
This ethical hacking bootcamp guides you from beginner to advanced, building your own tools in Python, C, and assembler, including reverse shells, backdoors, and keyloggers, with emphasis on legal use.
Download and install VirtualBox, choose your platform, download a 64-bit Kali Linux ISO, create a new virtual machine, allocate RAM and disk space, and attach the ISO.
Install kali linux in a virtualbox virtual machine, configure language, location, keyboard, root password, and disk partitioning, then install the grub bootloader and boot into the desktop.
Install VirtualBox guest additions to enable full screen mode in a Linux virtual machine; learn basic terminal commands, update sources, install Linux headers, and run the guest additions installer.
Install essential Kali Linux tools from GitHub, clone programs, clean logs, and set up a non-root user with sudo and Tor for onion routing.
Master linux terminal basics with commands like pwd, ls, ls -la, clear, cd, touch, rm, mkdir, and rm -r to manage files and directories, while respecting recursive removal risks.
Learn essential Linux commands and concepts, including cd and path navigation, mkdir, chmod to make scripts executable, cat, grep, echo, cp, mv, and locate, plus using man and apt.
Learn essential Linux commands for networking and system management, including shutdown and reboot usage, process inspection with ps and top, ip and ifconfig, gateway checks, and apt update/upgrade.
Explore the DCP IP model and its layers from physical to application, IP and MAC addresses, and routers on a local network. Compare TCP and UDP, ARP, DNS, and SSL/TLS basics for secure communication.
Switch the virtual machine to a bridged adapter, choose your network interface, and ensure the cable is connected to obtain a 192.168.x.x IP. Verify internet access by pinging google.com.
Explore key hacking terms used in ethical hacking, from footprinting and google hacking to scanning, enumeration, social engineering, and denial of service, with practical tool mentions.
learn footprinting concepts, including active and passive methods, and apply google hacking techniques to find web sites with vulnerable user inputs using dorks and the google hacking database.
Explore the whois footprinting tool to gather domain details, registry data, expiry dates, and contact information for ethical security assessment.
Learn to use the harvester email harvesting tool to search a domain for emails and hosts, configure Google as the engine with a configurable result limit, and troubleshoot execution.
Master information gathering with Shodan and the harvester to surface emails and domain IPs. Learn to identify default credentials on routers and IoT devices and apply ethical testing practices.
Discover how dns zone transfers work between primary and secondary dns servers, and test for misconfigurations using dig and ns dns enum on tcp port 53.
Install metasploitable from rapid7, extract the zip, and configure it as a vulnerable, portable linux virtual machine for safe, legal scanning practice, using map later.
Master nmap, a free network mapper, to discover hosts, identify open ports and services, and detect software versions and vulnerabilities across TCP, UDP, and ICMP.
Use Nmap to scan hosts and ranges, view open ports, save scan results to a file, and practice both top 1000 port scans and full 1-65535 scans on local networks.
Learn to run advanced nmap scans to detect operating systems, reveal open ports and service versions, and enable script scanning and trace with aggressive detection.
Learn to use Zenmap's graphical interface to run Nmap scans, set targets and profiles, adjust options like -F and -T4 for faster results, and interpret open ports and OS details.
Explore nmap scanning options, -p to specify ports and -Pn to treat hosts as online, and compare tcp connect (-sT), syn stealth (-sS), and udp scans (-sU) for penetration testing.
Learn how to bypass firewall defenses with nmap using UDP and TCP scans, including -sA, --data-length, --source-port, and --spoof-mac options to reveal open ports.
Learn to use nmap scripts to discover hosts and brute-force ssh credentials. Explore the preinstalled script library and tailor scans by script, port, and password list.
Download and run Nmap scripts from local and online sources to scan a target for vulnerabilities and open ports, identify services like Apache on port 80.
Download, extract, and set up the OWASP vulnerable web apps virtual machine in VirtualBox. Log in as root and explore vulnerable pages for hands-on penetration testing on a local network.
Explore the fundamentals of HTTP requests, including GET methods, headers, cookies, and authorization, and see how SSL/TLS and HTTPS protect web traffic in real-world scenarios.
