
This video will give you an overview of the course.
In this video, we will learn how we can install any version of Kali Linux
Kali Linux overview
Download Kali Linux and Vmware workstation
Install Kali Linux in full screen mode
In this video, we will learn how to install the intentionally vulnerable virtual machine called Metasploitable 2.
Overview of Metasploitable 2
Download metasploitable 2
Install Metasploitable 2
The aim of this video is to install Windows 8.1 for performing the system exploitation.
Download Windows 8.1 from torrent
Install Windows 8.1 in Vmware workstation
Ping Windows 8.1 and Kali Linux to each other for checking the communication with each other.
In this video, we will learn explore the different types of penetration testing
Overview of Penetration Testing with Example.
Types of Penetration Testing
Specific Fields of Penetration Testing
In this video, we will learn the Advanced OSINT Data gathering and information gathering
Phases of Penetration Testing
Active Information Gathering
Passive Information Gathering with Example
In this video, we will get to know, how we can exploit a vulnerable virtual machine to get the root level access.
Download and Install Kioptrix Level 1 machine
Perform Information Gathering
Perform the Exploitation phase to get the root level access.
In this video, we will get to know about Metasploit, it’s versions and important commands that you should know.
Overview of Metasploit
Overview of community edition of Metasploit in Kali Linux
Some basic but important commands of Metasploit.
In this video, we will learn common terms that are used in System Penetration Testing and also How one can create a Payload
Common terms of system penetration testing
Choose correct Payload
Make the use of command correctly.
In this video, we will get to know about getting the access to the vulnerable Operating System.
Configure the Listener
Run the listener and send the payload to Windows machine
Execute payload file on the victim’s system.
In this video, we will try to create an undetectable payload.
Make an executable with correct payload
Use of encoders
Identify how many antiviruses are able to detect the executable payload.
In this video, we will come to know about an awesome anti-virus bypassing tool called Veil-Evasion
Overview of Veil-Evasion tool
Install Veil-Evasion tool
Make a Payload using Veil
In this video, we will get to know about hacking webcam of a user, not only that we will also come to know how we can hack the password of Facebook accounts.
Turn on the windows defender
Copy the payload on Windows 8.1 and execute it
Get the reverse shell and perform the post exploits and commands to see the live webcam streaming of the victim.
This video will help us to understand WebApp Penetration Testing from scratch. Not only that we will also talk about Proxy, it’s types as well as some terms about Burp suite tool
Overview of basic terms of Web app Penetration Testing
Explanation of Proxy
Types of Proxy with Example
In this video, we will get to know that how we can set the proxy configuration in to our browser.
Open your MozillaFirefox browser.
Make the configuration changes in Network Proxy settings
Configure the https request integration of Firefox browser with Burp suite
This video will walk you through some of the advance utilities of burp suite like intruder, repeater and Interceptor.
Enable the proxy configuration in Firefox browser. Intercept the traffic on Burp Suite
Send the request to intruder and do the changes to crack the password of admin login page of a wi-fi router.
Repeat a particular request again and again
This video will help us to understand a vulnerability called Remote Code Execution. This is a zero-day vulnerability. We will also exploit this vulnerability in DVWA.
Understanding the Remote Code Execution vulnerability
Open DVWA with security level low.
Exploit Remote Code Execution on DVWA
In this video, we will explore the SQL Injection and with that we will also exploit a machine called Kioptrix level 2.
Download and Install Kioptrix Level 2 virtual Machine.
Understand and bypass the login page using SQL Injection
Exploit RCE and then run the privilege escalation exploit for centOS 4.5
This video will help us to understand the basics of wireless penetration testing, and will help us to get to know about monitor mode and how you can setup a USB wi-fi adapter to use the functionality of monitor mode
Overview of types of modes on a USB wi-fi adapter
Setup a USB wi-fi adapter with Kali Linux
Enable Monitor mode on Kali Linux using a monitor mode enabled USB Wi-Fi adapter
This video will give us the brief idea about sniffing of Wi-Fi Routers. We will also get to know the way to capture the data packets of all the Wi-Fi routers in that range of our USB Wi-Fi adapter.
