Skip to content

Select a date below

Categories:

Dates are listed in Pacific Time Zone

= Guaranteed to run date

Description

Overview:

To protect an information system you need to be able to see that system through the eyes of the attacker. The Certified Professional Ethical Hacker course is the foundational training of penetration testing courses because it teaches you to think like a hacker. First you will learn the value of vulnerability assessments. Then, you will discover how to use those assessments to make powerful changes in an information system’s security. Additionally, you will learn how malware and destructive viruses function and how to implement counter response and preventative measures when it comes to a network hack.

A Certified Penetration Testing Engineer imagines all of the ways that a hacker can penetrate a data system. You have to go beyond what you learned as an Ethical Hacker because pen testing explores technical and non-technical ways of breaching security to gain access to a system. Our C)PTE course is built on proven hands-on methods utilized by our international group of vulnerability consultants. In the CPTE portion of the course you will learn 5 Key Elements of Pen Testing; Information Gathering, Scanning, Enumeration, Exploitation and Reporting. Plus, discover the latest vulnerabilities and the techniques malicious hackers are using to acquire and destroy data. Additionally, you will learn more about the business skills needed to identify protection opportunities, justify testing activities and optimize security controls appropriate to the business needs in order to reduce business risk.

Prerequisites:

  • 12 months of networking experience
  • Sound knowledge of TCP/IP
  • Basic knowledge of Linux
  • Microsoft security experience

Audience:

  • Pen Testers
  • Security Officers
  • Ethical Hackers
  • Network Auditors
  • Vulnerability Assessors
  • System Owners and Managers
  • Cyber Security Engineers

Outline:

CPEH Outline

Module 1 – Introduction to Ethical Hacking

  • What and why?
  • Differences
  • Security Definitions
  • Risk Management
  • Methodologies

Module 2 – Linux Fundamentals

  • Core concepts
  • The shell and other items you need to know
  • Managing users
  • Basic commands

Module 3 – Protocols

  • Network models
  • Protocols & services

Module 4 – Cryptography

  • Understanding Cryptography
  • Symmetric Encryption
  • Asymmetric Encryption
  • Hashing
  • Cryptography in Use
  • Crypto Attacks

Module 5 – Password Cracking

  • What and why
  • Attacks and Tools of the Trade
  • Countermeasures

Module 6 – Malware

  • DOS and DDOS
  • Viruses and Backdoors
  • Trojans and Backdoors
  • Ransomeware

Module 7 – Security Devices

  • Basic Security Elements
  • Security Appliances

Module 8 – Information Gathering

  • What are we looking for?
  • Where / How do we find this information?
  • Are there tools to help?

Module 9 – Social Engineering

  • Social Engineering Types
  • Phishing Scams

Module 10 – Reconnaissance

  • What are we looking for?
  • Port Scanning
  • Are there tools to help?
  • Banner Grabbing
  • Enumeration

Module 11 – Vulnerability Assessment

  • What is a Vulnerability Assessment
  • Tools of the Trade
  • Testing Internal and External Systems

Module 12 – Network Attacks

  • Sniffing Techniques
  • Hijacking

Module 13 – Hacking Servers

  • Servers, what are they good for?
  • What is an Exploit?
  • Tools of the Trade

Module 14 – Hacking Web Technologies

  • OWSAP Top 10
  • SQL Injection
  • XSS

Module 15 – Hacking Wireless Networks

  • Wireless Technologies
  • Mobile to IoT Technologies
  • Various Tools Used
  • Hacking Techniques
  • Countermeasures

Module 16 – Maintaining Access and Covering Tracks

  • Maintaining Access
  • Covering Tracks

CPEH Lab Outline

Lab 1 – Intro to CPEH Setup

  • Recording Ips and Logging into VMs
  • Joining the Domain

Lab 2 – Linux Fundamentals

  • Command Line Tips and Tricks
  • Linux Networking for Beginners
  • Using FTP during a Pentest

Lab 3 – Understanding Protocols

  • Analyze http session

Lab 4 – Cryptography Lab

  • Hashing Data of all Sorts
  • The Basics of Cryptographic Algorithms

Lab 5 – Password Cracking

Lab 6 – Malware

  • Creating a virus
  • Beast Trojan

Lab 7 – Information Gathering

  • Google Queries
  • Searching Pastebin
  • Maltego
  • People Search Using the Spokeo Online Tool
  • Nslookup

Lab 8 – Information Gathering – Active Reconnaissance

  • Scanning with Nmap
  • Scanning with Hping
  • Banner Grabbing
  • Enumerating a local System with Hyena
  • SMTP Enumeration
  • Ad Enumeration

Lab 9 – Vulnerability Assessment

  • Vulnerability Assessment with Nessus
  • Vulnerability Assessment with Saint

Lab 10 – Network Sniffing / IDS

  • Sniffing Passwords with Wireshark
  • Performing MtM with Cain
  • Performing MtM with sslstrip

Lab 11 – Windows Hacking

  • Attack Windows 7 with Client-Side Exploit
  • Windows 2012 Reverse TCP Exploit
  • Cracking with John the Ripper

Lab 12 – Attacking Databases

  • Attacking MySQL Database
  • Manual SQL Injection

Lab 13 – Attacking Web Applications

  • Attacking with XSS
  • Attacking with CSRF

Lab 14 – Backdoors

  • Setting up a Backdoor

CPTE Outline

Module 1 – Business and Technical Logistics of Pen Testing

  • Section 1 – What is Penetration Testing?
  • Section 2 – Today’s Threats
  • Section 3 – Staying up to Date
  • Section 4 – Pen Testing Methodology
  • Section 5 – Pre-Engagement Activities

