Ethical Hacking
Penetration testing, OSINT, exploitation, CTF — zero to professional
- 00 Ethical Hacking — Roadmap Zero to professional penetration tester. Recon, exploitation, post-exploitation, reporting — with real labs. beginner 5 min →
- 01 Foundations How networks work, TCP/IP, the OSI model, and the attacker's mental model for finding weaknesses. beginner 12 min →
- 02 Linux for Hackers Terminal mastery, file permissions, bash scripting, and the tools that ship on Kali Linux. beginner 10 min →
- 03 Reconnaissance OSINT, passive recon, Google dorks, Shodan, theHarvester, Maltego — gathering intelligence without touching the target. beginner 12 min →
- 04 Scanning & Enumeration Nmap mastery, service fingerprinting, banner grabbing, and enumerating SMB, FTP, SNMP, and web directories. beginner 14 min →
- 05 Vulnerability Analysis CVE database, CVSS scoring, automated scanners, and manual vulnerability research — finding what's exploitable. intermediate 10 min →
- 06 Exploitation Basics Metasploit framework, manual exploit development, shellcode, payloads, and listeners — turning vulnerabilities into access. intermediate 15 min →
- 07 Web Application Hacking OWASP Top 10, Burp Suite, SQL injection, XSS, SSRF, IDOR, command injection — the complete web attacker's toolkit. intermediate 20 min →
- 08 Network Attacks ARP spoofing, MITM, packet capture, credential sniffing, DNS poisoning — attacking the network layer. intermediate 12 min →
- 09 Privilege Escalation Linux and Windows privesc techniques — SUID binaries, sudo misconfigs, kernel exploits, service account abuse, token impersonation. intermediate 16 min →
- 10 Post-Exploitation Lateral movement, persistence, data exfiltration, pivoting through networks — what happens after you have root. advanced 14 min →
- 11 Cryptography Attacks Hash cracking, weak cipher exploitation, PKI weaknesses, JWT attacks, and password analysis. intermediate 12 min →
- 12 Wireless Security WPA2 handshake capture, WPS attacks, evil twin APs, deauthentication, and wireless network defense. intermediate 10 min →
- 13 Social Engineering Phishing campaigns, pretexting, vishing, physical intrusion — and the defenses that actually work. intermediate 10 min →
- 14 CTF Strategy How to approach Capture the Flag competitions, category breakdowns, platforms, and a methodology for each challenge type. intermediate 12 min →
- 15 Pentest Reporting Professional report structure, CVSS scoring, evidence documentation, executive summaries, and remediation guidance. intermediate 10 min →
- 16 Active Directory Attacks BloodHound, Kerberoasting, AS-REP Roasting, Pass-the-Ticket, DCSync, Golden Tickets — dominating Windows domains. advanced 18 min →
- 17 Cloud Security AWS, GCP, and Azure attack techniques — IAM misconfigs, S3 exposure, metadata service abuse, container escapes, and cloud-native threats. advanced 16 min →
- 18 Container & Kubernetes Security Docker escape techniques, Kubernetes attacks, privileged container abuse, secrets in images, and hardening. advanced 14 min →
- 19 Malware Analysis Static and dynamic analysis, sandbox execution, YARA rules, deobfuscation, and reverse engineering malicious code. advanced 14 min →
- 20 Exploit Development Advanced buffer overflows, ROP chains, format string exploits, heap exploitation, and writing reliable shellcode. advanced 18 min →
- 21 Incident Response & Digital Forensics Memory forensics with Volatility, disk imaging, timeline analysis, log analysis, and the IR lifecycle from detection to remediation. advanced 14 min →
- 22 AV Evasion & Red Team Operations Bypassing antivirus and EDR, LOLBins, C2 frameworks, payload obfuscation, and advanced red team tradecraft. advanced 14 min →
- 23 API Security Testing REST and GraphQL attack techniques, broken authentication, mass assignment, rate limiting bypass, BOLA/BFLA, and automated API scanning. intermediate 12 min →
- 24 Mobile Security Android APK analysis, iOS app testing, dynamic instrumentation with Frida, SSL pinning bypass, and mobile OWASP Top 10. intermediate 14 min →
- 25 IoT & Embedded Security Firmware extraction and analysis, UART/JTAG debugging, default credentials, protocol attacks, and hardware hacking fundamentals. advanced 12 min →
- 26 Blue Team & Defense SIEM, IDS/IPS, SOC operations, detection engineering, threat hunting, hardening guides, and the defender's toolkit. intermediate 14 min →
- 27 Threat Intelligence & MITRE ATT&CK IOCs, threat actor profiling, STIX/TAXII, ATT&CK Navigator, threat hunting with intelligence, and building a threat intel program. intermediate 10 min →
- 28 Bug Bounty Methodology, platform selection, recon automation, high-value target selection, triaging, and earning consistently on HackerOne and Bugcrowd. intermediate 12 min →
- 29 Fuzzing & Vulnerability Research AFL++, LibFuzzer, coverage-guided fuzzing, finding 0-days, code auditing for security, and structured vulnerability research. advanced 12 min →
- 30 Secure Code Review SAST tools, manual code auditing, threat modeling, finding vulnerabilities in real codebases, and building security into the SDLC. intermediate 12 min →