White Hacker
Entry-level offensive security path covering Linux, networking, web hacking, cryptography, and exploitation fundamentals.
Overview
- •You're looking for attack — targets only
- •You want the skills to find and break security weaknesses
- •You understand the risks if you get caught
- •You want to master the art of hiding your tracks
- •You want a solid foundation in Social Engineering
- •You want deep knowledge in languages like Python, Docker, JavaScript, PHP, Perl, SQL
Select your module(s)
You can select the modules you want to learn. There's a recommended order in the learning curve, unless you already know something and want to go further.
Many servers and security tools use Linux. Learn how to use the Linux operating system, a critical skill in cyber security.
- Linux Fundamentals Part 1 — Embark on the journey of learning the fundamentals of Linux. Learn to run some of the first essential commands on an interactive terminal.
- Linux Fundamentals Part 2 — Continue your learning Linux journey with part two. You will be learning how to log in to a Linux machine using SSH, how to advance your commands, file system interaction.
- Linux Fundamentals Part 3 — Power-up your Linux skills and get hands-on with some common utilities that you are likely to use day-to-day!
Learn about the OSI model and TCP/IP networking layers. Explore the different plaintext and secure networking protocols that we use every day.
- Networking Concepts — Learn about the ISO OSI model and the TCP/IP protocol suite.
- Networking Essentials — Explore networking protocols from automatic configuration to routing packets to the destination.
- Networking Core Protocols — Learn about the core TCP/IP protocols.
- Networking Secure Protocols — Learn how TLS, SSH, and VPN can secure your network traffic.
- Wireshark: The Basics — Learn the basics of Wireshark and how to analyse protocols and PCAPs.
- Tcpdump: The Basics — Learn how to use Tcpdump to save, filter, and display packets.
- Nmap: The Basics — Learn how to use Nmap to discover live hosts, find open ports, and detect service versions.
Learn about web applications, JavaScript, and SQL. Explore BurpSuite, a web application security testing platform, and the OWASP Top Ten.
- Web Application Basics — Learn the basics of web applications: HTTP, URLs, request methods, response codes, and headers.
- JavaScript Essentials — Learn how to use JavaScript to add interactivity to a website and understand associated vulnerabilities.
- SQL Fundamentals — Learn how to perform basic SQL queries to retrieve and manage data in a database.
- Burp Suite: The Basics — An introduction to using Burp Suite for web application pentesting.
- OWASP Top 10 - 2021 — Learn about and exploit each of the OWASP Top 10 vulnerabilities; the 10 most critical web security risks.
Explore various symmetric and asymmetric encryption algorithms. Discover the usage of hashing algorithms in everyday systems.
- Cryptography Basics — Learn the basics of cryptography and symmetric encryption.
- Public Key Cryptography Basics — Discover how public key ciphers such as RSA work and explore their role in applications such as SSH.
- Hashing Basics — Learn about hashing functions and their uses in password verification and file integrity checking.
- John the Ripper: The Basics — Learn how to use John the Ripper, a powerful and adaptable hash-cracking tool.
Discover the art of exploitation by leveraging a real-world vulnerability. Next, explore the exploitation features of the Metasploit framework.
- Moniker Link (CVE-2024-21413) — Leak user's credentials using CVE-2024-21413 to bypass Outlook's Protected View.
- Metasploit: Introduction — An introduction to the main components of the Metasploit Framework.
- Metasploit: Exploitation — Using Metasploit for scanning, vulnerability assessment and exploitation.
- Metasploit: Meterpreter — Take a deep dive into Meterpreter, and see how in-memory payloads can be used for post-exploitation.
- Blue — Deploy & hack into a Windows machine, leveraging common misconfigurations issues.
Explore three offensive tools; Hydra, Gobuster, and SQLMap are used for penetration testing passwords, directories, and databases respectively.
- Hydra — Learn about and use Hydra, a fast network logon cracker, to bruteforce and obtain a website's credentials.
- Gobuster: The Basics — This room focuses on an introduction to Gobuster, an offensive security tool used for enumeration.
- Shells Overview — Learn about the different types of shells.
- SQLMap: The Basics — Learn about SQL injection and exploit this vulnerability through the SQLMap tool.
Includes Lab for a month. All prices are monthly (MXN), before taxes.
Plan your training path
Tell us your team, schedule and modules of interest and we will reply with the next steps.
Request informationOnline enrollment is coming soon. In the meantime, contact us to enroll.
