
Download supporting files here
Explore malware types like viruses, worms, logic bombs, trojan horses, root kits, and spyware, including back doors and keystroke logging. Learn defense with antivirus, anti-malware, and firewalls.
Explore access controls, including physical and logical controls, and how subjects, objects, and permissions govern access to assets through identity, authentication, authorization, need-to-know, and least privilege policies.
Examine physical and logical access controls, including biometrics, smart cards, tokens, cryptographic keys, and Linux permissions from root and sudo to setuid and shadow files.
Explore how the TCAP protocol suite governs data travel, contrasting connection-oriented TCAP with UDP. Identify how ports map to DNS, SNMP, SMTP, SSH, Telnet, and ARP/ICMP roles.
Explore the evolution and core concepts of cryptography, including symmetric and asymmetric encryption, hash functions, digital signatures, and key exchange methods like diffie-hellman, RSA, and El-Gamal.
Compare symmetric and asymmetric cryptography, explain out-of-band key exchange, and describe how hybrid encryption protects the symmetric key with public keys. Explore hashing for integrity.
This lecture explains hashing strengths and collisions, digital signing and non-repudiation, hybrid encryption with SSL/TLS and IPsec, PKI components, and common attack vectors like replay and man-in-the-middle.
Conduct a structured vulnerability assessment to identify, quantify, and prioritize weaknesses across the network, systems, and policies; plan the project scoping and risk mitigation, and prepare for penetration testing.
Explore risk categorization, quantitative and qualitative analysis, single loss expectancy, annualized loss expectancy, and top-down policy and bottom-up vulnerability assessment methodologies for cost-effective mitigation and due care.
Explore popular vulnerability scanners—Nessus, Retina, Qualys, GFI LanGuard, and MBSA—and how they identify vulnerabilities, generate color-coded reports, and support ethical hacking with patch management.
Assess and compare vulnerability assessment tool outputs and reports, including Nessus, GFI LanGuard, and MBSA, and learn to use vulnerability databases and patch management resources for remediation.
Explore reconnaissance, enumeration, and scanning, including passive and active information gathering, port scanning, and user account discovery, with Google queries and the Wayback Machine.
Explore reconnaissance, enumeration and scanning techniques using Google hacking queries, DNS lookups, and port scans to identify exposed services, domain information, and potential backdoors.
Explore physical access, lock picking, and social engineering as key methods in vulnerability assessment and penetration testing, and learn how exploits and zero day attacks test layered security.
Explore kali linux and backtrack, the metasploit framework, and tools like Armitage and St exploit for vulnerability assessment, exploitation, and ethical hacking via live CD and virtualization.
Explore back doors and rootkits, including trojan horses and maintenance hooks, and modules like netcat and metasploit for persistent access and ethical testing in safe virtual environments.
The Certified Professional Ethical Hacker (CPEH) is a vendor-neutral certification offered by Mile2 for the students willing to learn the importance of vulnerability assessments by gaining industry knowledge and skills in vulnerability assessments. In doing so, the CPEH students are able to understand how malware and destructive viruses function. In addition to this, the CPEH course helps students learn how to implement counter response and take preventive measures in case of an attack on the network.
This preparatory course for the Certified Professional Ethical Hacker (CPEH) certification covers the complete curriculum required to clear the certification exam. The topics covered in this course are security fundamentals, access controls, protocols, cryptography, vulnerability assessments, vulnerability tools of the trade, output analysis and reports, reconnaissance, enumeration and scanning, gaining access, maintaining access, covering tracks, malware, buffer overflows, and password cracking.
Exam Information
The CPEH course provides in-depth labs that focus on both open source and commercial based tools with industry best practices. These hands-on labs emulate real-world hacking scenarios and equip the candidate to assess your company’s security posture, help implement controls to better secure your company’s network infrastructure and how to combat against hackers and/or viruses, etc. Upon completion, the Certified Professional Ethical Hacker candidate will be able to competently take the CPEH exam.