
Advanced Ethical Hacking and Cybersecurity Training
Master the full offensive security lifecycle — from reconnaissance and exploitation to post-compromise operations and professional reporting. This advanced course delivers hands-on training across real-world attack surfaces including Active Directory, web applications, cloud infrastructure, and wireless networks. Built for serious practitioners ready to operate at the level employers and clients actually demand.
What you will learn:
Execute advanced Active Directory attacks including Kerberoasting, DCSync, and golden ticket forgery.
Conduct end-to-end web application assessments aligned with the OWASP Top 10 vulnerability framework.
Build and operate a complete penetration testing lab environment using industry-standard offensive tools.
Apply post-exploitation techniques including privilege escalation, lateral movement, and persistence mechanisms.
Assess cloud and container environments for IAM misconfigurations, exposed storage, and escape vulnerabilities.
Deliver professional penetration testing reports structured for both executive stakeholders and technical remediation teams.
How you study in practice Advanced Ethical Hacking and Cybersecurity Training
How you practise Advanced Ethical Hacking and Cybersecurity Training
For companies looking to train their teams
With Dedika for businesses, the course includes exercises and examples tailored to your company and its specific needs.
Course content
8 Chapters • 39 LessonsDuration between 4 and 360 hours (you decide)
Chapter 1HideHide detailsSee detailsFoundations of Ethical Hacking
Foundations of Ethical Hacking
Lesson 1 • Attacker Mindset and Methodology
Introduces structured attack frameworks and adversarial thinking patterns. Provides the cognitive foundation for planning and executing assessments systematically.
Lesson 2 • Ethics, Law, and Scope Definition
Covers the legal boundaries, authorisation frameworks, and codes of conduct governing penetration testing. Anchors all subsequent offensive techniques in professional accountability.
Lesson 3 • Linux and Command-Line Proficiency
Develops the command-line fluency needed to operate offensive security tools effectively. Covers file system navigation, scripting basics, and process management.
Lesson 4 • Core Networking Concepts for Hackers
Reviews TCP/IP, routing, and protocol behaviour from an attacker's perspective. Builds the network literacy required for every subsequent chapter.
Lesson 5 • Lab Environment Setup
Guides students through building an isolated, safe practice environment. Ensures all hands-on exercises occur without risk to production systems.
Chapter 2HideHide detailsSee detailsReconnaissance and Intelligence Gathering
Reconnaissance and Intelligence Gathering
Lesson 1 • Network Topology Mapping
Teaches methods for visualising internal and external network architecture. Produces the network map used to prioritise targets during exploitation.
Lesson 2 • Web Application Footprinting
Focuses on enumerating web technologies, directories, and hidden endpoints. Prepares students for web-layer attacks introduced in later chapters.
Lesson 3 • Active Reconnaissance and Scanning
Introduces direct probing techniques including port scanning and service fingerprinting. Connects passive intelligence to actionable target enumeration.
Lesson 4 • Passive Reconnaissance Techniques
Covers OSINT methods that collect target data without direct interaction. Establishes the intelligence baseline that informs all later attack planning.
Chapter 3HideHide detailsSee detailsVulnerability Assessment and Analysis
Vulnerability Assessment and Analysis
Lesson 1 • Vulnerability Scanning Fundamentals
Introduces automated scanning tools and their configuration for accurate results. Connects reconnaissance data to structured vulnerability identification.
Lesson 2 • Manual Vulnerability Verification
Teaches hands-on techniques to confirm scanner findings and eliminate false positives. Bridges automated output and reliable exploitation decisions.
Lesson 3 • Threat Modelling for Assessments
Applies structured threat modelling to prioritise attack paths before exploitation. Ensures assessment effort aligns with realistic adversary behaviour.
Lesson 4 • Configuration and Compliance Auditing
Covers assessment of system hardening, misconfigurations, and policy deviations. Extends vulnerability analysis beyond software flaws to operational weaknesses.
Lesson 5 • CVE, CVSS, and Risk Scoring
Explains vulnerability databases, scoring systems, and severity classification. Enables students to prioritise findings by exploitability and business impact.
Chapter 4HideHide detailsSee detailsExploitation Techniques and Tools
Exploitation Techniques and Tools
Lesson 1 • Metasploit Framework Mastery
Covers Metasploit architecture, module selection, and payload configuration. Provides the primary exploitation platform used throughout the course.
Lesson 2 • Client-Side Exploitation
Covers browser, document, and email-based attack vectors targeting end users. Demonstrates how attackers bypass perimeter defences through human interaction.
Lesson 3 • Exploiting Network Services
Targets common network service vulnerabilities including buffer overflows and misconfigurations. Builds practical exploitation experience on realistic service stacks.
Lesson 4 • Password Attacks and Credential Theft
Teaches offline cracking, online brute-forcing, and credential harvesting methods. Credential access is a critical pivot point in nearly every attack chain.
Lesson 5 • Exploit Development Basics
Introduces buffer overflow mechanics and basic shellcode construction. Prepares students to understand and modify public exploits for custom targets.
Chapter 5HideHide detailsSee detailsPost-Exploitation and Persistence
Post-Exploitation and Persistence
Lesson 1 • Persistence Mechanisms
