Cyber Security & Ethical Hacking
Find, exploit and defend against real vulnerabilities.
- Self-paced
- 8–10 weeks
- 25+ hrs
- Credential included
Curriculum
6 subjects · 15 chapters · 60 topics
- 01
Security Foundations
1.1 Core concepts
- Confidentiality, integrity, availability
- Threats, vulnerabilities and risk
- Attack surface and attack vectors
- Defence in depth
1.2 Legal and ethical ground
- What authorised testing means
- Scope, rules of engagement and written permission
- Indian IT Act and global frameworks
- Responsible disclosure
1.3 The lab
- Building an isolated virtual lab
- Kali Linux and target machines
- Snapshots and safe practice
- Note-taking and evidence
- 02
Networking and Systems
2.1 Networking for security
- TCP/IP, ports and protocols
- Packet capture with Wireshark
- DNS, HTTP and TLS
- Firewalls, NAT and VPNs
2.2 Operating systems
- Linux commands and permissions
- Windows internals and the registry
- Users, privileges and services
- Logs and where they live
- 03
Reconnaissance and Scanning
3.1 Information gathering
- Passive OSINT techniques
- WHOIS, DNS and subdomain enumeration
- Google dorking
- Building a target profile
3.2 Scanning
- Host discovery and port scanning with Nmap
- Service and version detection
- Vulnerability scanning
- Reading a scan report critically
- 04
Exploitation
4.1 System exploitation
- Common vulnerability classes
- Metasploit fundamentals
- Payloads and shells
- Privilege escalation on Linux and Windows
4.2 Web application attacks
- The OWASP Top Ten
- SQL injection
- Cross-site scripting
- Broken authentication and access control
4.3 Password and social attacks
- Hashing and cracking
- Wordlists and rules
- Phishing techniques and defences
- Multi-factor bypass awareness
- 05
Defence
5.1 Hardening
- Patch management
- Secure configuration baselines
- Endpoint protection
- Network segmentation
5.2 Detection and response
- SIEM and log correlation
- Intrusion detection systems
- Incident response phases
- Basic digital forensics
5.3 Cryptography in practice
- Symmetric and asymmetric encryption
- Hashing and digital signatures
- Certificates and PKI
- Common crypto mistakes
- 06
Reporting and Career
6.1 The penetration test report
- Executive summary versus technical detail
- Rating severity properly
- Evidence and reproduction steps
- Remediation advice
6.2 Next steps
- Certification paths
- Bug bounty platforms
- Capture-the-flag practice
- A full lab assessment as capstone

