Choose your language
Advanced Ethical Hacking and Cybersecurity Training
Over 400,000 professionals on the platform
Exclusive for businesses

Advanced Ethical Hacking and Cybersecurity Training

Master the full offensive security lifecycle — from reconnaissance and exploitation to post-compromise operations and professional reporting. This advanced course delivers hands-on training across real-world attack surfaces including Active Directory, web applications, cloud infrastructure, and wireless networks. Built for serious practitioners ready to operate at the level employers and clients actually demand.

Dedika for students

What your team will master:

  • Execute advanced Active Directory attacks including Kerberoasting, DCSync, and golden ticket forgery.

  • Conduct end-to-end web application assessments aligned with the OWASP Top 10 vulnerability framework.

  • Build and operate a complete penetration testing lab environment using industry-standard offensive tools.

  • Apply post-exploitation techniques including privilege escalation, lateral movement, and persistence mechanisms.

  • Assess cloud and container environments for IAM misconfigurations, exposed storage, and escape vulnerabilities.

  • Deliver professional penetration testing reports structured for both executive stakeholders and technical remediation teams.

How your team learns in practice Advanced Ethical Hacking and Cybersecurity Training

How your team practises Advanced Ethical Hacking and Cybersecurity Training

Professionals from these companies study at Dedika

ActemiumFR
Nunner LogisticsNL
GT Constructora GeotécnicaCR
Sydel StarBR
Metrô de São PauloBR
Aguas AndinasCL
DSMIN
MeridianbetRS
CDHCN

Course content

8 Chapters • 39 LessonsDuration between 4 and 360 hours (you decide)

Chapter 1See details

Foundations of Ethical Hacking

  • Lesson 1 • Attacker Mindset and Methodology

    Introduces structured attack frameworks and adversarial thinking patterns. Provides the cognitive foundation for planning and executing assessments systematically.

  • Lesson 2 • Ethics, Law, and Scope Definition

    Covers the legal boundaries, authorisation frameworks, and codes of conduct governing penetration testing. Anchors all subsequent offensive techniques in professional accountability.

  • Lesson 3 • Linux and Command-Line Proficiency

    Develops the command-line fluency needed to operate offensive security tools effectively. Covers file system navigation, scripting basics, and process management.

  • Lesson 4 • Core Networking Concepts for Hackers

    Reviews TCP/IP, routing, and protocol behaviour from an attacker's perspective. Builds the network literacy required for every subsequent chapter.

  • Lesson 5 • Lab Environment Setup

    Guides students through building an isolated, safe practice environment. Ensures all hands-on exercises occur without risk to production systems.

Chapter 2See details

Reconnaissance and Intelligence Gathering

  • Lesson 1 • Network Topology Mapping

    Teaches methods for visualising internal and external network architecture. Produces the network map used to prioritise targets during exploitation.

  • Lesson 2 • Web Application Footprinting

    Focuses on enumerating web technologies, directories, and hidden endpoints. Prepares students for web-layer attacks introduced in later chapters.

  • Lesson 3 • Active Reconnaissance and Scanning

    Introduces direct probing techniques including port scanning and service fingerprinting. Connects passive intelligence to actionable target enumeration.

  • Lesson 4 • Passive Reconnaissance Techniques

    Covers OSINT methods that collect target data without direct interaction. Establishes the intelligence baseline that informs all later attack planning.

Chapter 3See details

Vulnerability Assessment and Analysis

  • Lesson 1 • Vulnerability Scanning Fundamentals

    Introduces automated scanning tools and their configuration for accurate results. Connects reconnaissance data to structured vulnerability identification.

  • Lesson 2 • Manual Vulnerability Verification

    Teaches hands-on techniques to confirm scanner findings and eliminate false positives. Bridges automated output and reliable exploitation decisions.

  • Lesson 3 • Threat Modeling for Assessments

    Applies structured threat modelling to prioritise attack paths before exploitation. Ensures assessment effort aligns with realistic adversary behaviour.

  • Lesson 4 • Configuration and Compliance Auditing

    Covers assessment of system hardening, misconfigurations, and policy deviations. Extends vulnerability analysis beyond software flaws to operational weaknesses.

  • Lesson 5 • CVE, CVSS, and Risk Scoring

    Explains vulnerability databases, scoring systems, and severity classification. Enables students to prioritise findings by exploitability and business impact.

Chapter 4See details

Exploitation Techniques and Tools

  • Lesson 1 • Metasploit Framework Mastery

    Covers Metasploit architecture, module selection, and payload configuration. Provides the primary exploitation platform used throughout the course.

  • Lesson 2 • Client-Side Exploitation

    Covers browser, document, and email-based attack vectors targeting end users. Demonstrates how attackers bypass perimeter defences through human interaction.

  • Lesson 3 • Exploiting Network Services

    Targets common network service vulnerabilities including buffer overflows and misconfigurations. Builds practical exploitation experience on realistic service stacks.

  • Lesson 4 • Password Attacks and Credential Theft

    Teaches offline cracking, online brute-forcing, and credential harvesting methods. Credential access is a critical pivot point in nearly every attack chain.

