Master Art of Ethical Hacking & Penetration Testing in 2025

所在平台: Udemy

课程主页: https://www.udemy.com/course/master-art-of-ethical-hacking-penetration-testing-in-2025/

课程评论:没有评论

第一个写评论        关注课程

课程简介

课程名称:2025年道德黑客与渗透测试大师课程 课程概述: 欢迎参加《进攻性黑客食谱》,这是一门密集课程,旨在将您培养成技术娴熟的渗透测试人员。本课程无废话,以全面的方式带您深入了解道德黑客和渗透测试的复杂世界,为您提供识别和利用现实系统漏洞所需的知识和实践技能。 本课程适合: - 完全的初学者,希望从零开始学习黑客艺术,并建立强大的进攻性网络安全基础。 - 希望进入进攻性网络安全领域并追求道德黑客及渗透测试职业的学生。 - 有志于通过CEH(注册道德黑客)、OSCP(进攻性安全认证专家)、eJPT(eLearnSecurity初级渗透测试人员)和PNPT(实用网络渗透测试人员)等认证的专业人士。 - 希望提升现有进攻性技能并在快速发展的网络安全领域中保持领先的安全专业人员。 课程亮点: - 150+个视频(超过19小时),手把手教您从基础学习道德黑客与网络安全。 - 针对不同平台(THM、HTB、Vulnhub和Proving Grounds)的实践操作。 - 完全掌握黑客所需的网络知识及Linux命令行操作。 - 学习如何使用proxychains和TOR实现匿名。 - 理解网络安全基础知识,以及CIA三要素和网络攻击链 metodología。 - 进行全方位的目标侦察,深度掌握Nmap、服务枚举、漏洞扫描和各种利用技术。 - 掌握Metasploit框架和客户端攻击的执行技巧,并学习如何规避防病毒和EDR系统的检测。 课程大纲包括: 1. 课程介绍:介绍课程模块及学习内容。 2. 笔记与学习:掌握笔记流程,记录重要信息以进行准确分析和报告。 3. 网络复习:复习IP地址、子网划分及协议等基础网络知识。 4. Linux复习:介绍Linux命令行技能及系统知识,增强渗透测试能力。 5. 网络安全原理:围绕保密性、完整性和可用性建立道德黑客的基础知识。 6. 信息收集(侦察):详细讲解被动侦察技术,如何收集目标信息。 7. 主动侦察:探索主动侦察技术,直接与目标系统交互发现漏洞。 8. 服务枚举:指导如何从目标系统提取详细信息,识别安全弱点。 9. 漏洞扫描:教您如何有效地执行漏洞扫描,识别和评估安全缺陷。 10. 利用技巧:展示如何安全高效地利用漏洞获得系统访问权限。 11. Metasploit框架:使用Metasploit框架进行攻击自动化和漏洞利用。 12. 客户端攻击:指导如何通过社会工程学等手段进行客户端攻击。 13. 防病毒与EDR规避:学习绕过安全防御的策略。 14. 实操练习:通过不同平台的8台机器测试所学技能。 立即注册,开始您的道德黑客学习之旅吧!

课程评论(0条)