Enable Monitor mode
Run airodump-ng with monitor mode interface
Run airodump-ng for a particular Wi-Fi router with monitor mode interface.
In this video, we will learn about deauthentication attack and how we can Jam the signal of a particular Wi-Fi router without even connecting to it.
Enable Monitor mode.
Run airodump-ng with monitor mode interface
Run aireplay-ng with 1000 deauthentication packets against a particular target and that’s how out machine will start jamming the victim’s machine.
This video will give us get the brief idea about the WPA/WPA2 handshake. Not only that this video will explain the way to capture the WPA handshake.
Understand WPA/WPA2 handshake
Run airodump-ng with monitor mode interface and then start the sniffing on a particular wi-fi router that you want to hack, write all the data packets in to a file.
Now try to disconnect a client from the Wi-Fi Router using aireplay-ng tool. This way you will able to capture the handshake of a Wi-Fi Router.
In this video, we will get to know about an awesome tool called crunch that can generate the variety of password wordlist
Introduction to crunch tool
Basic example to generate a password list
Template based example to generate a precise wordlist using crunch tool.
In this video, we will crack the password of Wi-Fi router using a tool called aircrack-ng.
Overview of the aircrack-ng command
Executing the aircrack-ng command for cracking the password of Wi-Fi Router
After getting the password, connect to the Wi-Fi using windows PC.
In this video, students will feel the power of strong computing device called GPU. We will crack the password of a Wi-Fi router using the tool called hashcat with the integration of Gigabyte GTX1060 graphics card.
Download and install the hashcat tool in Windows 10 host OS.
Convert the handshake .cap into. hccapx format.
Run the hashcat tool with the handshake and wordlist file.
This video will give you an overview about the course.
In this video, we’ll be installing VirtualBox and setting it up.
What is Oracle virtual box
Choosing the right distribution for Kali Linux
Downloading the Oracle VirtualBox
In this video, we will be setting up the Kali Linux Metasploitable
What is Metasploitable
Downloading Metasploit via source forge
Setting up and creating a new virtual space for Metasploitable
In this video, we will creating a new virtual machine setting up for installations.
Creating a new virtual machine for Kali Linux
Virtual machine set ups for Kali Linux
Setting up the memory and size
This video focusses on the installations of our Kali Linux.
What is Kali Linux? and Why Kali Linux?
Downloading Kali Linux
Booting up Kali Linux
In this video, we will be updating and then upgrading our Kali Linux after installations.
What is updating and upgrading in Linux?
Launching the kali Linux terminal
Updating kali, Upgrading kali
In this video, we’ll focus on Reverse IP lookup and how important it is in penetration testing.
What is Reverse IP lookup?
Visiting and Making using of YouGetSignal tools
Choosing and running necessary Reverse IP domain checkup on different targets
This video focuses on accomplishing task with a tool called BuiltWith.
What is BuiltWith used for?
Visiting the BuiltWith official webpage for our scanning
Scanning the targets
In this video, we’ll be working with a very popular site called Whois.
What is Whois and its importance
Visiting the Whois site and making use of the tool
Scanning the targets locations and IP address and previous logins
This video focuses on checking the necessary sub-domains for enumerations.
Downloading via GitHub and installations of Sublist3r tool for target scanning and advanced tools
Installations and requirements of the Sublist3r tools
Running scans on our target websites
In this video, we’ll be working with detecting OS information of our targets and our machines information.
What is Nmap?
Using ifconfig on terminal to get our IP address and target address
Analyzing the scan results
This video focuses on very useful tools used by web penetration testers for web penetration testing and app testing.
What is WebGoat? and Why use WebGoat for you testing and practices?
Installations for WebGoat and the necessary requirements
WebGoat web browser confirmations for installations, rest of the installations and bug fixes is on video 3.1 part two of this video
In this video, we’ll be exploring and working with a new tool called Burp Suit as we move on.
What is Burp?
Launching Burp in the Kali Linux list of tools and applications
Merging up WebGoat, Mozilla ESR, and Burp together
This video focuses on Mozilla browser on our Kali Linux.