Module 2 – Information Gathering Reconnaissance- Passive (External Only)

  • Section 1 – What are we looking for?
  • Section 2 – Keeping Track of what we find!
  • Section 3 – Where/How do we find this Information?
  • Section 4 – Are there tools to help?
  • Section 5 – Countermeasures

Module 3 – Detecting Live Systems – Reconnaissance (Active)

  • Section 1 – What are we looking for?
  • Section 2 – Reaching Out!
  • Section 3 – Port Scanning
  • Section 4 – Are there tools to help?
  • Section 5 – Countermeasure

Module 4 – Banner Grabbing and Enumeration

  • Section 1 – Banner Grabbing
  • Section 2 – Enumeration

Module 5 – Automated Vulnerability Assessment

  • Section 1 – What is a Vulnerability Assessment?
  • Section 2 – Tools of the Trade
  • Section 3 – Testing Internal/External Systems
  • Section 4 – Dealing with the Results

Module 6 – Hacking Operating Systems

  • Section 1 – Key Loggers
  • Section 2 – Password Attacks
  • Section 3 – Rootkits & Their Friends
  • Section 4 – Clearing Tracks

Module 7 – Advanced Assessment and Exploitation Techniques

  • Section 1 – Buffer Overflow
  • Section 2 – Exploits
  • Section 3 – Exploit Framework

Module 8 – Evasion Techniques

  • Section 1 – Evading Firewall
  • Section 2 – Evading Honeypots
  • Section 3 – Evading IDS

Module 9 – Hacking with PowerShell

  • Section 1 – PowerShell – A Few Interesting Items
  • Section 2 – Finding Passwords with PowerShell

Module 10 – Networks and Sniffing

  • Section 1 – Sniffing Techniques

Module 11 – Accessing and Hacking Web Techniques

  • Section 1 – OWASP Top 10
  • Section 2 – SQL Injection
  • Section 3 – XSS

Module 12 – Mobile and IoT Hacking

  • Section 1 – What devices are we talking about?
  • Section 2 – What is the risk?
  • Section 3 – Potential Avenues to Attack
  • Section 4 – Hardening Mobile/IoT Devices

Module 13 – Report Writing Basics

  • Section 1 – Report Components
  • Section 2 – Report Results Matrix
  • Section 3 – Recommendations

CPTE Lab Outline

Lab 1 – Introduction to Pen Testing Setup

  • Recording IPs and Logging into the VMs
  • Joining the Domain
  • Research

Lab 2 – Using tools for reporting

  • Setup a Shared Folder
  • Setting up and using Dradis CE

Lab 3 – Information Gathering

  • Google Queries
  • Searching Shodan
  • Maltego
  • The many tools of OSINT
  • Recog-ng

Lab 4 – Detecting Live Systems – Scanning Techniques

  • Finding a target using Ping utility
  • Footprinting a Target using nslookup Tool
  • Scanning a Target using nmap Tools
  • Scanning a Target using Zenmap Tools
  • Scanning a Target using hping3 Utility
  • Make use of the telnet utility to perform banner grabbing

Lab 5 – Enumeration

  • OS Detection with Zenmap
  • Enumerating services with nmap
  • DNS Zone Transfer
  • Enum4linux
  • AD Enumeration

Lab 6 – Vulnerability Assessments

  • Vulnerability Assessment with Rapid7 InsightVM
  • Vulnerability Assessment with OpenVAS

Lab 7 – System Hacking – Windows Hacking

  • Scanning from the Hacked System
  • Using a Keylogger
  • Extracting SAM Hashes for Password cracking
  • Creating Rainbow Tables
  • Password Cracking with Rainbow Tables
  • Password Cracking with Hashcat
  • Mimikatz

Lab 8 – Advanced Vulnerability and Exploitation Techniques

  • Metasploitable Fundamentals
  • Metasploitable port and vulnerability scanning
  • Client-side attack with Metaspoilt
  • Using Workspaces in Metaspoilt
  • Remote Exploitation of Windows Server

Lab 9 – AntiVirus Bypass

  • Bypassing AntiVirus – Not as effective
  • Bypassing AntiVirus Signature Scanning
  • Bypassing Windows Defender

Lab 10 – Cracking Passwords from a Linux System

  • Cracking Linux Passwords
  • Brute-force SSH Accounts

Lab 11 – Hacking with Powershell

  • Using Powershell to Crack Passwords
  • Using Powershell for Enumeration

Lab 12 – Network Sniffing / IDS

  • Sniffing Passwords with Wireshark
  • Performing MitM with Cain

Lab 13 – Attacking Web Applications

  • OWSAP TOP 10 2017 A1 – Injection
  • OWSAP TOP 10 2017 A2 – Broken Authentication
  • OWSAP TOP 10 2017 A3 – Sensitive Data Exposure
  • OWSAP TOP 10 2017 A4 – XML External Entities
  • OWSAP TOP 10 2017 A5 – Broken Access Control
  • OWSAP TOP 10 2017 A6 – Security Misconfiguration
  • OWSAP TOP 10 2017 A7 – Cross-site Scripting
  • OWSAP TOP 10 2017 A8 – Insecure Deserialization
  • WebApp Scanning

Additional information

Length

5 days

Guaranteed to run

No