Searching CertSprout…
Searching CertSprout…
A little curiosity goes a long way
Search certifications, learning topics, career paths, public profiles and help across CertSprout.
Showing 20 results for “OffSec”. More results are available below.
KLCP · Linux administration
Linux service management separates configured startup behavior from what a service is doing now. Inspect status, logs, dependencies and effective configuration when a daemon fails. Check the…
KLCP · Linux security controls
Linux access can be limited by ownership, mode bits, ACLs and mandatory security controls such as SELinux. A file's visible mode alone may not explain a denial. Identify the process identity…
KLCP · Linux storage and filesystems
A Linux path may belong to a different filesystem than its parent appears to suggest. Check mounts and available capacity, including inodes, when writes fail. File deletion does not always r…
OSAI · AI security boundaries
This concept review develops the reasoning needed for ai security boundaries. Start by identifying the relevant assets, permissions, evidence and trust boundaries. Distinguish what the obser…
OSAI · Generative AI systems
A generative model produces output based on its learned patterns and the context it receives. Retrieval can supply relevant documents, but the model may still misunderstand or invent details…
OSAI · Authorized penetration testing
A penetration test starts with explicit scope, permitted techniques, timing and stop conditions. These boundaries protect operations and make results interpretable. Demonstrate the impact ne…
OSAI · Responsible AI evaluation
Aggregate accuracy can hide poor performance for particular users or situations. Evaluate representative subgroups and realistic failure cases, and consider privacy, misuse and human oversig…
OSCC-SEC · Identity and access
Authentication establishes who or what is requesting access. Authorization decides which actions that identity may perform on a resource. A successful sign-in therefore does not imply permis…
OSCC-SEC · Incident response
Containment limits ongoing damage, while eradication removes the cause and recovery restores trusted operation. These activities may overlap as new evidence appears. Preserve useful evidence…
OSCC-SEC · Security foundations
Confidentiality limits who can see information, integrity protects against unauthorized changes, and availability keeps services usable. A control may support several objectives, but the imm…
OSCC-SJD · Security-focused code review
A security review follows data from an input boundary to the operation it can influence. Inspect validation, transformations and authorization along that path. Look for actual reachability a…
OSCC-SJD · Secure software lifecycle
Security requirements belong alongside functional requirements. Model likely misuse early, use secure implementation patterns, and check changes through review and testing. Track dependencie…
OSCC-SJD · Web assessment reasoning
This concept review develops the reasoning needed for web assessment reasoning. Start by identifying the relevant assets, permissions, evidence and trust boundaries. Distinguish what the obs…
OSCP · Linux security controls
Linux access can be limited by ownership, mode bits, ACLs and mandatory security controls such as SELinux. A file's visible mode alone may not explain a denial. Identify the process identity…
OSCP · Authorized penetration testing
A penetration test starts with explicit scope, permitted techniques, timing and stop conditions. These boundaries protect operations and make results interpretable. Demonstrate the impact ne…
OSCP · Web application security
Browser-side checks improve usability but can be bypassed. The server must validate input and authorize the requested operation on the specific object. Keep data separate from executable que…
OSCP+ · Active Directory assessment concepts
This concept review develops the reasoning needed for active directory assessment concepts. Start by identifying the relevant assets, permissions, evidence and trust boundaries. Distinguish …
OSCP+ · Authorized penetration testing
A penetration test starts with explicit scope, permitted techniques, timing and stop conditions. These boundaries protect operations and make results interpretable. Demonstrate the impact ne…
OSCP+ · Security findings and communication
A useful security finding connects an affected asset, the observed weakness, the conditions for exploitation and the resulting impact. Include enough reproducible evidence to verify the conc…
OSCP+ · Web assessment reasoning
This concept review develops the reasoning needed for web assessment reasoning. Start by identifying the relevant assets, permissions, evidence and trust boundaries. Distinguish what the obs…
People search uses public names, handles and headlines. Private and unlisted profiles are excluded. Your goals are visible only to you in search.