Tyler Ramsbey
Tyler Ramsbey
  • 407
  • 626 619
Most Cybersecurity Certs are NOT Worth It.
Cybersecurity certs and timeshares have something in common - they both rip you off with annual "maintenance" fees.
In this video, I share my thoughts on whether "maintaining" certifications is actually worth it. Shout out to orgs like TCM Security, OffSec, and Hack the Box who don't require "renewal" fees on certifications.
Enjoy!
Переглядів: 1 964

Відео

Study With Me (Ethical Hacking/Cybersecurity) || Pomodoro [25/5]
Переглядів 6027 годин тому
This is a "Study With Me" video from a recent live stream. I had around 60 people join for the live session, and I did short AMAs during the 5 minute breaks. I received way more positive feedback on this than I was expecting; I hope this helps you stay focused and hit your study goals. I'll be sure to do more of these in the near future. Enjoy!
How I Went From a Pastor to a Hacker...
Переглядів 1,2 тис.9 годин тому
I spent 10 years in pastoral ministry before switching to IT. I even earned a Master's Degree and was working on my doctorate when I decided to walk away from it. In this video, I share more details on how (and why) I left a career as a pastor to become an ethical hacker. Enjoy!
mKingdom - Detailed Walkthrough - (TryHackMe!)
Переглядів 1,2 тис.14 годин тому
In this video, I work through the newest challenge machine on TryHackMe called "mKingdom." As usual, I do my best to share my full methodology and throught process as I solve the machine. Enjoy! Join Hack Smarter: hacksmarter.org
A Browser Extension For... HACKING?!
Переглядів 1,4 тис.19 годин тому
In this video I showcase a new browser extension I learned about called HackTools. This is seriously a super cool tool. It has all your standard hacking tools and payloads in one-click; everything from XSS to AD enumeration. Enjoy! Firefox: addons.mozilla.org/en-US/firefox/addon/hacktools/ Chrome: chromewebstore.google.com/detail/hack-tools/cmbndhnoonmghfofefkcccljbkdpamhi Github: github.com/La...
Airplane - Detailed Walkthrough - (TryHackMe!)
Переглядів 713День тому
In this video, I work through the new "Airplane" challenge room on TryHackMe. This is a unique machine that requires using LFI to discover and exploit a "mysterious" port for initial access. Enjoy! Join Hack Smarter: hacksmarter.org
Securing the Cloud with Amazon Inspector!
Переглядів 318День тому
In this video I work through the "Remediate Vulnerabilities with Amazon Inspector" lab on Pwned Labs. Vulnerability management is a key aspect of enterprise security. Having "always-on" tools that can automate the process of uncovering vulnerabilities is a perfect complement to manual penetration testing and red teaming. Amazon Inspector can be great as part of a layered defensive suite and ide...
XXE Injection - Detailed Walkthrough - (TryHackMe!)
Переглядів 72814 днів тому
XXE Injection - Detailed Walkthrough - (TryHackMe!)
