
Develop hands-on pen testing skills for the eJPT certification through practical labs, using tools like End Map, Metasploit Framework, Burp Suite, Hydra, Dir, and Doorbuster to prepare for the exam.
Navigate the eJPT exam landscape by contrasting traditional tests with performance-based labs, and discover how hands-on practice labs bridge theory to real-world penetration testing skills.
Prepare for the eJPT exam with a cost-effective, isolated internet-free lab on a Windows host running Oracle VirtualBox, featuring a Linux attacking VM and an Ubuntu Web Security Dojo victim.
Set up a practical lab with a virtual machine manager like VirtualBox or VMware, configuring two virtual machines: Kali Linux as the attacker and Web Security Dojo as the victim.
Build a safe, isolated pen-testing lab using Web Security Dojo and DVWA in VirtualBox, enable low security, and open access for attacking machines while disconnecting from the internet.
Explore the course structure with a repeating pattern of lab overview, lab steps, and demonstration to build hands-on experience and balance theory with practice.
Use the ping tool to discover hosts and test connectivity across systems. Create a shell script that reads a host list from a file and pings each one.
Execute a lab session to explore the ping command, its options, and a script that pings multiple sites from a sites.txt file.
Demonstrates using the ping command in a Windows shell to test site availability, customize requests with the dash n option, and loop through sites.txt with a batch script.
Fingerprint web servers using netcat to uncover server characteristics, methods, and operations, then perform head and options requests to reveal supported http verbs.
Launch the Web Security Dojo VM and the Dan vulnerable web app, then use netcat to connect to port 80, fetch HTTP headers, and note the HTTP options.
Learn to fingerprint a web server in a lab using netcat to fetch headers and options, revealing Apache 2.2.12 on Ubuntu and allowed HTTP methods on a vulnerable web app.
Configure the Metasploit framework module to detect HTTP options, run a scan against the web server on Web Security Dojo from Kali Linux, and interpret the results.
Configure and run the metasploit http options scanner to identify enabled http options on a target web server (port 80) using Kali Linux and compare results with manual testing.
Demonstrate a live Metasploit lab to enumerate http options on a vulnerable web server by configuring host and port and reviewing get, head, post, and options results.
Connect to a dam vulnerable web application with PowerShell to retrieve page content and structure. Analyze the extracted information to identify forms and input fields and understand disclosure during browsing.
Lead a hands-on lab using PowerShell to issue web requests against a vulnerable web app, inspect headers and input fields, and identify hidden form fields.
Observe a live PowerShell demo using Invoke-WebRequest to fetch the vulnerable web app login page, then review a summary of status codes, HTML content, headers, and input fields for reconnaissance.
Learn host scanning with End Map to identify open and closed ports, services, and operating system fingerprints using tcp connect, syn, and service version detection scans.
Perform hands-on network scanning with nmap in a lab setup, booting a Web Security Dojo VM, identifying open ports, service versions, and OS details through TCP, SYN, and UDP checks.
Explore a lab that starts a vulnerable web app on a virtual machine and uses nmap to discover port 80, identify the http service, and perform versioning and OS fingerprinting.
Observe how Nmap identifies listening ports that differ from expectations by using Netcat to host a listener on a virtual machine and analyzing the scan results for services and versions.
Set up Web Security Dojo, start a netcat listener on port 21, then run an nmap -sV scan to reveal ports and versions, noting port 21 may not be ftp.
Demonstrates using netcat to set a port listener and running nmap -sV to discover services and versions, showing that port 21 may appear open with an uncertain ftp service.
Perform tcp connect scan, syn (half-open) scans, service version detection, and os fingerprinting with zen map on a web security dojo vm; compare zen map to nmap cli.
Set up the Web Security Dojo lab, configure the target IP, and run sequential Z map scans—tcp, cin, version, and os—to identify UDP listening ports.
Demonstrates using the Zen map UI for scans and results. Learn to input a target IP address and run TCP connect or SYN scans, viewing ports and host details.
Learn to perform a tcp syn scan using the Metasploit framework by loading an auxiliary module, targeting a vulnerable web application on Web Security Dojo, and interpreting the results.
Set up the web security dojo target and attacker, run a Metasploit port scan on the target IP with ports 50–100, and compare PCP send and TCP connect scanners.
Demonstrates using the Metasploit framework to perform a syn scan, configuring host and ports in msfconsole from a Kali Linux attacker against a vulnerable Web Security Dojo.
The eJPT certification is 100% hands-on. That means you need time in the lab, gaining experience to help you on exam day.
Prepare for the eJPT certification exam with over 25 labs that you can setup and work through at your own pace. Learn hands-on ethical hacking skills that can help you be successful on exam day and with your career as a penetration testing professional!
This course contains over 5 hours of labs to help you build your skills and improve your effectiveness during penetration tests.
The labs are setup to make sure your get hands-on experience with:
Network host identification
Port scanning
Working with various types of shells
Breaking authentication
SQL Injection and XSS testing
Data exfiltration
Vulnerability scanning
This course gives you valuable exposure to many ethical hacking and testing tools such as:
Burp Suite
Metasploit Framework
Nmap
DirBuster
And more!
All labs are structured around identifying the lab objectives and the steps needed to work through the scenario. Lab steps are presented in a way that allows you to follow along at your own pace. Each section concludes with a walk-through and explanation, before showing a live demonstration of the lab!
This course can be a valuable part of your self study as you prepare to earn the eJPT certification. But it's also great way for anybody interested in ethical hacking to get hands-on experience! Even if you are trying to earn your PentTest+ or CEH, these labs can help improve your readiness.
Get ready for the exam...get into the lab and get hand-on experience!
Note: This is unofficial training and editorial commentary on the certification, products, and skills.