Checking the preferences
Setting up the necessary settings
Setting up the general settings, security, work, and ports
In this video, we will be editing the Burp Suite proxy in the settings.
Setting the target options
Setting the proxies
WebGoat confirmations of the setups via Burp Suites proxies and Mozilla preferences
In this video, we will be testing with Burp Suite.
While launching WebGoat, making sure it’s running in the terminal
Making use of the Burp interceptions for testing
Testing with Mozilla
In this video, we’ll be focusing on a web vulnerability tool called Tulpar, powerful and dangerous.
What is Tulpar tool and the usefulness doing secure vulnerability scanning
Downloading Tulpar via GitHub and installing necessary requirements
Starting our web vulnerability scanning
In this video, we shall be booting up our Metasploit and then making use of the Kali Linux Metasploit tool.
Booting up Metasploit
Launching msfconsole on Kali Linux terminal for Metasploit
Web vulnerability scanning of our previous targets in section 3
In this video, we will focus on a very useful tool for web vulnerability and information gathering scanning tool called Metagoofil.
Installing Metagoofil
What is Metagoofil?
Scanning for target results via terminals
In this video, we will focus on D-Tect XSS tool used for web cross site scripting vulnerability scanning.
What is D-Tect XSS usefulness?
Installing D-Tect XSS from GitHub via terminal
Running web vulnerability scanning for domains
In this video, we will be working on SQL vulnerability scanning.
What is DVWA and downloading the tools and setting up necessary requirements?
Launching our Mozilla web browser then launching sqlmap tools for testing
Working with our first SQL injection testing with sqlmap on a site
In this video, we’ll be making use of a popular password cracking tool called Hydra - the three head monster.
What is Hydra and the types with the damage's Hydra can do?
Launching Hydra on the Kali Linux list of tools
Testing our first password hacking
In this video, we’ll be working on Bypassing the Kali Linux login screen and then creating a new password.
Rebooting Kali Linux and making changes to the GNU GRUB of Kali
Editing the GNU GRUB commands using E on the keyboard
Editing the set parameters, resetting the passwords on the boot terminal
In this video, we will be installing a new tool called The ChoiceScript tool.
What is the ChoiceScript tool?
Downloading from GitHub and setting up via terminal
Scanning and finding ports
In this video, we’ll be focusing on Locky password generator for a good password.
What is Locky password generator?
Installing Locky from GitHub via terminal
Strong password generator for users
This video focuses on a very good tool called NetZapper Cracking
Usefulness of NetZapper and making use of the tools
Cloning and installations of NetZapper tools
Working with the tools on NetZapper for host discovery, ports scanning, OS detections, and brut forcing
In this video and throughout this section, we’ll be working with SQLi LAB.
What is SQLi LAB and how useful it is?
Cloning and downloading SQLi LAB via terminal
Moving into the files into the /var/www directories
This video focuses on installing Apache2.
What is Apache2 and installing Apapche2 via terminal?
Updating and upgrading first
Running Apache2 with /etc/init.d/apache
In this video, we’ll be setting up the MySQL account and selecting it.
Starting the MySQL services
Using the MySQL -u root -p for creating a password
Choosing MySQL in MariaDB and granting the new user privileges
In this video, we’ll be making configurations changes for the MySQL and settings.
Making changes to our MySQL connections for the username and the passwords
Starting the MySQL services
Launching the Mozilla browser for the sqli labs local host pages, confirming it got set up.
In this video, we’ll be focusing on MySQL logins.
Editing the 50-server.cnf file using vi editor
Editing the general_log_file, making changes by removing # and editing the general_log below, making changes by removing the #
Working the lesson 1 adding ?id=1 on the URL on the SQLi LAB page
In this video, we’ll be executing and getting query from the SQLi LAB.
Staring the terminal and then moving into the /var/log/MySQL directory
Tailing the mysql.log file
Analyzing the mysql.log results
This video provides an overview of the entire course.
Info about the course.
• Explain course topics
• Various components
• Learn how to get the most out of this course
Example of pentesting.
• Defender info
• Bypass Defender
• Exploit Windows10
Terms in ethical hacking.
