+ Reply to Thread
Results 1 to 18 of 18

Thread: Ethical Hacking

  1. Senior Member ssnyderu2's Avatar
    Join Date
    Nov 2014
    Location
    Ohio
    Posts
    444

    Certifications
    A+, Network+, Security+, CIW Foundations and MTA OS Fundamentals
    #1

    Default Ethical Hacking

    Hello. My 12 year old daughter has expressed interest in being an ethical hacker. I want to be able to give her a taste of what this is like. What do you recommend as a good start for this?
    2018 Goals: CCNA R&S
    Certifications:
    A+, Network+, Security+, CIW Foundations and MTA OS Fundamentals
    Lab: 3x Cisco 2811 Routers, 3x Cisco 3750 Switches and Cisco 2620 Router with NM-32A module
    CANCER SURVIVOR! In Remission Since September 2016!
    Reply With Quote Quote  

  2. SS -->
  3. Senior Member
    Join Date
    May 2013
    Posts
    1,307

    Certifications
    CISSP, GWAPT, GSEC, C|EH, CCNA:Security, CCNA:R&S, CCENT, Security+, Network+
    #2
    I would start her with very basic programming or programming like experiences. Google coding for kids or something similar and I’m sure you can find things.

    If she actually saw REAL hacking instead of Hollywood hacking, she probably would get bored at her age...also at her age it wouldn’t be responsible to give her real tactics as she wouldn’t have the necessary discretion to not get into real trouble.
    Reply With Quote Quote  

  4. Senior Member ssnyderu2's Avatar
    Join Date
    Nov 2014
    Location
    Ohio
    Posts
    444

    Certifications
    A+, Network+, Security+, CIW Foundations and MTA OS Fundamentals
    #3
    Thanks for the info. Getting into trouble is why we are looking into CEH. She expressed an interest in hacking, so I steered her toward the ethical side. She also talked about software development, do coding for kids would kill 2 birds with 1 stone.
    2018 Goals: CCNA R&S
    Certifications:
    A+, Network+, Security+, CIW Foundations and MTA OS Fundamentals
    Lab: 3x Cisco 2811 Routers, 3x Cisco 3750 Switches and Cisco 2620 Router with NM-32A module
    CANCER SURVIVOR! In Remission Since September 2016!
    Reply With Quote Quote  

  5. Senior Member 636-555-3226's Avatar
    Join Date
    Jul 2015
    Posts
    902

    Certifications
    Lots of security certifications, yet the more I learn, the further I have to go...
    #4
    Kali + YouTube is probably easiest and cheapest.

    Otherwise I'd start her on the standard infosec path so she has a bit of diverse background from which she can then delve deeper. My recommendation here would be to study for Security+ with the Darril Gibson book. Not sure if CompTIA has an age limit, but she doesn't need to take the test to learn the stuff. Security+ will set her up for the next step, like Kali + YouTube
    Reply With Quote Quote  

  6. Scruffy-looking nerfherdr tedjames's Avatar
    Join Date
    Jan 2014
    Location
    Surf City, TX
    Posts
    553

    Certifications
    SSCP, Security+ +4
    #5
    Look into CyberPatriot: https://www.uscyberpatriot.org/
    Reply With Quote Quote  

  7. Passion For IT
    Join Date
    Mar 2008
    Posts
    608

    Certifications
    MCTS, MCITP, MCP, A+, Server+, Security+, Project+, CCENT, CCNA-Sec, CEH, CHFI
    #6
    Kali, a few VM's, YouTube. Get some easy stuff (MS07-063 I believe is a huge one that is fun) to pique her interest. From there, it's more difficult, but seeing how it works and getting that initial easy one going is a lot of fun.
    A few certs here and there and everywhere...
    AAS: Computer Security
    BS: Information Technology - Security (WGU)
    MS: Information Security & Assurance (WGU)
    Reply With Quote Quote  

  8. Are we having fun yet? UnixGuy's Avatar
    Join Date
    Mar 2008
    Posts
    3,372

    Certifications
    GCFA, eJPT, RHCE, Solaris 10, SNIA SCSP, Security+, Server+, ITILv3, CCNA (Expired)
    #7
    Sign her up for eLearnSecurity eJPT
    Goal: GCFA (DONE), GPEN
    Reply With Quote Quote  

  9. Senior Member
    Join Date
    May 2013
    Posts
    1,307

    Certifications
    CISSP, GWAPT, GSEC, C|EH, CCNA:Security, CCNA:R&S, CCENT, Security+, Network+
    #8
    Some suggestions here make me laugh...just realize if she attacks for example a bank, and they pursue charges...it’s gonna be you going to jail...

