Penetration Testing with Kali Linux OffSec


səhifə46/132
tarix21.12.2023
ölçüsü
#187693
1   ...   42   43   44   45   46   47   48   49   ...   132
PEN-200

SQ3R method
169
has students follow a pattern of study activities - survey, question, read, 
recite, review. We will detail the SQ3R method here, but it is notably very similar to the 
PQ4R 
method
,
170
which is useful for reading comprehension. Students who find the following tactic 
useful may want to check out the PQ4R method as well. 
A learner begins by surveying the topic, or reviewing a high level outline, scanning through the 
material that might be covered during the study session. In particular, it would be important to 
review any highlighted text, diagrams, and headings. 
Let’s give an example. In the case of our current Module, a student might encounter the various 
headings and subheadings: Learning Theory, Unique Challenges to Learning Technical Skills
Offsec Training Methodology, and so on. They might then review the subheadings. 
Next, they will create, preferably in writing, a list of questions that they hope to have answered via 
the material. This may or may not reflect what the material will actually cover, but should be 
based largely on the survey. This is a very important step, as learners will return to the questions 
repeatedly. 
Next, the student reads the material one section at a time. If there are videos or other activities for 
this section, they can also complete those. 
Next, the learner returns to their list of questions for that smaller section. They should try and 
recite the questions back from memory and determine if they’re now able to answer them. 
Finally, in the review, a student returns to all of the smaller sections from a larger topic or chapter 
to check whether or not the questions have been answered and they can recall the answers. 
For learners who have been taught that note taking is simply “writing down things that seem 
important”, the SQ3R method represents an alternative that is much more effective. 
4.5.5
The Feynman Technique 
The 
Feynman Technique
171
takes its name from Richard Feynman, a Nobel-prize winning physicist 
with a unique gift for explaining complex topics in everyday terms. The technique that bears his 
name has four simple steps: 
1.
Learn a Topic 
169
(Virginia Tech, 2022), https://ucc.vt.edu/academic_support/study_skills_information/sq3r_reading-study_system.html 
170
(Logsdon, 2020), https://www.verywellfamily.com/strategy-improves-reading-comprehension-2162266 
171
(Farnam Street, 2022), https://fs.blog/feynman-technique/ 


Penetration Testing with Kali Linux
PWK - Copyright © 2023 OffSec Services Limited. All rights reserved. 
81 
2.
Explain it to a beginner 
3.
Identify gaps 
4.
Return to study 
What makes this method of study unique is Step 2. Many descriptions of this technique use the 
example of explaining the topic to a child who is unfamiliar with it. If we don’t have access to a 
child (or a child who is willing to listen to an explanation about, for example, network scripting), 
this technique can still be useful. 
In the act of explaining things to children, we change our language to make things more simple. 
For example, when discussing a Brute Force Attack
172
with another professional, we might quickly 
devolve into a discussion on the massive computational power needed to crack a certain key. 
While explaining it to a child, we could simply say “it’s a way to keep guessing lots and lots of 
passwords until, hopefully, one of them works.” 
The explanation itself isn’t as important as the work the brain has to do to wrestle with the 
concepts and make them understandable outside of jargon. Similarly, when it’s very difficult for 
us to break something down in this manner, that may be a sign that we don’t understand it very 
well yet ourselves. All of this work helps us increase our own understanding. 
4.6
Advice and Suggestions on Exams 
We want to take a few moments to discuss exams and assessments, since the experience and 
approach for exam taking is very different from the rest of the learning experience. 
First, a word about the difference between the two. Some OffSec Learning Tracks culminate in an 
optional assessment, which is generally a timed series of practical exercises. The student has a 
great deal of freedom with scheduling and retaking the assessment, and can complete these 
exercises and submit the answers. 
In other cases, OffSec courses culminate in a proctored exam, during which a student has a set 
amount of time to complete a specific set of hands-on challenges. A successful exam results in 
an OffSec Certification. 
The contents of this section are centered on exams specifically, since we know they are points of 
anxiety for some learners. However, many of the suggestions provided will also be helpful for 
individuals taking an assessment. 
This Learning Unit covers the following Learning Objectives: 
1.
Develop strategies for dealing with exam-related stress 
2.
Recognize when you might be ready to take the exam 
3.
Understand a practical approach to the exam 
While each student will learn at their own pace, this Learning Unit should take about ten minutes 
to complete. 
172
(Wikipedia, 2022), https://en.wikipedia.org/wiki/Brute-force_attack 


Penetration Testing with Kali Linux
PWK - Copyright © 2023 OffSec Services Limited. All rights reserved. 
82 
This section is intended as a reference specifically for individuals who intend on taking an exam. 
Much of the material here will be useful for exams and assessments outside the context of 
OffSec training. No challenge questions are included at the end of it. 
4.6.1
Dealing with Stress 
OffSec certifications are earned, not given. We use this language intentionally. Having a 
certification from OffSec is a significant accomplishment. You can’t fake your way to the finish 
line or guess your way to a passing score. 
For some individuals, this means that the exam and the weeks and months leading up to it can 
become a very stressful time. We want to take a few moments to try and address that experience 
now. 
A great deal has been written on dealing with stress in general, but we’ll focus in particular on 
high-stakes exam stress. There are some excellent resources surrounding the taking of the Bar 
Exam, a requirement in the United States for all lawyers. Each state has its own requirements, but 
the California bar exam, for example, has five hours dedicated to essay questions, a Performance 
Test that lasts an another hour and 30 minutes, and an additional portion of the exam that is 
typically around 200 multiple-choice questions. There are also additional certifications required 
just to qualify to take the exam. 
Since this exam is extremely well known and notoriously stress-inducing, there are a number of 
excellent resources about how to manage the experience. Let’s review a few of the common 
themes.
173,174,175
1.
Take Care of Yourself 
2.
Schedule and Plan Your Study 
3.
Have a Growth Mindset 
First and foremost, any learner can’t be expected to perform as well if they are feeling too hungry, 
tired, or sick to keep pressing on. Managing stress can begin with simply being aware of what’s 
happening with our physiological bodies. Lack of sleep and poor diet can put us at a disadvantage 
before we even start. 
Positivity and optimism are also important factors. Making sure that we have things to look 
forward to - whether that is a study break or time with friends - can really help to fuel us when 
we’re feeling discouraged with our studies. The reward can be as simple as a pleasant walk in 
nature or sitting down to watch a favorite TV show. 
Second, creating a plan for ourselves is critical. We will describe this in more detail shortly. 
Third, a 

Yüklə

Dostları ilə paylaş:
1   ...   42   43   44   45   46   47   48   49   ...   132




Verilənlər bazası müəlliflik hüququ ilə müdafiə olunur ©azkurs.org 2024
rəhbərliyinə müraciət

gir | qeydiyyatdan keç
    Ana səhifə


yükləyin