Certified Ethical Hacker (CEH v13) – Practical Hacking & Job Ready Program

Learn Ethical Hacking from Scratch with Real-Time Labs, 1200+ CEH Practice Questions & Industry Expert Training

Programme focus

Learn Ethical Hacking from Scratch with Real-Time Labs, 1200+ CEH Practice Questions & Industry Expert Training

About the Certified Ethical Hacker (CEH v13) – Practical Hacking & Job Ready Program programme

Certified Ethical Hacker (CEH v13) is a globally recognized ethical hacking program designed to equip you with real-world offensive security skills. This course helps you understand how attackers think, identify vulnerabilities, and secure systems using practical techniques. At CybersecurityTRAIN, we go beyond theory — you will gain hands-on experience with real hacking tools, live demonstrations, and lab-based learning. This program is designed to make you job-ready, with a strong focus on practical skills, interview preparation, and industry use cases.

Course at a glance

  • Duration: 2 Months
  • Level: Beginner
  • Training format: Live Online
  • Certification awarded: CEH
  • Prerequisites: Fundamentals of computing and security

What you will learn

  • Understand ethical hacking concepts and attack methodologies
  • Perform footprinting and reconnaissance on targets
  • Scan and enumerate networks using real tools
  • Gain access to systems using hacking techniques
  • Analyze malware and understand attack behavior
  • Perform sniffing and network traffic analysis
  • Execute social engineering attacks
  • Understand Denial of Service (DoS/DDoS) attacks
  • Perform session hijacking techniques
  • Exploit web applications (SQL Injection, XSS, etc.)
  • Secure wireless networks and perform attacks
  • Understand cryptography and encryption basics
  • Work with tools like Kali Linux, Nmap, Metasploit, Burp Suite
  • Prepare for CEH certification exam with 1200+ practice questions

Course highlights

  • Real-World Attack Techniques
  • Focus on Both Theory + Practical
  • Hands-on Practical Learning
  • Strong Foundation for Cybersecurity Career

Curriculum modules

Introduction to Ethical Hacking

  • Hacking Phases
  • Types of Hackers
  • CIA Triad (Confidentiality, Integrity, Availability)
  • Vulnerability Assessment vs Penetration Testing
  • Information Security Controls
  • Cybersecurity Threats & Attack Vectors

Footprinting and Reconnaissance

  • Footprinting Concepts
  • Types of Footprinting (Passive vs Active)
  • Information Gathering Techniques
  • Open Source Intelligence (OSINT)
  • WHOIS & DNS Enumeration
  • Website Footprinting
  • Email & Social Media Footprinting
  • Footprinting Tools Overview

Scanning Networks

  • Network Scanning Concepts
  • Types of Scanning (Port Scanning, Network Scanning)
  • TCP/IP Basics (for scanning understanding)
  • Port & Service Enumeration
  • Scanning Techniques (TCP Connect, SYN Scan, etc.)
  • Banner Grabbing
  • Vulnerability Scanning Basics
  • Scanning Tools (like Nmap basics)

Enumeration

  • Enumeration Concepts
  • NetBIOS Enumeration
  • SNMP Enumeration
  • LDAP & Active Directory Enumeration
  • User & Group Enumeration
  • Email Enumeration
  • Enumeration Tools (Netcat, NBTScan, etc.)

Vulnerability Analysis

  • Vulnerability Analysis Concepts
  • Types of Vulnerabilities
  • Vulnerability Assessment Process
  • Vulnerability Scoring (CVSS basics)
  • Vulnerability Scanning Tools
  • False Positives & False Negatives
  • Risk Assessment Basics

System Hacking

  • Password Cracking Techniques
  • Authentication Attacks
  • Privilege Escalation
  • Malware Concepts (Trojans, Backdoors)
  • Keyloggers & Spyware
  • Steganography Basics
  • Covering Tracks

Malware Threats

  • Types of Malware (Virus, Worm, Trojan, Ransomware)
  • Fileless Malware
  • Malware Analysis Basics
  • Malware Propagation Techniques
  • Malware Detection Methods
  • Anti-Malware Tools & Techniques
  • Countermeasures

Sniffing

  • Sniffing Concepts
  • Types of Sniffing (Active vs Passive)
  • MAC Attacks (MAC Flooding)
  • ARP Poisoning / ARP Spoofing
  • DNS Spoofing
  • Packet Analysis Basics
  • Sniffing Tools (Wireshark basics)