  • Lesson 5 • Exploit Development Basics

    Introduces buffer overflow mechanics and basic shellcode construction. Prepares students to understand and modify public exploits for custom targets.

Chapter 5See details

Post-Exploitation and Persistence

  • Lesson 1 • Persistence Mechanisms

    Examines methods attackers use to maintain access across reboots and credential changes. Understanding persistence is essential for both offence and detection.

  • Lesson 2 • Lateral Movement Strategies

    Covers techniques for moving between hosts using harvested credentials and protocol abuse. Demonstrates how attackers expand access across a compromised network.

  • Lesson 3 • Covering Tracks and Anti-Forensics

    Teaches log manipulation, artifact removal, and timestomping used to hinder investigation. Builds awareness of forensic evidence that defenders rely on.

  • Lesson 4 • Data Exfiltration Methods

    Covers covert channels and protocol-based techniques for extracting sensitive data. Demonstrates the final attacker objective and informs defensive data loss prevention.

  • Lesson 5 • Privilege Escalation Techniques

    Teaches local privilege escalation on Windows and Linux using misconfigurations and kernel exploits. Escalation is the prerequisite for all deeper post-exploitation activity.

Chapter 6See details

Network and Infrastructure Attacks

  • Lesson 1 • Man-in-the-Middle Attacks

    Covers ARP poisoning, SSL stripping, and traffic interception on local networks. MITM attacks enable credential capture and session hijacking at scale.

  • Lesson 2 • VPN and Cloud Infrastructure Attacks

    Examines misconfigurations and attack vectors in VPN gateways and cloud environments. Cloud adoption has expanded the enterprise attack surface significantly.

  • Lesson 3 • Wireless Network Penetration Testing

    Teaches WPA2 cracking, evil twin attacks, and rogue access point deployment. Wireless vectors are frequently overlooked in enterprise security assessments.

  • Lesson 4 • Firewall and IDS Evasion

    Covers packet fragmentation, protocol tunnelling, and signature evasion techniques. Bypassing perimeter controls is essential for realistic red team operations.

  • Lesson 5 • Active Directory Attack Techniques

    Targets AD enumeration, Kerberoasting, and domain privilege escalation. Active Directory is the primary identity backbone in enterprise environments.

Chapter 7See details

Web Application Penetration Testing

  • Lesson 1 • Authentication and Session Attacks

    Examines broken authentication, weak session tokens, and insecure credential storage. Compromising authentication provides the highest-value access in web applications.

  • Lesson 2 • Web Application Architecture Review

    Maps client-server interactions, authentication flows, and data handling patterns. Provides the structural understanding needed to identify web-layer attack surfaces.

  • Lesson 3 • Injection Attack Techniques

    Covers SQL, command, LDAP, and XML injection vulnerabilities with hands-on exploitation. Injection flaws remain the highest-impact web vulnerability class.

  • Lesson 4 • Advanced Web Vulnerabilities

    Covers SSRF, XXE, insecure deserialisation, and business logic flaws. These complex vulnerabilities require deeper application understanding to discover and exploit.

  • Lesson 5 • Cross-Site Scripting and CSRF

    Teaches reflected, stored, and DOM-based XSS along with cross-site request forgery. These client-side attacks enable session hijacking and unauthorised actions.

Chapter 8See details

Penetration Testing Reporting and Methodology

  • Lesson 1 • Vulnerability Narrative Writing

    Trains students to write clear, accurate technical findings with reproduction steps. Effective narratives enable remediation teams to act without ambiguity.

  • Lesson 2 • Executive and Technical Report Structure

    Covers dual-audience report design for executive stakeholders and technical teams. A well-structured report maximises the business value of the assessment.

  • Lesson 3 • Debrief and Remediation Validation

    Covers post-report client debrief facilitation and retesting confirmed fixes. Closing the loop on remediation demonstrates professional accountability.

  • Lesson 4 • Evidence Collection and Note-Taking

    Teaches systematic documentation of findings, screenshots, and command logs during testing. Reliable evidence collection is the foundation of a defensible report.

  • Lesson 5 • Engagement Planning and Scoping

    Covers statement of work creation, rules of engagement, and pre-engagement communication. Proper scoping prevents legal exposure and ensures assessment value.

Certification

Your valid completion certificate

This course is for you:

  • IT support technician: ready to pivot from fixing systems to testing them offensively.

  • Junior security analyst: wants to understand attacker behaviour beyond alert triage work.

  • Network administrator: seeks to validate infrastructure defences through hands-on offensive techniques.

  • Computer science graduate: building practical offensive skills to complement academic security knowledge.

  • Bug bounty hunter: looking to deepen methodology and move into structured professional assessments.

  • Career changer from software development: drawing on coding background to break into offensive security.

Related Courses

FAQ

Who is Dedika?

Is the certificate valid in Australia?

Are the courses free?

What is the course workload?

What are the courses like?

How do the courses work?

What is the duration of the courses?

What is the cost or price of the courses?

What is an EAD or online course and how does it work?

PDF Course