
Explore the fundamentals of ethical hacking through eight practical sections with simulations and quizzes, guiding you step by step to establish your career and legally exploit vulnerabilities.
Explore ethical hacking and penetration testing, learn white hat, black hat, and grey hat roles, and uncover vulnerabilities to strengthen information security.
Explore a safe hacking environment built with virtual machines to practice ethical hacking. Learn to install and navigate tools like VirtualBox, Kali Linux, Windows Server, and Windows 10 through simulations.
Explore how VirtualBox enables virtualization to run multiple operating systems on a single device for ethical hacking and penetration testing in a virtual environment; learn to download and install.
Learn to download and install VirtualBox on macOS, using the official site and OS X hosts, and set up a lab with Kali Linux, Windows Server, and Windows 10.
Guides downloading and installing VirtualBox on Windows, including choosing Windows hosts and approving installation prompts. Sets up a lab with Kali Linux, Windows Server, and Windows 10.
Kali Linux introduces a Debian-based ethical hacking OS and its essential tools, including Aircrack-ng, Nmap, THC Hydra, Nessus, and Wireshark, with a hands-on download and install simulation.
Download Kali Linux 64-bit from the official site and install in VirtualBox, allocating memory and a dynamic disk, then perform a graphical install with hostname, domain, and GRUB.
Familiarize with Windows systems, including Windows Server 2012 and Windows 10, and learn to download and install these programs. Explore GUI enhancements, Active Directory, Hyper-V 3.0, and upgrade paths.
download Windows Server 2012 R2 evaluation using Firefox, then install in VirtualBox by allocating memory and creating a dynamically allocated virtual hard disk, choose GUI installation and a custom option.
Download the Windows 10 ISO from the official site, choose edition and language, and install 64-bit Windows 10 in VirtualBox by allocating memory and creating a dynamic virtual disk.
Adjust the VirtualBox display by using the scale factor slider in the display settings, right-click image files to access settings, and apply changes for each virtual image.
Think and act like a hacker to understand the five phases of hacking, learn how white hats identify vulnerabilities, and use tools to protect networks from undetected breaches.
Explore the reconnaissance phase of ethical hacking, distinguishing passive and active footprinting and using OSINT tools to gather target information before an attack.
explore passive reconnaissance using shodan, spyse, theharvester, and wireshark to gather target information, search for open ports, os versions, domains, and CVEs, and map a cyber-attack roadmap.
Explore active reconnaissance using ping, traceroute, and nmap in Kali, learning to check host reachability, route hops, open ports, and OS details with practical examples.
Explore the scanning and enumeration phase of ethical hacking, using dialers, port scanners, network mappers, sweepers, and vulnerability scanners to identify IP addresses, open ports, operating systems, and user accounts.
Utilize enumeration and scanning to identify services, versions, and vulnerabilities with nmap, banner grabbing, and scripts, then extend to dnsenum, telnet, netcat, and curl for comprehensive discovery.
Gain access by exploiting vulnerabilities through phishing, Metasploit, and brute-force attacks to control networked devices, while covering privilege escalation and threats to confidentiality, integrity, and availability.
Simulate gaining access via brute-force attacks using Medusa and Metasploit on a Kali box. Explore privilege escalation techniques after testing SSH and FTP services.
Explore privilege escalation via a simulated ZeroLogon attack on a Windows domain controller, using a domain controller setup and the ZeroLogon exploit with Impacket to gain administrator access.
Learn how attackers maintain access in a zombie system by using backdoors, rootkits, and trojans like Emotet, while staying undetected for future exploitation.
Explore persistence techniques in ethical hacking, including scheduled tasks, backdoors, trojans, malware and rootkits, and PowerShell backdoors via WMI to maintain access on compromised systems.
Understand the final phase of ethical hacking: clearing or covering tracks by deleting logs and hiding traces. Learn techniques such as steganography, tunneling, and port closure to avoid detection.
Learn how attackers clear or cover tracks by deleting Linux and Windows logs, using shred and wevtutil, and understand command-line techniques for log removal.
Explore the open web application security project (OWASP), its top 10 vulnerabilities, and practical mitigation strategies for developers and security professionals through free community resources.
Identify the top 10 web application security vulnerabilities, from injection and broken authentication to sensitive data exposure and XSS. Learn practical mitigations like validation, MFA, encryption, and secure configurations.
Download and install the OWASP Broken Web Applications Project via Firefox, then set up the VirtualBox Ubuntu VM, configure host-only networking, and access the web apps at the provided IP.
Demonstrate a reflected cross-site scripting (xss) attack through a hands-on simulation, showing how input like first and last names can be reflected and manipulated in the browser.
