We provide virtual course with introduction to Penetration Testing in english. In this 3-day course, you will develop essential cybersecurity knowledge and skills with a focus on penetration testing fundamentals.
You´ll be able to:
• Get the highest quality and unique learning experience - the class is limited to 16 participants by default
• Get the opportunity to interact with our world-renowned Experts
• Go through CQURE’s custom lab exercises and practice them after the course
• Receive a lifelong certification after completing the course
• Get 12-month access to the recordings
Course outline:
The Introduction to Penetration Testing agenda consists of 11 Modules that will be covered during 3 Days. The training will allow you to understand the penetration tester’s perspective on security, and learn crucial tools and concepts needed for everyone considering developing their career in penetration testing or cybersecurity in general.
Modules:
Module 1 - Introduction to Penetration Testing:
• What is Penetration Testing
• What skills should Pentester have
• Cyber Kill Chain
Module 2 - Performing security testing:
• Testing methodologies
• Risk matrix and CVSS score
• The role of automatization
• How to create good report
Module 3 - Reconnaissance:
• Open-Source Intelligence (OSINT)
• Google hacking
• DNS and WHOIS databases
• Subdomain enumeration
Module 4 - Web Applications:
• Introduction to HTTP
• Client and server-side security
• The role of local-proxy
Module 5 - Introduction to Burp Suite:
• Tool overview
• Community and Pro features
• Basic web attacks using Burp Suite
• Work automatization
• Useful extensions
Module 6 - Introduction to Web Attacks:
• OWASP TOP 10 project
• Discovering Access Control issues
• XSS attacks
• SQL Injection attacks
• Insecure file inclusions
• Web attacks and Remote Code Execution
Module 7 - Infrastructure penetration testing:
• Gathering network information
• Introduction to TCP and UDP
• Nmap - powerful port scanner
• Nmap scripts
• Vulnerable default configurations
• Basic AD attacks
Module 8 - Using and creating offensive security tools:
• Programing languages for offensive tasks
• Generating reverse shell
• Generating web shell
• Bypassing firewalls
• Using Metasploit
Module 9 - Security solutions:
• Security solutions on modern systems
• Yara rules
• Alternative file types
• Living Off the Land Binaries
Module 10 - Privilege escalation:
• Attacking services
• Attacking file system
• Accessing system secrets
• Mimikatz
Module 11 - Lateral movement:
• Sniffing
• Bloodhound
• Pass-The-Hash family attacks
• Critical Active Directory issues
Target audience:
This bootcamp is designed for you if you are a:
• Penetration tester
• Security analyst
• IT administrator
• Cybersecurity professional
• & a geek with IT background who wants to start an adventure in the cybersecurity pentesting field
Prerequisites:
• There is no formal prerequisites for this course. It is however reccomended you have a good technical knowledge
Language:
• English course material, english speaking instructor
Course material:
The course fee includes lab exercises, 12-month access to recordings, course materials, certification and Discord community.
Certification:
After finishing the course, you will be granted a CQURE Certificate of Completion. Please note that after completing the course you will also be eligible for CPE points!