Include - Detailed Walkthrough - (TryHackMe!)
Переглядів 1,1 тис.14 днів тому
Include - Detailed Walkthrough - (TryHackMe!)
How To Create REAL Phishing Infrastructure
Переглядів 8 тис.21 день тому
How To Create REAL Phishing Infrastructure
Builder - Detailed Walkthrough (Hack The Box!)
Переглядів 1 тис.21 день тому
Builder - Detailed Walkthrough (Hack The Box!)
Prevent Breaches with AWS IAM Access Analyzer -- (Pwned Labs!)
Переглядів 31628 днів тому
Prevent Breaches with AWS IAM Access Analyzer (Pwned Labs!)
An INCREDIBLE Platform for Learning AWS
Переглядів 785Місяць тому
An INCREDIBLE Platform for Learning AWS
CyberLens - Official Walkthrough - (TryHackMe)
Переглядів 1,8 тис.Місяць тому
CyberLens - Official Walkthrough - (TryHackMe)
Abuse Dynamic Groups in Entra ID - (Pwned Labs!)
Переглядів 289Місяць тому
Abuse Dynamic Groups in Entra ID - (Pwned Labs!)
Creative (Detailed Walkthrough) - TryHackMe
Переглядів 721Місяць тому
Creative (Detailed Walkthrough) - TryHackMe
Hunt Me II: Typo Squatters (Detailed Walkthrough) - TryHackMe
Переглядів 259Місяць тому
Hunt Me II: Typo Squatters (Detailed Walkthrough) - TryHackMe
Paper (Detailed Walkthrough) -- Hack The Box!
Переглядів 1 тис.Місяць тому
Paper (Detailed Walkthrough) Hack The Box!
Escalate GCP privileges with Implicit Delegation - [Pwned Labs!]
Переглядів 295Місяць тому
Escalate GCP privileges with Implicit Delegation - [Pwned Labs!]
Multiplayer Hacking?! -- King of the Hill by TryHackMe!
Переглядів 1,4 тис.Місяць тому
Multiplayer Hacking?! King of the Hill by TryHackMe!
ThunderDome - Pulled From the Sky || Flag #2 -- [Pwned Labs - Detailed Walkthrough]
Переглядів 323Місяць тому
ThunderDome - Pulled From the Sky || Flag #2 [Pwned Labs - Detailed Walkthrough]
How To Become An Ethical Hacker in 2024 - [Detailed Guide]
Переглядів 7 тис.Місяць тому
How To Become An Ethical Hacker in 2024 - [Detailed Guide]
ThunderDome - Initial Access -- [Pwned Labs - Detailed Walkthrough]
Переглядів 754Місяць тому
ThunderDome - Initial Access [Pwned Labs - Detailed Walkthrough]
The BEST Cloud Pentesting Cyber Range!
Переглядів 4282 місяці тому
The BEST Cloud Pentesting Cyber Range!
Last Minute Advice for the OSCP
Переглядів 1,3 тис.2 місяці тому
Last Minute Advice for the OSCP
Threat Hunting in the Cloud! -- Pwned Labs!
Переглядів 6272 місяці тому
Threat Hunting in the Cloud! Pwned Labs!
Black Hoodie On - [Original Song + Free Download]
Переглядів 1,8 тис.2 місяці тому
Black Hoodie On - [Original Song Free Download]
Web LLM Attacks - [Portswigger Learning Path]
Переглядів 1,1 тис.2 місяці тому
Web LLM Attacks - [Portswigger Learning Path]
The BEST Skill to Learn for a Junior Pentester Role!
Переглядів 1,2 тис.2 місяці тому
The BEST Skill to Learn for a Junior Pentester Role!
Our Definition of "Success" is Destroying Us.
Переглядів 5432 місяці тому
Our Definition of "Success" is Destroying Us.