课程详情

Welcome to the Offensive Hacking Cookbook, an intensive course designed to transform you into a skilled penetration tester. This No BS, comprehensive program will take you on a journey through the intricate world of ethical hacking, and penetration testing equipping you with the knowledge and hands-on skills needed to identify and exploit vulnerabilities in real-world systems. This course is designed for:Complete beginners who want to learn the art of hacking from scratch and build a strong foundation in offensive cybersecurity.Students looking to break into the world of offensive cybersecurity and pursue a career in ethical hacking and penetration testing.Aspiring professionals aiming to ace certifications like CEH (Certified Ethical Hacker), OSCP (Offensive Security Certified Professional), eJPT (eLearnSecurity Junior Penetration Tester), and PNPT (Practical Network Penetration Tester).Security professionals who want to sharpen their existing offensive skillset and stay ahead in the rapidly evolving cybersecurity landscape.Course Highlights:150+ videos (19+ hours) to teach you ethical hacking & cybersecurity from scratch.Hands on Practicals on Different machines from THM, HTB, Vulnhub and Proving GroundsMaster complete Networking for hackersMaster complete Linux command-line for hackersHow to become anonymous using proxychains and TORLearn importance of Note taking and complete note taking processUnderstanding Cybersecurity FundamentalsUnderstand CIA Triad and Cyber Kill Chain MethodologyPerforming complete Reconnaissance on the target with 3 Levels of depthMaster Nmap - The Network Scanning Swiss Army KnifeMaster Enumeration of different servicesMaster Vulnerability Scanning with Nikto, Nessus and OpenVASMaster Exploitation Techniques - Bruteforce Attacks, Default Password attacks, Credential Stuffing & Password SprayingLearn Manual Exploitation and Automated Exploitation with MetasploitLearn Fixing ExploitsThe Metasploit FrameworkPerforming Client Side AttacksExploitation via Office MacrosExploitation with HTA attackThe Browser Exploitation Framework (BeEF)AV & EDR EvasionCourse Curriculum:1. Course Introduction - Introduction to our course modules and what you will get inside.IntroductionWhoamiWhy this course ?What you will learn here ?Pre-requisites & requirement2. Note Taking & Learning - Module 2 focuses on mastering the notetaking process, teaching you how to document critical information during penetration tests and cybersecurity assessments for accurate analysis and reporting.Notetaking processReading vs Visual learningLearn in PublicAssignment, Quizzes & LabsCourse Discord3. Networking Refresher - Module 3 refreshes your networking knowledge, covering essential concepts like IP addressing, subnetting, and protocols crucial for effective ethical hacking and penetration testing.IP addressesMAC addressesClient-Server ModelDNSTCP VS UDP and Three-way handshakeCommon Ports & ProtocolsOSI Model and TCP/IP ModelHow Web Works ?Subnetting4. Linux Refresher - Module 4 provides a Linux refresher, equipping you with essential command-line skills and system knowledge needed for effective penetration testing and ethical hacking.Installing Kali Linux on Vmware & Virtual BoxKali Linux OverviewSudo OverviewNavigating the File SystemFile & Directory permissionsUsers & privilegesViewing, Creating and Editing Filesgrep and pipingFinding files in LinuxEnumerating Distribution & Kernel InformationShells & Bash configurationDisk UsageNetworkingFile compression in linuxService & Process ManagementInstalling software & toolsUseful Keyboard ShortcutsUsing TOR & Proxychains5. Cybersecurity Principles - Module 5 covers core cybersecurity principles, including confidentiality, integrity, availability, and risk management, to build a strong foundation for ethical hacking and secure system design.Understanding Threats & Threat ActorsThe CIA TriadThe Cyber Kill ChainSecurity PrinciplesThreat Modelling and Threat IntelligenceInformation Security Laws & StandardsThe Ethical Hacking Methodology6. Information Gathering (Reconnaissance) - Module 6 focuses on Passive Reconnaissance techniques, showing you how to gather valuable information about targets without directly interacting with the systems, minimizing detection risks.Introduction to ReconnaissanceIdentifying our TargetWhois RecordsGoogle DorkingCompany OSINTWeb ArchivesIdentifying Website TechnologiesDiscovering Email