• Basic terminologies
• Explanation
• Kali Linux working
In this video, we will learn the installation process of VMware
• Explore VMware
• Download VMware
• Installation of VMware
This video will help you download Windows10 and Kali.
• Explore Kali Linux
• Download Windows10
• Download Kali Linux
In this video, you will take a look at the Installation of operating systems.
• Explore the installation process
• Learn about Windows Installation
• Installation of Kali Linux
This video will help you update and upgrade the Kali Linux OS.
• Explore the Kali Linux Updating Process
• Update the Kali Linux OS
• Upgrade The Kali Linux OS
In this video, we will take a look at file commands.
• Explore file commands
• Learn the meaning of file commands
• Understand the practical use of file commands
This video will help you explore directory commands.
• Learn about directory commands
• Learn the meaning of file commands
• Understand practical use of directory commands
In this video, we will explore Chain commands.
• Explore the basics of chain commands
• Learn the meaning of file commands
• Understand practical use of chain commands
This video explores Kali Linux services.
• Explore various services
• Learn the meaning of the services
• Understand practical use of these services
In this video, you will explore network IP scanning.
• Find IP address in the network
• Find the Mac address
• Find IP address using ranges
This video will help you learn about port scanner.
• Find if the target is up or not
• Find open ports of target
• Find target operating system
In this video, you will explore port scanner.
• Find target open port numbers
• Find services running in target
• Explanation of services
This video will help you learn about information gathering.
• Setup Maltego
• Gather information about person
• Gather information about organization
In this video, you will explore information gathering about a website.
• About the Recon-NG tool
• Various commands
• Explanation of commands to find information about websites
This video will help you learn about scanning using Burp Suite tool.
• Vulnerability scanning using Burp Suite
• Perform Brute Force attack
• Get admin access
In this video, you will learn about scanning using ZAP Tool.
• Web scanning using ZAP tool
• Perform spidering
• Find vulnerabilities
This video will help you scan using WordPress tool.
• About WordPress website
• WPScan commands
• Get login credentials of WordPress
This video explores the Installation of Nessus.
• About Nessus tool
• Download Nessus tool
• Installation of Nessus
In this video, you will learn about network vulnerability scanning Nessus.
• About Nessus GUI
• Set up a scan
• Scan entire network using Nessus
This video will explore web analysis using HTTrack tool.
• About HTTrack tool
• Download web in offline folder
• Analyze web files
This video will help you learn about SQL database.
• About SQLite tool
• Create databases, tables, and columns
• Extract information from database
In this video, explore database hacking using Sqlmap tool.
• About Sqlmap tool
• Various Sqlmap commands
• Extract data using Sqlmap
This video will help you explore database hacking using JSQL tool.
• About JSQL tool
• Various JSQL tool
• Extract data using JSQL
This video will help you learn about database hacking using SQLsus tool.
• About SQLsus tool
• Various SQLsus tool
• Extract data using SQLsus
In this video, you will create password lists.
• About crunch commands
• Various crunch commands
• Create dictionary
In this video, you will crack passwords.
• About John the Ripper tool
• About Kali Linux shadow files
• Crack Kali Linux passwords using John
This video will help you setup File Transfer Protocol.
• About FTP
• Download FileZilla server
• Installation of FileZilla server
In this video, you will learn about password cracking using Hydra tool.
• About Hydra tool
• Hydra commands
• Crack FTP using Hydra tool
In this video, you will explore password cracking using Medusa tool.
• About Medusa tool
• Medusa commands
• Crack FTP using Medusa
This video will explore password cracking using Ncrack tool.
• About Ncrack tool
• Ncrack commands
• Crack FTP using Ncrack
In this video, you will change Mac address of systems.
• About Mac address tool
• Various Mac changer commands
• Change Mac address
In this video, you will perform MITM using Wireshark tool.
• About Wireshark tool
• Packet Sniffing using Wireshark
• Packet analysis using Wireshark
In this video, you will perform MITM using Ettercap tool.
• About Ettercap tool
• Sniffing using Ettercap
• Gather sensitive data using Ettercap
This video will help you perform MITMProxy and Driftnet tools.
