Ethical Hacking Course Overview
Ethical Hacking Course Overview
COM
Offensive Security
The first large area within Cyber
Security is the offensive side. This
area involves attacking different
applications and technologies to
discover vulnerabilities.
D
Defensive Security
This is the second major area within
Security. While Offensive Security involves
actively finding vulnerabilities and
misconfigurations within technologies,
Defensive Security involves detecting and
stopping these attacks.
[Link]
Networking Identifying Devices on a Network
Begin learning the fundamentals of computer Now we can change our name through deed
networking in this bite-sized and interactive module. poll, but we can't, however, change our
fingerprints. Every human has an individual
set of fingerprints which means that even if
they change their name, there is still an
identity behind it. Devices have the same
thing: two means of identification, with one
being permeable. These are:
Ping (ICMP)
Ping is one of the most fundamental network
tools available to us. Ping
What is Networking? uses ICMP (Internet Control Message Protoc
A computer network is a set of computers ol) packets to determine the performance of a
sharing resources located on or provided by connection between devices, for example, if
network nodes. The computers usecommon the connection exists or is reliable.
communication protocols over digital
interconnections to communicate with each
other. What is the Internet?
The Internet is one giant network that
[Link] consists of many, many small networks within
atisnetworking itself. Using our example from the previous
task, let's now imagine that Alice made
some new friends named Zayn and Toby
that she wants to introduce to Bob and Jim.
The problem is that Alice is the only person
who speaks the same language as Zayn a..
Networking
Begin learning the fundamentals of computer Internet Protocol version 4 | IPV4
networking in this bite-sized and interactive module.
Internet Protocol version 4 is the fourth
version of the Internet Protocol. It is one of
the core protocols of standards-based
internetworking methods in the Internet and
other packet- switched networks. IPv4 was
the first version deployed for production on
SATNET in 1982 and on the ARPANET in
IP Addresses January 1983.
Briefly, an IP address (or Internet Protocol)
address can be used as a way of identifying Internet Protocol version 6 | IPV6
a host on a network for a period of time,
Internet Protocol version 6 is the most recent
where that IP address can then be
version of the Internet Protocol, the
associated with another device without the IP
communications protocol that provides an
address changing. First, let's split up
identification and location system for
precisely what an IP address is in the
computers on networks and routes traffic
diagram below:
across the Internet.
[Link]
[Link] Contact Us : +917477466951
Protocol in
Computer
Total Number of Protocols
in Networking : 65535
In computer networking, a port is a communication
endpoint. At the software level, within an operating
system, a port is a logical construct that identifies a
specific process or a type of network service. A port is
identified for each transport protocol and address
combination by a 16- bit unsigned number, known as
the port number. The most common transport
protocols that use port numbers are the Transmission
Control Protocol (TCP) and the User Datagram
Protocol (UDP).
Introductory Networking
Traceroute The TCP/IP Model
The logical follow-up to the ping command is The TCP/IP model is, in many ways, very similar to the OSI
'traceroute'. Traceroute can be used to map the model. It's a few years older, and serves as the basis for real-
path your request takes as it heads to the world networking. The TCP/IP model consists of four layers:
target machine. Application, Transport, Internet and Network Interface. Between
them, these cover the same range of functions as the seven
layers of the OSI Model.
At this stage, hopefully all of the theory has made The OSI (Open Systems Interconnection) Model
sense and you now understand the basic models is a standardised model which we use to
behind computer networking. demonstrate the theory behind computer
networking. In practice, it's actually the more
compact TCP/IP model that real-world
networking is based off; however the OSI model,
in many ways, is easier to get an initial
understanding from.
WHOIS
WHOIS is a query and response protocol that is widely
used for querying databases that store the registered users
or assignees of an Internet resource, such as a domain
name, an IP address block or an autonomous system, but
is also used for a wider range of other information.
[Link]
[Link] Contact Us : +917477466951
Open Systems Interconnection (OSI) Model
Application Layer
The application layer of the OSI model essentially provides
networking options to programs running on a computer.