addressesHunting breached credentialsHunting for subdomainsOpen Source code reconnaissanceSecurity Headers and SSL/TLS testingBanner grabbing and Firewall DetectionFinding IP address behind CloudflareShodan, Zoomeye and CensysEnumeration with Carbon DatingAndroid Apps EnumerationUtilizing Social MediaInformation Gathering with Black WidowDNS recon using host, nslookup and digDNS Zone TransferHistorical DNS recordsDNS Brute forcing and subdomain enumerationFinding and enumerating ASNFinding Cloud resourcesFiltering live hosts and domainsFinding Hidden parameters and endpointsAutomating the Reconnaissance7. Active Reconaissance - Module 7 explores Active Reconnaissance techniques, teaching you how to directly interact with target systems to uncover vulnerabilities while managing potential risks of detection.Introduction to Active ReconnaissanceInstalling Metasploitable 2Host discovery with NetdiscoverHost discovery with NmapPort scanning with NmapService FingerpritingOS FingerprintingScanning beyond Firewall & IDSOptimizing your scansPort Scanning in WindowsScanning with masscanScanning with RustscanDirectory Bruteforcing8. Enumeration - Module 8 covers Enumeration techniques, guiding you through the process of extracting detailed information from target systems to identify potential security weaknesses and attack vectors.Introduction to EnumerationFTP EnumerationTelnet EnumerationSSH EnumerationNetBIOS EnumerationSMB EnumerationSNMP EnumerationLDAP EnumerationNTP EnumerationNFS EnumerationSMTP EnumerationIMAP EnumerationPOP EnumerationMYSQL EnumerationTFTP EnumerationIPSec Enumeration9. Vulnerability Scanning - Module 9 teaches you how to perform effective vulnerability scanning, helping you identify and assess security flaws in systems to prioritize remediation and strengthen defenses.Introduction to Vulnerability ScanningVulnerability ClassificationVulnerability assessmentsVulnerability Scanning with NiktoVulnerability Scanning with NmapVulnerability Scanning with NessusVulnerability Scanning with OpenVASThe Zero days10. Exploitation (Popping Shellz) - Module 10 delves into exploitation techniques, showing you how to safely and effectively exploit identified vulnerabilities to gain access to systems and understand potential attack paths.Introduction to ExploitationReverse Shells vs Bind ShellsStaged vs Non-staged payloadsAll about MalwaresDefault Passwords attacksBruteforce AttacksCredential Stuffing & Password SprayingGaining Access with MetasploitLocating Public ExploitsFixing Public ExploitsManual Exploitation11. The Metasploit Framework - Module 11 focuses on using the Metasploit Framework for exploitation, teaching you how to harness this powerful tool to automate attacks and exploit vulnerabilities in a controlled, ethical manner.Metasploit Framework OverviewSetting up the working environmentAuxiliary ModulesExploit ModulesPost, Nops and encoders ModulesMeterpreter PayloadsCreating payloads with msfvenomHacking Windows XP with MetasploitHacking Windows 7 with MetasploitHacking Windows 10 with MetasploitHacking Windows remotely over WANAdding a new exploitResource scripts12. Client Side Attacks - Module 12 covers Client-Side Attacks, guiding you through techniques to exploit vulnerabilities in user devices and applications, including phishing, malware, and social engineering tactics.Introduction to Client Side AttacksPerforming Target ReconExploitation with Office MacrosExploitation with HTA attackThe Browser Exploitation Framework (BeEF)13. Antivirus & EDR Evasion - Module 13 teaches you strategies for evading Antivirus and Endpoint Detection & Response (EDR) systems, helping you bypass security defenses to carry out penetration testing and ethical hacking more effectively.Introduction to Antivirus & EDR EvasionHow AV Detection Works ?AV Evasion ConceptsAV Evasion with ShellterAV Evasion with Scarecrow14. Getting Hands Dirty - Module 14 gives you 8 machines from different platforms like Tryhackme, HTB and PG to test your skills that you have learned throughout the course.THM - Agent T WalkthroughTHM - Bolt CMS WalkthroughTHM - Blue WalkthroughTHM - Blueprint WalkthroughPG - Stapler WalkthroughPG - Monitoring WalkthroughHTB - Preignition WalkthroughVulnhub - Kioptrix WalkthroughStill here ? What are you waiting for? Click the buy now button and enroll in the World's Biggest & Most Advanced Ethical Hacking Course now. See you inside the course!

课程标签

0人关注该课程

主题相关的课程