Examines methods attackers use to maintain access across reboots and credential changes. Understanding persistence is essential for both offence and detection.
Lesson 2 • Lateral Movement Strategies
Covers techniques for moving between hosts using harvested credentials and protocol abuse. Demonstrates how attackers expand access across a compromised network.
Lesson 3 • Covering Tracks and Anti-Forensics
Teaches log manipulation, artifact removal, and timestomping used to hinder investigation. Builds awareness of forensic evidence that defenders rely on.
Lesson 4 • Data Exfiltration Methods
Covers covert channels and protocol-based techniques for extracting sensitive data. Demonstrates the final attacker objective and informs defensive data loss prevention.
Lesson 5 • Privilege Escalation Techniques
Teaches local privilege escalation on Windows and Linux using misconfigurations and kernel exploits. Escalation is the prerequisite for all deeper post-exploitation activity.
Chapter 6HideHide detailsSee detailsNetwork and Infrastructure Attacks
Network and Infrastructure Attacks
Lesson 1 • Man-in-the-Middle Attacks
Covers ARP poisoning, SSL stripping, and traffic interception on local networks. MITM attacks enable credential capture and session hijacking at scale.
Lesson 2 • VPN and Cloud Infrastructure Attacks
Examines misconfigurations and attack vectors in VPN gateways and cloud environments. Cloud adoption has expanded the enterprise attack surface significantly.
Lesson 3 • Wireless Network Penetration Testing
Teaches WPA2 cracking, evil twin attacks, and rogue access point deployment. Wireless vectors are frequently overlooked in enterprise security assessments.
Lesson 4 • Firewall and IDS Evasion
Covers packet fragmentation, protocol tunneling, and signature evasion techniques. Bypassing perimeter controls is essential for realistic red team operations.
Lesson 5 • Active Directory Attack Techniques
Targets AD enumeration, Kerberoasting, and domain privilege escalation. Active Directory is the primary identity backbone in enterprise environments.
Chapter 7HideHide detailsSee detailsWeb Application Penetration Testing
Web Application Penetration Testing
Lesson 1 • Authentication and Session Attacks
Examines broken authentication, weak session tokens, and insecure credential storage. Compromising authentication provides the highest-value access in web applications.
Lesson 2 • Web Application Architecture Review
Maps client-server interactions, authentication flows, and data handling patterns. Provides the structural understanding needed to identify web-layer attack surfaces.
Lesson 3 • Injection Attack Techniques
Covers SQL, command, LDAP, and XML injection vulnerabilities with hands-on exploitation. Injection flaws remain the highest-impact web vulnerability class.
Lesson 4 • Advanced Web Vulnerabilities
Covers SSRF, XXE, insecure deserialisation, and business logic flaws. These complex vulnerabilities require deeper application understanding to discover and exploit.
Lesson 5 • Cross-Site Scripting and CSRF
Teaches reflected, stored, and DOM-based XSS along with cross-site request forgery. These client-side attacks enable session hijacking and unauthorised actions.
Chapter 8HideHide detailsSee detailsPenetration Testing Reporting and Methodology
Penetration Testing Reporting and Methodology
Lesson 1 • Vulnerability Narrative Writing
Trains students to write clear, accurate technical findings with reproduction steps. Effective narratives enable remediation teams to act without ambiguity.
Lesson 2 • Executive and Technical Report Structure
Covers dual-audience report design for executive stakeholders and technical teams. A well-structured report maximises the business value of the assessment.
Lesson 3 • Debrief and Remediation Validation
Covers post-report client debrief facilitation and retesting confirmed fixes. Closing the loop on remediation demonstrates professional accountability.
Lesson 4 • Evidence Collection and Note-Taking
Teaches systematic documentation of findings, screenshots, and command logs during testing. Reliable evidence collection is the foundation of a defensible report.
Lesson 5 • Engagement Planning and Scoping
Covers statement of work creation, rules of engagement, and pre-engagement communication. Proper scoping prevents legal exposure and ensures assessment value.
Your valid completion certificate
This course is for you:
IT support technician: ready to pivot from fixing systems to testing them offensively.
Junior security analyst: wants to understand attacker behaviour beyond alert triage work.
Network administrator: seeks to validate infrastructure defences through hands-on offensive techniques.
Computer science graduate: building practical offensive skills to complement academic security knowledge.
Bug bounty hunter: looking to deepen methodology and move into structured professional assessments.
Career changer from software development: leveraging coding background to break into offensive security.
What our students say
Your lessons are perfect. I purchased the one-year package and finally have the opportunity to follow various topics of interest without needing to change platforms... I'm grateful for everything you do, I've already recommended you to other people...

I like how the lessons are straight to the point and how I can change chapters and skip content I don't need.

I like the content and the way videos are presented and transcribed, which speeds up the process!

The platform is fast, simple to use. The diversity of content and complementary videos really help with learning.

Top qualifications
FAQ
Who is Dedika?
Is the certificate valid in South Africa?
Are the courses free?
What is the course workload?
What are the courses like?
How do the courses work?
What is the duration of the courses?
What is the cost or price of the courses?
What is an EAD or online course and how does it work?
PDF Course




