• About MITMProxy and Driftnet tools
• Perform MITM
• Gather sensitive information
In this video, you will perform a phishing attack.
• About SET tool
• Create Phishing pages
• Perform Phishing attack
This video will help you perform a Trojan attack.
• About Trojan creation using SET
• Create a Trojan
• Trojan attack on victim machine
In this video, you will perform social engineering attacks using the Maltego tool.
• About Maltego tool
• Gather information about systems
• Perform social engineering attack
In this video, you will perform social engineering attack using BEEF.
• About BEEF tool
• Send a malicious link to target systems
• Connect victim’s browser with attacker machine
This video explores wireless adapter information.
• About wireless adapter
• Use of wireless adapter
• Explanation about various wireless adapters
In this video, you will explore the process to Start Monitor Mode.
• About monitor mode
• Connect wireless adapter
• Start monitor mode
This video will help you perform WEP attack using Fern WIFI cracker.
• About WEP
• About Fern Wifi cracker
• Process to crack WEP
In this video, you will create dictionary.
• Using crunch
• Various crunch commands
• Create dictionary
In this video, you will perform WPA attack using Fern WIFI cracker.
• About WPA
• Use of Fern Wifi cracker
• Process to crack WPA
This video will explore Metasploit Introduction.
• About Metasploit
• Commands of Metasploit
• Exploits of Metasploit
In this video, you will explore the installation of various Antivirus Bypass Frameworks.
• About Various AV Bypass Frameworks
• Download AV Bypass Frameworks
• Installation of AV Bypass Frameworks
This video will help you learn about the process to bypass Windows Defender of Windows10.
• About Windows the Defender bypass framework
• Create a payload using the Zirikatu framework
• Perform Windows10 penetration
In this video, you will learn about the process to bypass Antivirus of Windows10.
• About Antivirus Bypass Framework
• Create a payload using Fatrat Framework
• Perform Windows10 Penetration
In this video, you will learn about post-exploitation
• About Meterpreter
• Various Meterpreter commands
• Perform post- exploitation
This video will help you insert keylogger into the victim machine.
• About keylogger
• Command to insert keylogger
• Get information from victim machine
In this video, you will perform privilege escalation.
• About privilege escalation
• Get root access in victim machine
• Various privilege escalation commands
In this video, you will explore steal login credentials of victim machine
• About victim machine login credentials
• Find exploits in Metasploit
• Gather login credentials using Metasploit
In this video, you will learn about reporting using Leafpad tool.
• About Leafpad tool
• Various uses of Leafpad
• Explanation of Leafpad use
This video will help you explore reporting using the CutyCapt tool.
• About CutyCapt tool
• Use of CutyCapt
• Take captures of web pages
In this video, you will learn about reporting using Faraday IDE tool.
• About Faraday IDE tool
• Use of Faraday IDE
• Explanation of Faraday IDE
In this video, you will learn about reporting using the recordMyDesktop tool.
• About recordMyDesktop tool
• Use of recordMyDesktop
• Record the screen of Kali Linux O.Sd
Are you a System Administrator, Penetration tester, or Network engineer looking to take your penetration testing skills to the next level? Then this course is for you! It is your one-stop solution to safeguarding complex network devices and modern operating systems from external threats using Kali Linux.
Kali Linux is rated as the #1 security operating system. In view of all this, companies are hiring ethical hackers just like you to perform network and website vulnerability testing to help prevent hackers from getting in. With the Linux operating system and its core structure based on Debian, it comes jam-packed with all the tools you need to penetration-test your websites and infrastructures.
This comprehensive 3-in-1 course follows a step-by-step practical approach to discover the secrets of Pentesting using Kali Linux and gain access to a system using a portfolio of different techniques. To begin with, you’ll create a persistent reverse shell to perform penetration testing on your websites. You’ll also perform de-authentication attacks on Wi-Fi routers. You’ll get familiar with the post-exploitation attacks on Windows and Linux to maintain access to a target. Finally, you’ll not only perform server-side and client-side attacks but also master major Kali Linux tools and techniques.
Towards the end of this course, you'll not only discover the secrets of Pentesting using Kali Linux but also gain access to a system using a portfolio of different techniques!