КОМЕНТАРІ

  • @jlprescott7243
    @jlprescott7243 5 годин тому

    Hmm, some employers require their employees to get certified to keep their jobs. Why not have the employer expense the annual fees? Also, certs are great to bypass the HR gateway or to work in the Gov Tech. It's just the cost of doing business and the ROI working in IT/cybersecurity/cloud makes those annual fees negligible. Cheers!

  • @benheater
    @benheater 22 години тому

    RE: OSCP and msfvenom, you can use msfvenom an unlimited number of times. Just make the payload something like "windows/shell_reverse_tcp" or "linux/x64/shell_reverse_tcp" and connect back to a generic netcat listener. The issue would be if you used meterpreter_reverse_tcp and connected back to multi/handler in msfconsole.

  • @dthem
    @dthem День тому

    thanks for advice ! How much time did you spend learning cybersecurity to get your first job in cybersecurity?

  • @Macj707
    @Macj707 День тому

    your filling in on simply cyber interesting... I watch that a bunch dude I will try and be there

  • @Lidz10
    @Lidz10 День тому

    I gotta say, as a preacher myself. This motivates me in every area of my life at the moment. Keep it up man and you’ll be going places.

  • @rainbowdoesinfosec
    @rainbowdoesinfosec День тому

    Certs are definitely a good gateway into the workforce when you lack experience, but this and anything else are never silver bullets. I think a good piece of advice is that you should not try to collect cert(s) for the sake of collecting them, but rather try to gain the practical lab experience and let certs be a fruit of your learning journey. Once you get in to a related cyber job, focus less on it unless an employer is willing to pay for it. The truth is, there are many people and hiring managers out there that either a) really like when you have x, y, z certs or b) do not care one bit about certs and instead care more about what you can do and contribute on a daily basis. SpecterOps is actually a good example of this. They do not care about certs. Period. Projects are a really great (and free) way of showcasing your skills without shelling out money for a cert to "prove" that you know something. This is just my two cents. Thanks for bringing this up, Tyler!

  • @szicario
    @szicario День тому

    sec+ is the best bang for your buck

  • @SimplyCyber
    @SimplyCyber День тому

    Love the story and bg, and fully resonate with needing to provide for the family and taking action to make it happen. You're a good man Tyler!

  • @user-in2cs1vp6o
    @user-in2cs1vp6o День тому

    Is that parrotOS?

  • @presequel
    @presequel День тому

    this! 100% but my opinion: DO the exam, show that you understand the material. but dont pay annual fees etc to keep the cert.

  • @rohitsinghkarakoti
    @rohitsinghkarakoti День тому

    @TylerRamsbey hey i have opt for ejpt so any tips and can you let me know if the cert is valuable

  • @haxguy0
    @haxguy0 День тому

    Based

  • @Thiccolo
    @Thiccolo 2 дні тому

    Plus, when you are in Cybersecurity for a while, you shouldn't need to renew base level certs as by then you likely gained a better certification 2 or 3 years down the line.

  • @techemus6771
    @techemus6771 2 дні тому

    BLT or security Blue Team Level 1 is really a good cert for a blue team cert that doesn't expire it's way better than Comptia CYSA+

  • @camelotenglishtuition6394
    @camelotenglishtuition6394 2 дні тому

    Annual maintenance fees? Nope. Never in a million years. Also mixrosoft just launched a free cyber security course.

  • @Akram_Alkhateeb
    @Akram_Alkhateeb 2 дні тому

    although you're right, they are still needed and required... at least certain certs not just to land a job, but also due to compliance reasons. some regulatory authorities and security frameworks do not accept your reports unless the author have at least one of certificates listed (they usually have a list). thus, consultancies/cybersec companies will have to hire certified people and ensure all their current team have some or all the required certs. and a lot of customers will reject members of your team that do not have the required certs as well. Offsec by far have the best money vs value certs as they are almost accepted by all compliances/frameworks. you can get OSCP (the most accepted one) and you top it off with OSEP or OSWE or both if you would like and that's it. no need for anything else just do the training for the rest.

    • @TylerRamsbey
      @TylerRamsbey 2 дні тому

      Yeah -- I agree. That's why I recommend hands-on certs that don't have silly maintenance fees (OSCP, PNPT, CPTS, etc.)

  • @sybex200
    @sybex200 2 дні тому

    I have done ISC2 CC free course, and I will never pay them 50 dollars. I am Sec+, Pentest+ and Cysa+ certified, and i must say that Sec+ covers everything what is included in CC from ISC2. I think it's a matter of choice or budget.

  • @k_usuan
    @k_usuan 2 дні тому

    Well Said . It still surprises me till this day . Why pick up certs like is Pokémon Go . When you can actually learn , take courses, practice and build projects , practical labs, tweak and break things , gain experience and most importantly keep your Money!

    • @dip9995
      @dip9995 4 години тому

      Because to do projects you have to actually learn things. It's easier to just study to pass a test with a defined scope so that it looks like you know stuff.

  • @upshawsm
    @upshawsm 2 дні тому

    Your company can pay for annual maintenance fees.

