+44 (0)1737 821590
Penetration testing and Ethical Hacking  |    A 5 day   hands on   training course

Penetration testing training course description

An advanced technical hands on course focusing on hacking and counter hacking. The course revolves around a series of exercises based on "hacking" into a network (pen testing the network) and then defending against the hacks.

What will you learn
  • Perform penetration tests.
  • Explain the technical workings of various penetration tests.
  • Produce reports on results of penetration tests.
  • Defend against hackers.
Penetration testing training course details
  • Who will benefit:
  • Technical support staff, auditors and security professionals.
    Staff who are responsible for network infrastructure integrity.

  • Prerequisites:
  • IP Security
    IP VPNs

  • Duration
  • 5 days

  • Dates & prices
  • Click here

Penetration testing training course contents

  • Introduction
  • Hacking concepts, phases, types of attacks, “White hacking”, What is penetration testing? Why use pen testing, black box vs. white box testing, equipment and tools, security lifecycles, counter hacking, pen testing reports, methodologies, legal issues.

  • Physical security and social engineering
  • Testing access controls, perimeter reviews, location reviews, alarm response testing. Request testing, guided suggestions, trust testing. Social engineering concepts, techniques, counter measures, Identity theft, Impersonation on social media, Footprints through social engineering

  • Reconnaissance (discovery)
  • Footprinting methodologies, concepts, threats and countermeasures, WHOIS footprinting, Gaining contacts and addresses, DNS queries, NIC queries, ICMP ping sweeping, system and server trails from the target network, information leaks, competitive intelligence. Scanning pen testing.

  • Gaining access
  • Getting past passwords, password grinding, spoofed tokens, replays, remaining anonymous.

  • Scanning (enumeration)
  • Gaining OS info, platform info, open port info, application info. Routes used, proxies, firewalking, Port scanning, stealth port scanning, vulnerability scanning, FIN scanning, Xmas tree scanning, Null scanning, spoofed scanning, Scanning beyond IDS. Enumeration concepts, counter measures and enumeration pen testing.

  • Hacking
  • Hacking webservers, web applications, Wireless networks and mobile platforms. Concepts, threats, methodology, hacking tools and countermeasures.

  • Trojan, Backdoors, Sniffers, Viruses and Worms
  • Detection, concepts, countermeasures, Pen testing Trojans, backdoors, sniffers and viruses. MAC attacks, DHCP attacks, ARP poisoning, DNS poisoning Anti-Trojan software, Malware analysis Sniffing tools.

  • Exploiting (testing) vulnerabilities
  • Buffer overflows,, simple exploits, brute force methods, UNIX based, Windows based, specific application vulnerabilities.

  • DoS/DDoS
  • Concepts, techniques, attack tools, Botnet, countermeasures, protection tools, DoS attack pen testing.

  • SQL Injection
  • Types and testing, Blind SQL Injection, Injection tools, evasion and countermeasures.

  • Securing networks
  • “Hurdles”, firewalls, DMZ, stopping port scans, IDS, Honeypots, Router testing, firewall testing, IDS testing, Buffer Overflow.

  • Cryptography
  • PKI, Encryption algorithms, tools, Email and Disk Encryption.

  • Information security
  • Document grinding, privacy.

Learning path

Reviews

5.0

Based on customer ratings

B. M. - London Internet Exchange

"Excellent presentation - very good course structure."


T. E. - FP Mailing

"Course was a real eye-opener to some of the barriers we encounter."

Training approach

This structured course uses Instructor Led Training to provide the best possible learning experience. Small class sizes ensure students benefit from our engaging and interactive style of teaching with delegates encouraged to ask questions throughout the course. Quizzes follow each major section allowing checking of learning. Hands on sessions are used throughout to allow delegates to consolidate their new skills.