Discover how http responses work, including headers, body, status codes, and cookies; master common methods like GET and POST, plus scripting scans with Burp Suite.
Configure Burp Suite as a proxy, set Firefox to use Burp as the proxy, and import the Burp certificate to intercept HTTP and HTTPS traffic.
Learn to intercept and modify web traffic with Burp Suite, examine get and post requests and responses, forward and alter packets and cookies to test authentication and privacy controls.
Explore WhatWeb and DirB as essential reconnaissance tools to identify web technologies and exposed directories, then apply findings to plan testing with Burp Suite, including cross-site scripting considerations.
Set Burp Suite as a proxy to intercept traffic and map the target with Burp Spider, then perform a forgot password test to discover usernames using Burp Intruder sniper payloads.
Brute force a login page using Burp Suite intruder with cluster bomb, feeding user and password lists, intercepting post requests, and identifying successful credentials by server responses.
Use Hydra to perform a post-form brute-force attack against a login page, iterating usernames and passwords from lists, and extract the target path from the captured packet.
Learn how session fixation exploits weak session IDs to hijack accounts via crafted links and prepared emails, and assess session management flaws and cookie randomness.
Explore injection attacks, including command injection, SQL injection, and cross-site scripting, and learn how unfiltered user input enables database and web application breaches.
Learn practical command injection techniques to run commands on vulnerable servers. The lecture shows identifying inputs, brute-forcing logins with Hydra, and executing commands like ping and whoami.
Explore exploiting command injection to execute arbitrary commands, establish a reverse net cat connection, and gain remote access to a Linux victim, including verifying ip addresses and config outputs.
Learn how to detect blind command injection on a vulnerable web application by testing with crafted commands, observing icmp ping outputs via Wireshark, and exploring get, post, and shellshock vectors.
Explore the basics of SQL injection, how databases store user data, and core SQL commands such as select, insert, update, delete, and drop, with practical login scenarios.
Expose manual sql injection techniques on a vulnerable dvwa application, use apostrophes to trigger errors, and apply union select to reveal user data.
Learn how to perform manual sql injection to enumerate the database name, discover tables and columns, and reveal user credentials and hashed passwords, including basic hash decryption concepts.
Explore blind sql injection for vulnerable web apps and the brute-force method to discover database names, then automate injections with sqlmap using -u and -p options.
Master xml and xpath injection by analyzing how unfiltered user input can be interpreted as code, and practice exploiting a movie search app with Burp Suite and manual steps.
Install and use the xcat tool to automate external injection, then learn input filtering to defend against sql injection and xss.
Explore cross-site scripting concepts, including how unfiltered user input enables reflected XSS, how JavaScript can be injected, and practical testing to identify vulnerabilities in web applications.
Demonstrates stored cross-site scripting and contrasts it with reflected cross-site scripting, showing how vulnerable pages store scripts, steal cookies, and enable session hijacking via guestbook inputs.
Explore cross-site scripting with practical demos of reflected and stored XSS, DOM injection, and HTML manipulation via browser storage to alter page content.
Explore automating cross-site scripting testing with XSSer and XSSsniper to detect stored, reflected, and DOM-based vulnerabilities, and apply payloads to uncover XSS weaknesses on a vulnerable page.
Use nikto for footprinting and web server vulnerability scans to detect outdated components. Save results with -o and -F, and adjust target host, port, and proxy settings.
Learn how to enable monitor mode on your wireless card, check its capabilities, and switch interfaces from managed to monitor mode using iwconfig and ifconfig commands.
Learn to capture the four-way handshake with aircrack-ng tools by enabling monitor mode, using airodump-ng to identify nearby networks, and saving the handshake for analysis with aireplay-ng.
Capture and analyze a wireless handshake, transfer and organize capture files, then perform a brute-force WPA/WPA2 crack using aircrack-ng with the rockyou wordlist.
Explore cracking wireless passwords with aircrack-ng, using a captured handshake (.cap) and rockyou wordlists to brute-force passwords, adjust wordlists, and compare performance with hashcat.
Crack wifi handshakes with Hashcat by converting cap files to hccapx, using hash type 2500 and a rockyou wordlist, while monitoring GPU temperatures.
