Certified Penetration Testing Vs. Ethical Hacking

Certified Penetration Testing Vs. Ethical Hacking

"Penetration testing is NOT ethical hacking. The former assesses the security posture of an enterprise against the current threats and risks surrounding it. The latter checks if an enterprise is able to defend itself against a selection of attacks launched by ignorant script kiddies using a few well known tools.

The 2 approaches couldn't be more different. And we're not the first to observe this. The US Air Force did back in 2006 when they compared CEH to CPTS and resoundingly dismissed CEH as being woefully inadequate to address the assessment needs of the hour. Others have been equally forceful in echoing this.

"The bottom line? Ethical hacking is at best a subset of penetration testing; if you're interested in how to correctly assess the security posture of an organization, certify yourself as a penetration testing specialist today!"

Haitham Youssef

CISSP, CRTO, OSCP, eCTHP, eCPPT, ECSA, CHFI, CEH - Red Teamer, Penetration Tester, Cyber Security Analyst & Threat Hunter

9 年

why this comparison is build on CEH, I actually disagree on some points especially that both CEH and CPTS cannot be compared to Offensive Security certificates like OSCP and OSCE

回复
Haitham AlDawsari

Technical Manager - Cybersecurity

9 年

CEH V8 Big Difference !!!!

回复

要查看或添加评论,请登录

Amir A. Kolahzadeh的更多文章

社区洞察

其他会员也浏览了