Why do some ethical hackers say using pre existing tools are for script kiddies?
1 junebuggerz 4 6/25/2025, 5:21:18 AM
I have encountered some ethical hackers that say using tools like crackmapexec, responder, kerbrute, rubeus, mimikatz, evilwinrm, etc... in terms for windows systems. Or even tools like metasploit, burp, nmap, gobuster, etc... are for script kiddies. That a "real hacker" are able to create their own tools from scratch and nothing that comes close to what you see on Exploit-DB(that exploits from Exploit-DB are for novices basically) and on the Internet, and that includes NOT using Python scripts for exploits, I'm not sure what language I'm guessing C/C++ or Assembly are for "real hackers". And creating tools and exploits are done every day as part of their job. Is this true? I also see a lot of people saying that using tools like metasploit and knowing how tools works and knowing how to write custom exploits when needed, I'm guessing like the ones from Exploit-DB, are NOT considered a script kiddie, if you know how everything works. So can anyone tell me what a real hacker does?
I can tell you that a “real hacker” doesn’t quibble. A real hacker just “does.”
You want to be sure? Learn what the exploits do technically. Know why they do and don’t work. All that competence and prestige come in due time.