Create customized password lists with crunch by defining length and character sets. Pipe crunch output to aircrack-ng to accelerate wireless password brute forcing.
Learn to generate targeted password lists using crunch and a Python-based password profiler, download tools from repositories, and run interactive prompts to build dictionaries for ethical hacking practice.
Learn how to create and use rainbow tables to crack wifi handshakes faster by importing the essid, building a password list with crunch, and running batch with aircrack-ng.
Demonstrates cracking handshakes with rainbow tables in Aircrack, comparing word lists to rainbow table speeds and revealing up to 1 million passwords per second.
Install Fluxion from GitHub to automate creating an evil twin access point, install required components, and run the program to configure a captive portal for credential capture.
Discover how to locate hidden wireless networks and connect by identifying the ssid and mac address using monitor mode and airodump-ng.
Learn how to prevent wireless attacks by enabling protected management frames, using strong passwords and enterprise security where available, and debunking myths about hiding SSIDs and relying on MAC filtering.
Explore the Metasploit framework to understand exploits, payloads, and zero-day concepts, and learn to start MSF console, search modules, and set payloads for practical hacking practice.
Explore how the metasploit framework is used to scan targets with MSF console, load auxiliary modules for SSH brute-forcing, and test login credentials with wordlists in a lab environment.
Use Metasploit to scan a target, brute force the Apache Tomcat login on port 80, and access the Tomcat web application manager to change settings.
Explore how to obtain a Meterpreter session via command injection by creating a reverse shell with MSF venom, hosting it on Apache, and delivering it to the target.
Explore PHP code injection vulnerabilities by intercepting requests with Burp Suite, invoking system commands to reveal the server's working directory, and delivering a shell to control a target web server.
explore two attacks on metasploitable 2, exploiting samba via a map script to obtain a unix reverse shell, and an ftpd backdoor on port 21 with a payload.
Install wine on Linux to run Windows programs and prepare for Windows exploits, using Python integration and 32-bit setup, with focus on eternal blue and Windows 7 targets.
Learn to craft Windows payloads with msfvenom using Windows 64‑bit or 32‑bit interpreter reverse DCP payloads. Configure payload options like lhost and lport, and consider encoders.
Explore encoders and hex editor techniques to craft a Windows reverse shell payload and study antivirus bypass strategies in ethical hacking.
Demonstrates building and delivering a Windows 10 meterpreter payload via USB drive, configuring msfconsole exploit/multi/handler, establishing a reverse connection, and gaining an interactive session on the target machine.
Explore the Meterpreter environment by opening and managing sessions, using help, backgrounding, and exit commands, navigating files, uploading and downloading, and running IP config, netstat, and ps.
Demonstrate privilege escalation on Windows 10 by using a local bypass to gain system privileges, interact with sessions, and deploy keystroke logging and screenshot capture.
Learn how to prevent privilege escalation on Windows by enabling always notify for User Account Control, blocking common bypass techniques demonstrated with exploit modules.
Explore post exploitation modules after gaining system access, including packet sniffing with the sniffer, arp scanning, credential dumping, and enumerating installed applications and logged-on users on Windows targets.
Explore post-exploitation modules and learn how to obtain a meterpreter session over the internet by configuring port forwarding, using a public ip, and delivering a reverse shell.
Learn how to use the eternal blue exploit with Metasploit and DoublePulsar on a Windows 7 target, including configuring MSF and obtaining a reverse shell.
Master the persistence module to maintain a reverse shell on a Windows 7 target, using registry and startup entries to reestablish access after reboot.
Discover ngrok as an alternative to port forwarding for internet-based access, exposing a local host through a public link and enabling a reverse shell via msf venom.
Explore how to create android payloads with msfvenom using the venom tool, automate mobile exploitation workflows, and understand deploying reverse tcp payloads and shellcode within an ethical hacking framework.
Advance to the coding section after intermediate hacking topics like penetration testing and man-in-the-middle attacks; practice as you begin a Python crash course and code a backdoor with persistence.
Explore how the address resolution protocol (arp) discovers mac addresses on a local network via arp requests and replies, and how arp tables map devices for efficient communication.
