websites without obtaining consent from the author.

E N D

Presentation Transcript


  1. CNWPP EXAM GUIDELINES By Uncle RAT

  2. Agenda - - Planning Planningyour yourexam exam - - Requirements Requirements - - Deliverables Deliverables - - Technical Technicalissues issues - - Breaks Breaks - - Report Reportsending sendingguidelines guidelines 2

  3. Planning your exam

  4. Planning - - Mail Mailpreferred preferreddate date+ + starting startingtime time+ + exam examvoucher vouchercode codeto to info@thexssrat info@thexssrat..com com - - We We will will reply reply if if date date is is confirmed confirmed + + send send over over NDA NDA to to sign sign (read (read carefully carefully and and send send back back signed) signed) - - At At start starttime, time,1 1 hour hourmeeting meetingmax maxfor forscope scopedefinition definition - - Proctor Proctorwill willjoin joinyou youvia viadiscord discordcall call - - 8 8 hours hourstime timeallotted allottedto to create createtest testplan plan - - Request Requestapproval approvalfrom fromproctor proctor 4

  5. Planning - - Approval Approvalwill willbe be - - Don t Don tstart starttesting testinguntil untilyou youreceive receivesigned signedtest testplan plan - - 8 8h h to to test test - - After After8 8,, test testenv envwill willgo go offline offlineso so gather gatherevidence evidencewhile whiletesting testing - - 24 24h h to to complete complete report report (not (not proctored) proctored) and and send send in in + + send send in in debriefing debriefing ( (powerpoint powerpoint + + video videogoing goingover overfound foundissues) issues) - - 5 5 workdays workdayslater latermax maxyou youwill willget getfeedback feedbackand andhear hearif if succeeded succeeded 5

  6. Requirements

  7. Requirements - - Documentation Documentationand andprocess processmatter mattera a lot lot - - You Youwill willneed needto to hack hacka a network network(ports), (ports),API API and andwebsite website - - At At least least70 70% %of of marks marksrequired requiredto to pass pass - - Not Not perse perserequired requiredto to find findall all issues, issues,that thatis is even evenimpossible impossible - - Report ReportEVERYTHING, EVERYTHING,this thisis is a a pentest pentest,,even eveninformatives informatives - - Ask Ask questions questions during during the the exam, exam, some some things things will will be be left left out out on on purpose purpose - - NO NO VPN VPNIS IS REQUIRED REQUIRED 7

  8. Deliverables

  9. Deliverables - - NDA, NDA, Signed Signedand anddated dated - - Test Testplan, plan,signed signedand anddated dated - - Test Testreport, report,signed signedand anddated dated - - Debriefing Debriefingvideo videoand andpowerpoint powerpoint 9

  10. Technical issues

  11. Technical issues - - Upon Uponserious serioustechnical technicalissues issues( (Discrection Discrectionof of proctor) proctor) Exam Exammay maybe be paused paused -- -- Exam Exammay maybe be postponed postponed -- -- Always Alwayscontact contactpoctor poctor 11

  12. Breaks

  13. Breaks - - Required Requiredto to inform informproctor proctor - - Encouraged Encouragedto to take takebreaks breaks - - You Youcan canlet letautomation automationrun run - - Exam Examis is NOT NOTpaused paused 13

  14. Report sending guidelines

  15. Report guidelines - - Report Reporthas hasto to be be in in a a ZIP ZIPfile filewith withpowerpoint powerpointand andvideo videodebriefing debriefing - - ZIP ZIP HAS HAS TO TOBE BE PASSWORD PASSWORDPROTECTED PROTECTED - - PASSWORD PASSWORDHAS HAS TO TOBE BE SHARED SHARED - - CHECK CHECKYOUR YOURZIP, ZIP, WE WEARE ARE NOT NOTRESPONSIBLE RESPONSIBLEFOR FORCORRUPT CORRUPTFILES FILES - - Email Emailto to::info@thexssrat info@thexssrat..com com - - Late Latereports reportswill willautomatically automaticallydisqualify disqualifyyou you 15

More Related Content