Presentation Layer
The presentation layer receives data from the application layer.
Session Layer
When the session layer receives the correctly formatted data from
the presentation layer, it looks to see if it can set up a connection
with the other computer across the network.
Transport Layer
The transport layer is a very interesting layer that serves numerous
important functions. Its first purpose is to choose the protocol over
Data Link Layer
which the data is to be transmitted.
The data link layer focuses on the physical addressing of the
transmission. Network Layer
The network layer is responsible for locating the destination of your
request. For example, the Internet is a huge network; when you
Physical Layer want to request information from a webpage,
The physical layer is right down to the hardware of the computer.
This is where the electrical pulses that make up data transfer over
a network are sent and received.
CIA Model | Information Security
Confidentiality,
Integrity, The Common Information Model is an open standard that defines how managed
elements in an IT environment are represented as a common set of objects and
Availability relationships between them.
Confidentiality
Integrity
Availability
Surface Web, Deep Web and Dark Web
MESH Network BUS Network TREE Network RING Network HYBRID Network STAR Network
topology topology topology topology topology topology
[Link]
[Link]/room/intr
otolan
Web Fundamentals
Introduction and objectives
We'll cover HTTP requests and responses, web
servers, cookies and then put them all to use in a mini
Capture the Flag at the end.
Firewall
In computing, a firewall is a network security
Intrusion Prevention System (IPS)
system that monitors and controls incoming
An intrusion prevention system (IPS) is an and outgoing network traffic based on
active protection system. Like the IDS, it predetermined security rules. A firewall
attempts to identify potential threats based upon typically establishes a barrier between a
monitoring features of a protected host or trusted network and an untrusted network,
network and can use signature, anomaly, or such as the Internet.
hybrid detection methods.
Honeypots
In computer terminology, a honeypot is
a computer security mechanism set to
detect, deflect, or, in some manner,
counteract attempts at unauthorized
use of information systems.
Honeypots Setup
Network Security
Detection Hacking Attack
In computer terminology, a honeypot is a computer
security mechanism set to detect, deflect, or, in some
manner, counteract attempts at unauthorized use of
information systems.
Linux
Penetration
Testing OS
Linux is a family of open-source
H a c k e r ’s L i n u x Unix-like operating systems based
on the Linux kernel, an operating
system kernel first released on
Kali Linux September 17, 1991, by Linus
Torvalds. Linux is typically
packaged in a Linux distribution.
Parrot Security
Backbox Linux
Foot printing and Information
Gathering
There are two types of Foot printing that can be used: active Foot printing and passive Foot printing. Active Foot
printing is the process of using tools and techniques, such as performing a ping sweep or using the traceroute
command, to gather information on a target.
06 Shodan
02 Wappalyzer
Shodan is a search engine
Identify web technologies Wappalyzer 04 Google Dork that lets the user find specific
is a technology profiler that shows you types of computers
what websites are built with. Find out Google hacking, also named
Google Dorking, is a hacker connected to the internet
what CMS a website is using, as well using a variety of filters.
as any framework, ecommerce technique that uses Google
Search and other Google Some have also described it
platform, JavaScript libraries and many as a search engine of service
more. applications to find security
holes in the configuration and banners, which are metadata
computer code that websites that the server sends back to
are using. the client.
Foot printing and Information
01
Gathering
Subdomain Enumeration
Subdomain enumeration is the
05 Ping
A ping is a Command Prompt
process of finding valid (resolvable) CMS Enumeration command that can be used to test a
subdomains for one or more
03
connection between one computer
domain(s). Unless the DNS server CMSmap is a python open source
and another. Think of it in terms of
exposes a full DNS zone (via CMS scanner that automates the
sonar on a submarine. ... When the
AFXR), it is really hard to obtain a process of detecting security flaws of
ping strikes a nearby object, it will
list of existing subdomains. The the most popular CMSs. The main
echo back. Operators can
common practice is to use a purpose of CMSmap is to integrate
determine an object's distance by
dictionary of common names,trying common vulnerabilities for different
the length of time it takes to return
to resolve them types of CMSs in a single tool.
the echo.