Simulate stored cross-site scripting attacks using the bWAPP OWASP Broken Web Applications setup, submitting payloads that save scripts in a table, triggering alerts, stealing cookies, and redirecting to Google.
Demonstrate an error based SQL injection attack by simulating a search/get query in bWAPP, triggering syntax errors, and validating database access via phpMyAdmin to reveal movie records.
Explore how malware threats evolve in information security, the role of anti-malware programs, and how to prevent malware attacks.
Identify trojan malware, how it disguises software, and that it cannot self-replicate. Avoid unsecured sites and suspicious links; update firewalls, antivirus, and OS; back up data and use multifactor authentication.
Compare computer viruses and worms, clarifying how viruses self-replicate via human interaction to modify data or slow systems. Worms spread across networks to exhaust resources and steal or delete files.
Explore how botnets blend trojan and worm traits, hijacking IoT and devices into a zombie army controlled by command and control software for DDoS and crypto-mining.
Explore logic bombs, a dormant malware triggered by programmed conditions and carried by worms, including time bombs that can trigger keyloggers and cause data loss or deletion.
SIA explains ransomware, a malware that restricts access and extorts money by encrypting files, spreading through suspicious emails and untrusted sites, with double extortion and the importance of backups.
Explore a sandbox simulation of the WannaCry ransomware, including setting up a lab, isolating a network, and observing encryption and ransom notes.
Explore denial of service attacks that overload networks and deny access to services, including syn flood, icmp flood, smurf, and incomplete handshake exploitation.
Explore why information security policies and security regulations ensure compliance, protect user data and organizational resources, mitigate vulnerabilities, and maintain business continuity in cybersecurity.
Learn why security policies matter and how to document them to protect assets across all departments, with examples like access control, remote access, firewall, network-connection, and password policies.
The lecture explains regulatory compliance standards such as PCI DSS, ISO/IEC 27001, HIPAA, SOX, DMCA, FISMA, and GDPR, outlining requirements to protect cardholder data and secure information systems.
Explore the role of ethics in ethical hacking and how a code of ethics safeguards confidentiality, integrity, and client trust. Learn about the SIA code of ethics for beginners.
Adopt SIA’s code of ethics for ethical hacking, emphasizing legal authorization, consent, confidentiality, NDA, honesty, transparency, and avoiding conflicts of interest as a white-hat professional.
Prepare to join ethical hackers with a sandboxed setup, latest ethical hacking lessons and penetration testing techniques, and ongoing SIA support through updates, expert help, and a final assessment.
Explore transnational organized crime and terrorism concepts, review global crime types, and learn how law enforcement uses up-to-date information to prevent and solve threats.
Discover the fundamentals of ethical hacking and become one of the top in-demand cyber security experts in 2022: an ethical hacker!
This is a highly practical, comprehensive, yet intensive course that will teach you how to become a white hat! Those who have some knowledge of the subject matter will find this course useful, but students without prior knowledge of any kind can also benefit by enrolling.
Individuals preparing for the Certified Ethical Hacker (CEH) exam can use the course material as an additional study resource.
This course offers a rich variety of topics, including:
an introduction to ethical hacking
an introduction to the right tools (VirtualBox, Kali Linux, Windows Server 2012, Windows 10)
a discussion of the phases of ethical hacking
OWASP’s top 10 security vulnerabilities
an examination of malware and other attack methods
..and much more!
A number of important ethical hacking areas will require hands-on practice. They will replicate actual ethical hacking procedures, including how to gather information, how to test clients’ systems for vulnerabilities, how to exploit these vulnerabilities (to prevent other hackers from doing them), how to gain access to remote computers and their systems, how to maintain access to a hacked system or computer, and how to remove clues that indicate a system has been hacked. Other simulations will introduce you to security vulnerabilities, such as cross-site scripting (XSS) and SQL injection attacks. The course will also demonstrate how WannaCry ransomware attacks and denial-of-service (DoS) attacks work.
A brief quiz will follow every section to test your understanding of the information. The course will end with a comprehensive final exam.
With this course, you’ll get lifetime access to over 4 hours of videos, more than 50 lectures, and our ongoing monthly vlog delivering the most recent news on ethical hacking and cyber security!
This ethical hacking course has a 30-day money-back guarantee. This means that if you’re unsatisfied with it, we’ll give you your money back! Cool, right? Further, SIA’s ethical hacking experts are available 24/7. Just post a question or comment in the “Questions and Answers” section, and someone will answer ASAP.
Time is of the essence. Act quickly and learn about the fundamentals of ethical hacking so you can enrich your knowledge and further your career in a highly practical yet enjoyable way. Sign up today!
Disclaimer: This ethical hacking course is not intended to be used for illegal hacking.