    There is a reason why there is an age limit on a lot of security and hacking certifications.
    Reply With Quote Quote  

  10. Reticulating splines... iBrokeIT's Avatar
    Join Date
    Jul 2013
    Location
    Twin Cities, MN
    Posts
    1,045

    Certifications
    GCIH, GSEC, VCAP5-DCA, VCP5-DCV, MCITP:EA, MCSA 2003/08
    #9
    Quote Originally Posted by TechGuru80 View Post
    Some suggestions here make me laugh...just realize if she attacks for example a bank, and they pursue charges...it’s gonna be you going to jail...
    What? Care to back up that claim with some examples of that actually happening?
    Reply With Quote Quote  

  11. Senior Member shoey's Avatar
    Join Date
    Jun 2016
    Location
    Knowhere
    Posts
    110

    Certifications
    Life
    #10
    Quote Originally Posted by ssnyderu2 View Post
    Hello. My 12 year old daughter has expressed interest in being an ethical hacker. I want to be able to give her a taste of what this is like. What do you recommend as a good start for this?
    My daughter (first kid) was born in August... I dream of the day she asks me about something like this!
    "I have missed more than 9,000 shots in my career. I have lost almost 300 games. 26 times, I've been trusted to take the game winning shot and missed. I've failed over and over and over again in my life. And that is why I succeed." - Michael Jordan
    Reply With Quote Quote  

  12. Senior Member shoey's Avatar
    Join Date
    Jun 2016
    Location
    Knowhere
    Posts
    110

    Certifications
    Life
    #11
    Quote Originally Posted by TechGuru80 View Post
    Some suggestions here make me laugh...just realize if she attacks for example a bank, and they pursue charges...it’s gonna be you going to jail...

    There is a reason why there is an age limit on a lot of security and hacking certifications.
    Yup... it's truly sad how much of our hard earned tax dollars are spent on incarcerating 12 year old girl hackers
    "I have missed more than 9,000 shots in my career. I have lost almost 300 games. 26 times, I've been trusted to take the game winning shot and missed. I've failed over and over and over again in my life. And that is why I succeed." - Michael Jordan
    Reply With Quote Quote  

  13. Senior Member
    Join Date
    May 2013
    Posts
    1,307

    Certifications
    CISSP, GWAPT, GSEC, C|EH, CCNA:Security, CCNA:R&S, CCENT, Security+, Network+
    #12
    Quote Originally Posted by shoey View Post
    Yup... it's truly sad how much of our hard earned tax dollars are spent on incarcerating 12 year old girl hackers
    Parents do occasionally go to jail because of their kids actions...especially if it can be proven that there was incompetent parents.

    Also, fines and lawsuits are a very real thing...ever heard of going for the deepest pockets?

    The funny part is mainly how we spend time telling people to build their foundation and then specialize...yet there are several suggestions for a 12 year old to hack away..that’s pretty funny. Also a bit short sided...teaching a kid to program will make them so much more valuable in any tech career instead of just what’s hot...it’s about setting up for long term success not just instant gratification.
    Reply With Quote Quote  

  14. Senior Member shoey's Avatar
    Join Date
    Jun 2016
    Location
    Knowhere
    Posts
    110

    Certifications
    Life
    #13
    Quote Originally Posted by TechGuru80 View Post
    Parents do occasionally go to jail because of their kids actions...especially if it can be proven that there was incompetent parents.

    Also, fines and lawsuits are a very real thing...ever heard of going for the deepest pockets?

    The funny part is mainly how we spend time telling people to build their foundation and then specialize...yet there are several suggestions for a 12 year old to hack away..that’s pretty funny. Also a bit short sided...teaching a kid to program will make them so much more valuable in any tech career instead of just what’s hot...it’s about setting up for long term success not just instant gratification.
    I actually agree with you. Just wanted to be a smart@ss.