06 Shodan
02 Tracert
Email tracking service that
In computing, traceroute and tracert 04 Eavesdropping tracks email you sent. Sends
are computer network diagnostic you notification
commands for displaying possible Attacker tries to record
personal conversation of the when email gets opened, find
routes and measuring transit delays of out when & where recipients
packets across an Internet Protocol target victim with someone
that’s being held over read your emails.
network. [Link]
communication mediums like
Telephone.
Exploit-DB
link:which searches for all links to a site or URL
03
)
Virus Creating
USB To System Hacking A computer virus is a type of computer program
Hacker Hack System Data Using usb that, when executed, replicates itself by
Device modifying other computer programs and
inserting its own code. If this replication
succeeds, the affected areas are then said to be
"infected" with a computer virus. Computer
viruses generally require a host program
Coming soon
Network Scanning …
Network scanning refers to the use of a
computer network to gather information regarding
computing systems. Network scanning is mainly
used for security assessment, system
maintenance, and also for performing attacks by
hackers.
Topic
Install and Setup Turmux Install Script And Tools Github Learning Hacking commend
Hacking Wireless Networks
What Is WPS
WIFI Hacking
Wi-Fi Protected Setup (WPS) is a
WIFI Hacking Using WPS Security
feature supplied with many routers.
you can use to find out if your
It is designed to make the process
access point is vulnerable to WPS
of connecting to a secure wireless
protocol. As usual, the application
network from a computer or other
lets you carry out this check on any
device easier.
network, but it’s recommended to
use it exclusively on your own.
Firewall
In computing, a firewall is a network security Use HTTPS
system that monitors and controls incoming As a consumer, you may already know
and outgoing network traffic based on to always look for the green lock image
predetermined security rules. A firewall and https in your browser bar any time
typically establishes a barrier between a you provide sensitive information to a
trusted network and an untrusted network, website.
such as the Internet.
Website
Security
Up-To-Date Topic Don’t help the hackers
Using a CMS with various useful plugins and look out for phishing emails and other
extensions offers a lot of benefits, but it also brings scams.
risk. The leading cause of website infections is
vulnerabilities in a content management system’s
extensible components.
Basic SSRF against the local server
01 Why do applications behave in this way, and implicitly trust requests
that come from the local machine? This can arise for various reasons:
04 Some applications only allow input that matches, begins with, or contains,
a whitelist of permitted values. In this situation, you can sometimes
circumvent the filter by exploiting inconsistencies in URLparsing.
Server-side request forgery (also known as SSRF) is a web security
vulnerability that allows an attacker to induce the server-side application to Bypassing SSRF filters via open redirection
05
make HTTP requests to an arbitrary domain of the attacker's [Link] a
typical SSRF attack, the attacker might cause the server to make a It is sometimes possible to circumvent any kind of filter-based defenses
connection to internal-only services within the organization's infrastructure. by exploiting an open redirection vulnerability.
In other cases, they may be able to force the server to connect to arbitrary
external systems, potentially leaking sensitive data such as authorization
credentials.
Excessive trust in client-side controls
01 Why do applications behave in this way, and implicitly trust requests
that come from the local machine? This can arise for various reasons:
Business logic
Price Tampering Vulnerabilities
Vulnerabilities In this section, we'll introduce the concept of business logic vulnerabilities and
Hence, web parameter tampering attack is possible by manipulating the price using explain how they can arise due to flawed assumptions about user behavior. We'll
a simple web proxy tool (Tamper data, burpsuite etc.) or by editing the amount discuss the potential impact of logic flaws and teach you how they can be
using the browser's web inspector tool. Notice the form field called price, which is exploited. You can also practice what you've learned using our interactive labs,
flagged as hidden. which are based on real bugs that we've encountered in the wild. Finally, we'll
provide some general best practices to help you prevent these kinds of logic
flaws arising in your own applications.
IDOR examples
01 There are many examples of access control vulnerabilities where
user-controlled parameter values are used to access resources or
functions directly.