
Master practical ethical hacking from lab setup to exploitation, covering internal networking, scanning, vulnerability assessment, social engineering, and reporting for executives and technical teams.
Install and configure Metasploitable 2 as a portable Linux practice VM, set it to bridged networking, and prepare Windows 10 and Windows Server VMs for hands-on exploitation and testing.
Explore the basics of data communication, TCP and UDP on the transport layer, and the three-way handshake and flags; apply these concepts to identify internal network vulnerabilities.
Explore exploitation of CVE-2008-0166 by examining Exploit DB Python scripts, running a brute-force attack with dictionary keys, and testing a target on port 22 for indicators.
Learn how Wireshark, a network analyzer, captures and filters packets to analyze traffic, understand http packets, ip addresses, and how it supports man-in-the-middle assessments.
Explore basic web server information, perform whois lookups, verify IP and hosting details, assess DNS information and WordPress usage, and identify vulnerabilities for ethical penetration testing.
Practice active information gathering on a permitted localhost environment, using Dirk for brute-force discovery of sensitive files and folders, including passwords, while emphasizing legal authorization.
Generate a payload with Whibley by specifying keyword, password, and output directory, name the payload, and remember the password to access the server shell; then upload via file upload vulnerability.
secure file uploads by restricting allowed types, blocking executables, validating extensions and mime types, and renaming files before storing to prevent server vulnerabilities.
FACT! On average every 39 seconds there is a hacker attack affecting one in three Americans every year!
FACT! 43% cyber-attacks target small business
Did you know that the average pay of an Ethical Hacker is approx. 88k/year in US. In this course we will learn the practical approach which Ethical Hackers follows in real world scenarios.
Our primary focus on this course is showing practical approach but we will NOT Ignore any theoretical concepts as well. We will start this course from very basic and setup Ethical Hacking Lab Environment then we will look some basics of Networking and investigate Internal Networking. In which we will cover scan types, port scanning, advance scanning then we will spend time on vulnerability scanning of internal network. After that we will see how Red Team generates report for executives and for technical department.
After covering these topics, we will move to the second phase of our course which is based on exploitation and we will start with network exploitation and networks sniffing in which we cover ARP Protocol, ARP poisoning and MITM based attacks
In the third phase of this course we will look Web Servers and Web Applications starting with Web Server Information Gathering and Reconnaissance following with File upload vulnerability on Server then we will look brute force attack on Web Applications after we that we will cover SQL Injection and OWASP ZAP
In the end we will look Social Engineering and cover Social Engineering Scenario based attack strategy.
Notes:
This Course is created for educational purpose only, all the vulnerability assessment and exploitation are done in our own lab environment which we have fully permissions.
This course is fully copy right of Arsalan Saleem & SecureTechware no other organization is associated with it or any certificate exams. But you will get a Course Completion Certificate from Udemy Other then that No Other Organization is Involved in it.