    • @TylerRamsbey
      @TylerRamsbey 2 дні тому

      But what's the point? I get the value of those certs before you're in the industry, but not afterwards. I have the OSCP and 9 CVEs -- what value does something like the CCSP add? none lol

    • @upshawsm
      @upshawsm 2 дні тому

      @@TylerRamsbey A pay raise, promotion, elite partner for your company, DOD 8140 IAM Level 3, validation of new knowledge gained through work experience. I don’t feel like I am losing anything if my employer is sponsoring my certifications and maintenance fees. However, I respect 🫡 your point. I also agree that once you have bonafide work experience certifications are not as important.

  • @trestres4239
    @trestres4239 2 дні тому

    Bro thanks I'm thinking the same 👏

  • @stuffnthings35
    @stuffnthings35 2 дні тому

    WGU BS in Cyber Security is basically just full cert stack. Only reason I'm bulking up on CompTIA. Get me that 4yr degree in 1. And then HR filtration. I'm staying government and you almost need 8570 compliant certs if you want to go anywhere without just large time investments. But as a general rule yes, most certs aren't worth it. Just comes down to time/goals in my opinion. Figure out where you want to be in x-amount of time and then set goals to accomplish that.

    • @TylerRamsbey
      @TylerRamsbey 2 дні тому

      Yup WGU has a great way of doing it (that's what I did). I have another video in the backlog about my time at WGU :)

    • @stuffnthings35
      @stuffnthings35 2 дні тому

      @TylerRamsbey can't wait to see it! I'm just speed running the certs to get it done by next summer. Hopefully sprinkle in an 8570 like ceh along the way just to round out the resume.

  • @Thiccolo
    @Thiccolo 2 дні тому

    Alot of the youtubers and influencers specifically say after 2-3 years to not renew. I had a friend who told me a golden rule, just put the date you got your certification, and it usually gets you past HR filters.

  • @AsdZxc-sj9sd
    @AsdZxc-sj9sd 2 дні тому

    Trueeee I spend days to complete the the thick client

  • @sleightlywhee
    @sleightlywhee 2 дні тому

    I mean you aren't wrong but who's going to tell the braindead dipshits in HR?

  • @Lazy_IT
    @Lazy_IT 2 дні тому

    Actually, this exam not free) You can finish the course for free but you still need to pay for the certificate itself

  • @_rymak_2044
    @_rymak_2044 2 дні тому

    Yeah you're right but the recruiters and the organizations don't get it. They always gatekeep jobs by keeping certs as a mandatory criteria...

    • @TylerRamsbey
      @TylerRamsbey 2 дні тому

      Doing my best to change that as my platform grows :)

  • @AlecMaly
    @AlecMaly 2 дні тому

    I wouldn't avoid a cert due to renewal fees. If I'm 80% of the way to a recognized cert, it's worth it to just get it and don't renew. You can still leave it on the resume and say it expired, I'd like to think it's still better than nothing.

  • @RiskSanchez
    @RiskSanchez 2 дні тому

    I don’t disagree with you. I feel like it’s a easy option for HR to weed out candidates that don’t do continued education.

    • @TylerRamsbey
      @TylerRamsbey 2 дні тому

      I agree -- people should focus on the hands-on certs that don't require renewal fees (OSCP, PNPT, CPTS, etc.)

  • @kaizensky3399
    @kaizensky3399 2 дні тому

    Word!!! These so-called security influencers are wrong too. They advertise these beginner level certs with hidden maintenance fees as free. In fact, most are paid affiliates and receive a cut on these false advertisements of such companies. Then they use keywords such as "talent shortage" to lure beginners into buying these certifications.

    • @sleightlywhee
      @sleightlywhee 2 дні тому

      There absolutely is no talent shortage, there's a job shortage.

  • @patrickmartin8437
    @patrickmartin8437 2 дні тому

    Certs are best used to get past the HR/automated rejection gate. And no one will think that once you stop paying the fees you no longer have the knowledge it took to attain the cert, you'll always be able to say "I passed the CISSP/CCSK/GIAC test." I agree, the fees suck, but certs are critical for getting your foot in the door.