Contents and Overview
This training program includes 3 complete courses, carefully chosen to give you the most comprehensive training possible.
The first course, Hands-On Infrastructure Penetration Testing, covers how to defend your systems from methodical and proficient attackers. This course will provide you with advanced penetration testing techniques with Kali Linux that will help you exploit databases and web/application servers and perform network penetration. With this course, you will prevent your system from being exploited by using techniques such as reverse shells. Moving on, this course will not only walk you through managing vulnerabilities but will also show you how to protect endpoints. You will explore web pentesting, learn how to set up your LAB environment, and explore the various vulnerabilities that exist nowadays. Towards the end of this course, you will also perform wireless penetration testing to defend against the wireless assets. Finally, you will have mastered the skills and methodologies you need to breach infrastructures and provide complete endpoint protection for your system via Kali Linux.
The second course, Practical Web App Pentesting with Kali Linux, covers discovering the secrets of Pentesting using Kali Linux. You will learn how to test your network against various types of attack and develop a network-testing environment that can be used to test scanning tools and techniques. Employ methods effectively used by real hackers to ensure the most effective penetration testing of your network; select and configure the most effective tools from Kali Linux to test network security; employ stealth to avoid detection in the network being tested, and recognize when stealthy attacks are being used against your network. Exploit networks and data systems using wired and wireless networks as well as web services. Identify and download valuable data from target systems and learn to maintain access to compromised systems. Use social engineering to compromise the weakest part of the network—the end users. Use port scanning for UDP scanning, stealth scanning, and connect/zombie scanning using pen testing tools. You will learn how to utilize the arsenal of tools available in Kali Linux to conquer any network environment. By the end of this course, you will be a pro with the Kali Linux tools you need to perform advanced penetration testing; you will know how to exploit vulnerable systems and how to patch them.
The third course, End-to-End Penetration Testing with Kali Linux, covers performing vulnerability assessment and penetration testing. You will learn how to test your network against various types of attack and develop a network-testing environment that can be used to test scanning tools and techniques. Employ methods effectively used by real hackers to ensure the most effective penetration testing of your network; select and configure the most effective tools from Kali Linux to test network security; employ stealth to avoid detection in the network being tested, and recognize when stealthy attacks are being used against your network. Exploit networks and data systems using wired and wireless networks as well as web services. Identify and download valuable data from target systems and learn to maintain access to compromised systems. Use social engineering to compromise the weakest part of the network—the end users. Use port scanning for UDP scanning, stealth scanning, and connect/zombie scanning using pentesting tools. You will learn how to utilize the arsenal of tools available in Kali Linux to conquer any network environment. By the end of this course, you will be a pro with the Kali Linux tools you need to perform advanced penetration testing; you will know how to exploit vulnerable systems and how to patch them.
Towards the end of this course, you'll discover the secrets of Pentesting using Kali Linux and gain access to a system using a portfolio of different techniques.
About the Authors
Parvinder Yadav has worked with wireless penetration testing for more than 4 years and has a deep knowledge of networking. He has created a lot of projects such as a Wi-Fi jammer using shell scripting and the Raspberry Pi 2; a portable hacking device which just weighs 100 grams and can hack almost any Wi-Fi router; a portable wireless CCTV camera (using the Raspberry Pi) that is the same size as a mobile; a portable media server; a radio station using the Raspberry Pi; and a lot more. He is the author of PNPtutorials, he is a geeky YouTuber and a Tech-Freak, and has more than 55K subscribers to his channel on YouTube.
Paul Olushile graduated with a diploma degree in computer science and is currently working as a Cyber Security Expert. He loves teaching and hence he is freelancing to share his expertise with the students for over 4 years now as a Unix/Linux Administrator. He has a diverse set of certifications, interests, and experiences including server administration.
Sunil Gupta is a certified ethical hacker. Currently, he teaches 45,000+ students online in 150+ countries. He is a specialist in ethical hacking and cybersecurity. His strengths lie in vulnerability assessment, penetration testing, intrusion detection, risk identification, data analysis, reporting, and briefing.