Skip to content
SOLUTECHInnovation & Solutions

Cyber Security & Ethical Hacking

Find, exploit and defend against real vulnerabilities.

  • Self-paced
  • 8–10 weeks
  • 25+ hrs
  • Credential included

Curriculum

6 subjects · 15 chapters · 60 topics

  1. 01

    Security Foundations

    1.1 Core concepts

    • Confidentiality, integrity, availability
    • Threats, vulnerabilities and risk
    • Attack surface and attack vectors
    • Defence in depth

    1.2 Legal and ethical ground

    • What authorised testing means
    • Scope, rules of engagement and written permission
    • Indian IT Act and global frameworks
    • Responsible disclosure

    1.3 The lab

    • Building an isolated virtual lab
    • Kali Linux and target machines
    • Snapshots and safe practice
    • Note-taking and evidence
  2. 02

    Networking and Systems

    2.1 Networking for security

    • TCP/IP, ports and protocols
    • Packet capture with Wireshark
    • DNS, HTTP and TLS
    • Firewalls, NAT and VPNs

    2.2 Operating systems

    • Linux commands and permissions
    • Windows internals and the registry
    • Users, privileges and services
    • Logs and where they live
  3. 03

    Reconnaissance and Scanning

    3.1 Information gathering

    • Passive OSINT techniques
    • WHOIS, DNS and subdomain enumeration
    • Google dorking
    • Building a target profile

    3.2 Scanning

    • Host discovery and port scanning with Nmap
    • Service and version detection
    • Vulnerability scanning
    • Reading a scan report critically
  4. 04

    Exploitation

    4.1 System exploitation

    • Common vulnerability classes
    • Metasploit fundamentals
    • Payloads and shells
    • Privilege escalation on Linux and Windows

    4.2 Web application attacks

    • The OWASP Top Ten
    • SQL injection
    • Cross-site scripting
    • Broken authentication and access control

    4.3 Password and social attacks

    • Hashing and cracking
    • Wordlists and rules
    • Phishing techniques and defences
    • Multi-factor bypass awareness
  5. 05

    Defence

    5.1 Hardening

    • Patch management
    • Secure configuration baselines
    • Endpoint protection
    • Network segmentation

    5.2 Detection and response

    • SIEM and log correlation
    • Intrusion detection systems
    • Incident response phases
    • Basic digital forensics

    5.3 Cryptography in practice

    • Symmetric and asymmetric encryption
    • Hashing and digital signatures
    • Certificates and PKI
    • Common crypto mistakes
  6. 06

    Reporting and Career

    6.1 The penetration test report

    • Executive summary versus technical detail
    • Rating severity properly
    • Evidence and reproduction steps
    • Remediation advice

    6.2 Next steps

    • Certification paths
    • Bug bounty platforms
    • Capture-the-flag practice
    • A full lab assessment as capstone

Other programmes