    Obviously teaching a kid (or adult for that matter) how to hack comes with inherent risks; but I also think (imho) that if a specific area interests a kid it might be worth it to indulge them... In a responsible manner. If I sat down with my nephew to teach him about programming he'd lose focus in 10 minutes. Whereas when my brother helps him with programming in mindcraft he has to set time limits otherwise they would be there all day.
    "I have missed more than 9,000 shots in my career. I have lost almost 300 games. 26 times, I've been trusted to take the game winning shot and missed. I've failed over and over and over again in my life. And that is why I succeed." - Michael Jordan
    Reply With Quote Quote  

  15. Senior Member aderon's Avatar
    Join Date
    Jul 2013
    Posts
    392

    Certifications
    B.S. IT - Sec, CCNA Security, CCNA R&S, AWS CSA Associate, CCENT, A+, Net+, Sec+, Proj+, Lin+, LPIC-1, CIW: WFA, CIW: WDS, MTA: OS, MCP
    #14
    Hmmm.. that's a toughie. I'm not an ethical hacker, so take this with a grain of salt lol. But, to be honest, it might be worth introducing her to a simple programming language. Kids seems to be able to pick up some of the easier programming languages if given a bit of guidance. Knowing how to program is an immensely useful skill and would benefit her significantly when hacking.

    I agree with some of the other posters here, that diving into actual hacking right off the bat wouldn't be a good idea both from a responsibility perspective and an interest perspective (she'd likely get bored).

    But, maybe just to have some fun and pique her interest, you could teach her things that most kids would consider hacking but really isn't. Like teaching her how to use "net send" to send messages to other computers, how to use a batch file to spam the screen with a ton of notepad.exe, how to redirect sites with the hosts file, etc.
    Last edited by aderon; 12-23-2017 at 04:41 PM.
    2017 Certification/Degree Goals: AWS CSA (Complete), OSCP (In Progress), M.S. Cybersecurity (In Progress)
    2017 Learning/Reading Goals: Advanced Bash-Scripting Guide (Completed), Automate the Boring Stuff with Python (Completed), Black Hat Python (Completed), CodeAcademy Learn Python (Completed), SecurityTube Python Scripting Expert (Completed), Assembly Language Megaprimer for Linux (Completed), The Basics of Hacking and Penetration Testing (Completed), PenTesterLab Bootcamp (Completed)
    Reply With Quote Quote  

  16. Senior Member yoba222's Avatar
    Join Date
    Jun 2013
    Posts
    496

    Certifications
    LFCS, GCIH, eJPT, CCNA, CAPM, Trifecta
    #15
    I haven't gotten to reading either of these yet but they look like they'd fit the bill:
    Raspberry Pi for Secret Agents:https://www.barnesandnoble.com/w/ras...ole/1124097502
    Python for Secret Agents:https://www.packtpub.com/application...ents-volume-ii
    Reply With Quote Quote  

  17. Senior Member TeKniques's Avatar
    Join Date
    Jul 2004
    Location
    Oregon, USA
    Posts
    1,263

    Certifications
    OSCE, OSCP, CISA, CISSP, SSCP, MCSA 2008, MCSE 2003: Security, MCDST, MCP, Security+, Network+, A+, Project+, CCENT, CCNA
    #16
    I would start with having her learn the Windows and Linux operating systems in detail. She'll also want to learn network protocols and how they work. Without that foundation knowledge it's hard to just start to pick up Kali and know why certain tools work and how to enumerate a target. Immediate exposure to programming languages as others have mentioned is important; Python would be a great scripting language to start with.
    Reply With Quote Quote  

  18. Senior Member
    Join Date
    May 2006
    Posts
    2,071

    Certifications
    CISSP, CCSP, eJPT, ITIL,PA ACE,Qualys Certified Specialist, A+
    #17
    Quote Originally Posted by TeKniques View Post
    I would start with having her learn the Windows and Linux operating systems in detail. She'll also want to learn network protocols and how they work. Without that foundation knowledge it's hard to just start to pick up Kali and know why certain tools work and how to enumerate a target. Immediate exposure to programming languages as others have mentioned is important; Python would be a great scripting language to start with.
    That's the best advice that has been given in this thread.

    How do you expect a 12 year old to understand the concept of enumeration and reconnaissance when they don't understand how other devices talk with one another, or what is the significance of an open port or a vulnerable service when they don't understand what a port or a service is.
    Teach her the fundamentals of networking and operating systems, start her of with a Linux flavor as a primary OS and take it from there.
    Reply With Quote Quote  

  19. Junior Member Registered Member
    Join Date
    Jan 2018
    Posts
    8
    #18
    Deffintly first the basics: Understanding computers hardware etc, maybe basic programming. You can also buy a raspberry pi and teach basic programming there is a lot of projects on the website of raspberrypi even for kids.
    Reply With Quote Quote  

+ Reply to Thread

Social Networking & Bookmarks