Learn how a man-in-the-middle attack uses arp spoofing to impersonate devices, intercepting traffic between a victim pc and the router and exposing login data on http.
install and configure the man-in-the-middle framework (mitmf) from GitHub, install its requirements, and explore its features for arp spoofing, dns spoofing, ssl strip, and other plugins.
Shows how to perform manual arp spoofing to execute a man-in-the-middle attack, poison arp caches, and monitor traffic with drift net in a controlled lab setup.
Troubleshoot MITMf installation by detailing required dependencies, Python components, and GitHub setup to run the man-in-the-middle framework for spoofing attacks.
Learn to configure and use an ARP spoofing tool to perform a man-in-the-middle attack, sniff HTTP traffic, and understand interface and gateway settings that influence targeting.
Explore man-in-the-middle techniques with ARP spoofing and DNS spoofing, and use SSL strip with HSTS bypass to capture usernames and passwords on web traffic.
Learn to use the BeEF browser exploitation framework to hook browsers on a local network with a crafted page and a JavaScript hook, perform man-in-the-middle redirect via a captive portal.
Explore the man-in-the-middle framework, illustrating dns spoofing, captive portal attacks, and ssl stripping, plus dynamic visual tweaks like screenshot capture and image flipping.
Explore how attackers clone any webpage on an Apache server to create a fake login page, redirect users, and leverage man-in-the-middle and DNS spoofing techniques.
Explore Ettercap basics in Kali Linux, using both GUI and CLI to perform unified sniffing, host discovery, ARP poisoning, and DNS spoofing with SSL strip on local networks.
Learn hands-on ethical hacking, penetration testing, web app pentesting, and Python scripting. This course will teach you everything you need to know to get started and unlock a career in Ethical Hacking & Penetration Testing. The course has over 25 hours of video lectures that take you from a complete beginner to an advanced penetration tester.
Learn how to set up your very own Virtual Hacking Lab with VirtualBox, learn how to use Linux, perform network scanning and mapping with Nmap, perform system exploitation with Metasploit, hack Wi-Fi networks with aircrack-ng, exploit web applications with BurpSuite, perform SQL injection on vulnerable web apps, learn how to write pentesting scripts with Python, develop a brute-force tool with Python and learn how to develop a custom backdoor with Python.
If you are looking to get started in Penetration testing and you want to know if this course is for you or worth taking. Take a look at the reviews and testimonials from students that have already taken the course. Here are some of the most recent reviews from our students:
Excellent Explanations - Larry Bensky
The explanation of what is being performed is spot on. Everything is explained and the pace is exactly as needed.
Great course, lot's of quality content - Javier
Great course. I got lots of quality content, where I have learned a lot. This course is great for beginners as covers lots of topics in an easy manner. I loved developing the key-logger and the backdoor
The instructor is very good - Davis Ansong
The instructor is very good. The matched my expectations. Anyone wanting to get into IT and ethical hacking should have a look at this course.
This course aims to teach beginners everything that is needed to become a professional penetration tester and is carefully tailored and structured to ensure validation of what is being taught, every lecture involves student interaction, where students will be required to follow along with the instructor and will also include assessments and projects that will further test and advance the students knowledge of the subject.
The course is structured to provide students with an efficient learning curve where each module builds on one another. The course is comprised of the following key modules:
Setting up a penetration testing lab - This module aims to teach you the process of setting up your own virtual hacking lab.
Linux Essentials - This module is aimed at getting you familiarised with the Linux OS and the most important Linux commands.
Networking Fundamentals - This module will cover the basics of TCP/IP and the OSI model.
Information Gathering - This module aims to teach you both passive and active information gathering.
Exploitation & Privilege Escalation - This module aims to teach you how to exploit systems with tools like Metasploit and how to perform privilege escalation.
Web App Pentesting - This module aims to teach you web application pentesting and how to exploit common web app vulnerabilities like SQL injection, XSS, CSRF, and command injection.
Wireless Pentesting & Man in the middle attacks - This module covers wireless network pentesting and will involve cracking WiFi passwords with aircrack-ng, capturing packets, traffic sniffing, arp spoofing, rainbow tables, and cracking passwords with hashcat.
Offensive Python scripting - This module will teach you the fundamentals of Python and how to develop offensive python tools for penetration testing and automation.