Social Engineering

  • Social Engineering Concepts
  • Types of Attacks (Phishing, Vishing, Smishing)
  • Impersonation & Shoulder Surfing
  • Human-Based vs Computer-Based Attacks
  • Social Engineering Tools
  • Insider Threats
  • Countermeasures & Awareness

Denial-of-Service

  • DoS & DDoS Concepts
  • Types of DoS Attacks
  • Botnets Basics
  • DDoS Attack Tools
  • Reflection & Amplification Attacks
  • DoS Attack Detection
  • Countermeasures

Session Hijacking

  • Session Hijacking Concepts
  • Types of Session Hijacking
  • Session ID & Cookies
  • Man-in-the-Middle (MITM) Attacks
  • TCP/IP Hijacking Basics
  • Session Hijacking Tools
  • Countermeasures

Evading IDS, Firewalls, and Honeypots

  • IDS, IPS & Firewall Concepts
  • Types of IDS/IPS
  • Firewall Types & Techniques
  • Evasion Techniques
  • Packet Fragmentation & Obfuscation
  • Honeypots & Honeynets
  • Countermeasures

Hacking Web Servers

  • Web Server Concepts
  • Web Server Attacks
  • Directory Traversal
  • Web Server Misconfigurations
  • Web Server Attack Tools
  • Log File Manipulation
  • Countermeasures

Hacking Web Applications

  • Web Application Concepts
  • OWASP Top 10 (very important)
  • Injection Attacks (SQL Injection, etc.)
  • Cross-Site Scripting (XSS)
  • Cross-Site Request Forgery (CSRF)
  • Session Management Issues
  • File Upload & Input Validation Attacks

SQL Injection

  • SQL Injection Concepts
  • Types of SQL Injection
  • SQL Injection Techniques
  • Database Basics (SQL fundamentals)
  • Error-Based & Blind SQL Injection
  • SQL Injection Tools
  • Countermeasures

Hacking Wireless Networks

  • Wireless LAN Basics (802.11 standards)
  • Wi-Fi Security Protocols (WEP, WPA, WPA2, WPA3)
  • Wireless Encryption Mechanisms
  • Wireless Attacks (Evil Twin, Rogue Access Point)
  • Wi-Fi Cracking Techniques
  • Wireless Sniffing Tools
  • Countermeasures

Hacking Mobile Platforms

  • Mobile OS Security (Android & iOS basics)
  • Mobile Attack Vectors
  • Malware in Mobile Devices
  • Mobile App Security Issues
  • Jailbreaking & Rooting Risks
  • Mobile Device Management (MDM)
  • Mobile Security Countermeasures

IoT Hacking

  • IoT Architecture Basics
  • IoT Communication Protocols (MQTT, CoAP)
  • IoT Device Vulnerabilities
  • IoT Attack Vectors
  • Botnets in IoT (e.g., Mirai concept)
  • IoT Firmware Attacks
  • IoT Security Countermeasures

Cloud Computing

  • Cloud Computing Concepts (IaaS, PaaS, SaaS)
  • Cloud Deployment Models (Public, Private, Hybrid, Community)
  • Cloud Security Threats & Risks
  • Cloud Attack Vectors
  • Virtualization Security Basics
  • Cloud Storage Security Issues
  • Cloud Security Controls & Countermeasures

Cryptography

  • Cryptography Basics (Encryption & Decryption)
  • Symmetric vs Asymmetric Encryption
  • Hashing Algorithms (MD5, SHA)
  • Public Key Infrastructure (PKI)
  • Digital Signatures & Certificates
  • Cryptographic Attacks
  • SSL/TLS Basics
  • Encryption Tools & Applications

Tools and platforms covered

  • WHOIS lookup tools
  • Google Dorking
  • theHarvester
  • Maltego
  • Shodan
  • John the Ripper
  • OpenSSL

Career outcomes

Target job roles

  • Ethical Hacker / Penetration Tester
  • Cybersecurity Analyst
  • SOC Analyst (Security Operations Center)
  • Vulnerability Assessment Analyst
  • Security Consultant (Junior level)
  • Network Security Engineer (Entry level)
  • Incident Response Analyst

Indian salary benchmarks

  • Entry level: 4 LPA
  • Mid level: 12 LPA
  • Senior level: 25 LPA +