    • @TylerRamsbey
      @TylerRamsbey 2 дні тому

      I agree, but hands-on certs are best and those usually don't require renewal fees (for pentesting anyways)

    • @patrickmartin8437
      @patrickmartin8437 2 дні тому

      ​@@TylerRamsbey that's fair, I forgot the core concept of your channel is pentesting rather than generalized infosec

    • @jamesmckee9017
      @jamesmckee9017 День тому

      ​@@patrickmartin8437 There's more to infosec than pentesting...?!

    • @trey4048
      @trey4048 5 годин тому

      @@jamesmckee9017 I think this is the part thats often forgotten. I agree certs are a scam, I have a ton of them, but if we want to talk about a SUPER oversaturated part of IT then its pentesting. So yeah, if you're going into pentesting you want hands-on certs like PNPT/OSCP/CPT

  • @CartoonSlug
    @CartoonSlug 2 дні тому

    Most certs are a scam, but for an entry level person I think they're valuable. And compared to a college diploma, for example, definitely not as much of a scam.

  • @TiensvanZyl
    @TiensvanZyl 2 дні тому

    100% agree with you

  • @dijik123
    @dijik123 2 дні тому

    Why u dont like offsec

  • @Manzjson
    @Manzjson 2 дні тому

    Wow thanks this was not easy !

  • @VHFUHWFRGD
    @VHFUHWFRGD 2 дні тому

    wtf did i just watch, god freak - gandi killed millions of people you creep

  • @MarcelN1980
    @MarcelN1980 2 дні тому

    Absolutely awesome. Not a religious person here, I'm atheist, but you seem to have truly a kind Christian spirit, if there is such a thing. 😊

  • @reubenhunter6152
    @reubenhunter6152 2 дні тому

    San Holo, I have the lower ground, Anakin

  • @maxyproxy-jh4fu
    @maxyproxy-jh4fu 3 дні тому

    bro i have problem with TLS certificade , please help me

  • @spir8tgiom139
    @spir8tgiom139 3 дні тому

    First time I see this, do you have schedule for those livestreams ?

  • @KaliMax1337
    @KaliMax1337 3 дні тому

    Such a good idea!

  • @imca_b_5517
    @imca_b_5517 3 дні тому

    I come from linkedin i love your profile

  • @dilandodangoda109
    @dilandodangoda109 3 дні тому

    Really love this

  • @poplu7076
    @poplu7076 3 дні тому

    yo have you checked out the Looking glass room on thm

    • @TylerRamsbey
      @TylerRamsbey 3 дні тому

      I don't think so -- would you recommend it?

    • @poplu7076
      @poplu7076 3 дні тому

      @@TylerRamsbey yea ig like i found that in wonderland series.. the first one was like pretty easy, the 2nd one idk I couldn't think of anything like in the 1st step itself.. I think it would be fun to do... Ps I suck at ctfs

    • @poplu7076
      @poplu7076 3 дні тому

      Adding : by 1st one I meant the 1st box in the series .. this is the 2nd box there

  • @masterbloon9812
    @masterbloon9812 3 дні тому

    That’s exactly what I just needed, one day before exam :D

  • @thedoctord
    @thedoctord 3 дні тому

    this idea is kinda crazy, love it

    • @TylerRamsbey
      @TylerRamsbey 3 дні тому

      Haha yessir! Had no idea how it would be received, but people really enjoyed it. Will be doing a lot more of these!

  • @jasonlayton8760
    @jasonlayton8760 3 дні тому

    Really cool idea, thank you

  • @Cwhitlock-StudyGRC
    @Cwhitlock-StudyGRC 3 дні тому

    Let's go!

  • @MISTYEYED.
    @MISTYEYED. 3 дні тому

    Hi Tyler

  • @goldtoothgod
    @goldtoothgod 4 дні тому

    I’m starting to think the smb.txt was a hint to use pspy

  • @kimberlycanfixit
    @kimberlycanfixit 4 дні тому

    Just when I feel like you can’t get any more genuine you drop this. Thanks for sharing the why behind your career transition. And for finding some time to loop on how amazing He is. 👍 thanks for being you and recording your insights for everyone. SN: Those who speak the truth are often scorned. Keep speaking/preaching! 🙌