Address
304 North Cardinal St.
Dorchester Center, MA 02124
Work Hours
Monday to Friday: 7AM - 7PM
Weekend: 10AM - 5PM
Address
304 North Cardinal St.
Dorchester Center, MA 02124
Work Hours
Monday to Friday: 7AM - 7PM
Weekend: 10AM - 5PM
I finally got my final feedback, so it is time for my eWPTX review.
The exam was very similar to the eWPT exam.
To quote NovaHax on TechExams:
While sub-domain enumeration wasn’t quite as important to start this one, it was another standard web-app pentest.
There were a number of venues of exploitation to follow, albeit harder than the last cert.
Standard information gathering, enumeration, and exploitation apply to the challenges, but make sure you take special care with filter avoidance.
In the end, I ended up with around 15 vulnerabilities for the entire application in a 27 page report.
The course material for eWPTX was in-depth, but here is a bit about each section.
C:\WINDOWS\system32>findstr /C:"sc{r}" \WINDOWS\SYSTEM32\mshtml.dll | find "{" > C:\Users\Ray\Desktop\xss.txt
The XSS sections were great, and I have plans for a few more blog posts about them.
There were a few interesting chapters between XSS and SQLi, though obviously these were the meat of the course.
These few modules were actually very helpful when it came to SQL Injection, and I look forward to taking them even further.
As someone who has always been a huge fan of XML attacks, I loved these sections.
Since I already got my feedback, I’m just waiting on the physical cert to arrive!
This cert was awesome, and I’m looking forward to some additional research following it.
As you can see, I’ve already posted two new topics on XSS – frameset and short.
Beyond this, I plan on posting a bit more about XPath, XXE, SQLi, filter avoidance, CSRF, and even more XSS.
This was definitely a challenging cert, but it was well worth it in my opinion. The relevance to my current position is great, and I learned a lot from it.
Though I’ve actually already started it, next up is the eMAPT course.
Ray Doyle is an avid pentester/security enthusiast/beer connoisseur who has worked in IT for almost 16 years now. From building machines and the software on them, to breaking into them and tearing it all down; he’s done it all. To show for it, he has obtained an OSCE, OSCP, eCPPT, GXPN, eWPT, eWPTX, SLAE, eMAPT, Security+, ICAgile CP, ITIL v3 Foundation, and even a sabermetrics certification!
He currently serves as a Senior Staff Adversarial Engineer for Avalara, and his previous position was a Principal Penetration Testing Consultant for Secureworks.
This page contains links to products that I may receive compensation from at no additional cost to you. View my Affiliate Disclosure page here. As an Amazon Associate, I earn from qualifying purchases.
Nice job! I just turned in my report for the eWPT. Waiting on my feedback. I don’t think I did so well after reading your post lol.
Haha, congrats!
No? I’m sure you did fine, unless you missed a huge part of it.
What a garbage review? You’ve barely mentioned anything in the course at all.
While I disagree with your user information/tone, I actually appreciate the feedback on the topic. There used to be a lot more information about the course material and modules on the eLearn site, which is why I left it out of mine. That said, I did add a lot more information about what modules there are and what I thought of them. Other than that, I plan on blogging specifics and demos for some of the things that I learned.
Thanks again, and good luck!
How much time did you spend on the exam? I’m currently working through the course material and if I’m correct, the exam lab is available for a week, but I’m wondering how much time one would actually need on average to test the exam app.
I ended up spending basically the entire week on the hands-on portion of the exam, though writing the report didn’t take anywhere near the full 7 days.
That said, I kept working during the process, so it could definitely be shortened if it was all you were doing.
Hello,
Could you please let me know which is the proper plan (Full or Elite) when someone is working full-time ?
How many hours you studied per week ? Its better to purchase hours or days ?
I appreciate your reply!
Hi,
I’d definitely recommend the Elite unless you are going to put in a ton of hours after work and on the weekend. The real reason for this is the exam voucher that never expires. When I did my eCPPT I ended up spending $300 or $400 extra just to keep it active and renewed.
The hours or days will depend on you, but I definitely prefer hours (is that even a choice now?)
As far as hours per week, it will vary from person to person. I didn’t really track mine, but based on the dates in my Evernote it took me about 2 months from start to completing the exam (while working).
Hello,
Do you recommend to take this course after oscp? I have finished oscp last year and I don’t know which course or cert should I take for now. I don’t want to stop learning ray!
Are you taking any course currently? which course you taking?
Thanks,
Eric
Hi Eric,
You could take this course before OR after the OSCP if you wanted, as they aren’t really related. That said, I’d take this one after eWPT unless you have a fair amount of Web App Pentesting experience. I took it while a Web tester and still learned a lot.
I understand, and am always taking courses myself! I’m currently finishing up the SecurityTube Linux Assembly Expert (see my recent posts), and plan on starting the OSCE next month!
Hi Doyler,
Thanks for the information. I completed my OSCP around 5 months ago and I am interested in eWPTX. Do you recommend doing eWPT first or can I go straight to eWPTX?
How does the difficulty compare to OSCP (granted the web app portion in OSCP was not huge).
Were asp.net and .net core applications targeted in the course or just more php?
Thanks
You’re welcome, and congratulations on the OSCP!
I do recommend doing the eWPT first if you have the time/money. I was already a web application penetration tester at the time, and I still learned some useful tips and tricks.
The difficulty is probably a little easier than the OSCP overall, but it’s an entirely different topic.
It was primarily PHP based, but most of the techniques were platform agnostic (filter bypasses, etc.).
Hey Doyler,
Congrats on getting the cert. How much coding do I need to pass this exam? Does it involve writing a lot of php scripts? Also, is every scenario/ vuln covered in the labs and videos that you came across in the exam. Apart from the materials what other sources would you like to suggest?
Thanks
Thanks, it was an awesome one!
You don’t need to know any coding, but it never helps to be familiar with various languages during penetration tests. As far as writing scripts, you can always automate tasks if you’d like, or just perform the actions manually.
That said, the labs/material/videos will cover everything that you need to pass the exam, as long as you understand the material!
Other than that, you can always look into other vulnerable VMs/web based CTF challenges for extra practice.
Thanks again, and good luck!
Thanks Doyler!!
[…] eWPTX Review – EXTREME Web Apps for EXTREME Hackers […]