Choose your language
Hacking Course
More than 2 million students worldwide

Hacking Course

4.4

Master offensive security from the ground up with a curriculum built around real-world attack techniques used by professional penetration testers. You'll go hands-on with exploitation frameworks, web application vulnerabilities, Active Directory attacks, and evasion methods. Every skill is practiced in isolated lab environments against realistic targets. This is the technical foundation serious security professionals are built on.

Dedika for businesses

What you will learn:

You will learn how to conduct structured penetration tests across networks, web applications, and Windows domain environments. The course covers reconnaissance, vulnerability scanning, exploitation, post-exploitation, and professional report writing. You will attack real services, escalate privileges on both Linux and Windows systems, and move laterally through enterprise networks. Web application modules cover injection flaws, authentication bypass, and advanced vulnerabilities like SSRF and insecure deserialization. You will also study Active Directory attack chains, wireless hacking, password cracking, and antivirus evasion. By the end, you will have the technical skills and professional habits required to work as a penetration tester.

How you study in practice Hacking Course

How you practice Hacking Course

For companies looking to train their teams

With Dedika for businesses, the course includes exercises and examples tailored to your own business and the way your company needs.

Click here

Course Content

8 Chapters • 36 LessonsDuration between 4 and 360 hours (you decide)

Chapter 1See details

Foundations of Ethical Hacking

  • Lesson 1 • Cybersecurity Landscape Overview

    Maps the threat ecosystem including actors, motivations, and attack categories. Provides context for why offensive skills are essential to defense.

  • Lesson 2 • Legal and Ethical Frameworks

    Defines authorized testing boundaries, responsible disclosure, and professional ethics. Ensures students operate within lawful and ethical constraints throughout the course.

  • Lesson 3 • Hacking Methodology and Phases

    Introduces the structured penetration testing lifecycle from reconnaissance to reporting. Students apply this framework as a repeatable process in all labs.

  • Lesson 4 • Lab Environment Setup

    Configures isolated virtual environments for safe, legal practice. Students build a personal lab used throughout every subsequent chapter.

Chapter 2See details

Networking Fundamentals for Hackers

  • Lesson 1 • Common Application Protocols

    Examines HTTP, DNS, FTP, SMTP, and SSH at the packet level. Students identify protocol weaknesses exploited in later attack chapters.

  • Lesson 2 • TCP/IP Protocol Suite

    Covers IP addressing, subnetting, and core transport protocols. Understanding packet structure is prerequisite to crafting and intercepting traffic.

  • Lesson 3 • Packet Capture and Analysis

    Uses traffic capture tools to inspect live and recorded network sessions. Students develop the ability to extract credentials and session data from captures.

  • Lesson 4 • Network Architecture and Segmentation

    Explains firewalls, DMZs, VLANs, and routing from an attacker perspective. Students learn to identify traversal opportunities within segmented environments.

Chapter 3See details

Reconnaissance and Information Gathering

  • Lesson 1 • Passive Open-Source Intelligence

    Collects target data from public sources without touching target systems. Minimizes detection risk while maximizing pre-engagement intelligence.

  • Lesson 2 • DNS and Email Enumeration

    Extracts subdomains, mail servers, and organizational structure from DNS. Reveals attack vectors often overlooked in standard perimeter assessments.

  • Lesson 3 • Recon Automation and Frameworks

    Integrates multiple recon tools into automated pipelines for efficiency. Students produce structured target dossiers ready for vulnerability analysis.

  • Lesson 4 • Active Reconnaissance Techniques

    Directly queries target systems to enumerate hosts, ports, and services. Students balance thoroughness against detection risk using timing and evasion options.

Chapter 4See details

Scanning, Enumeration, and Vulnerability Analysis

  • Lesson 1 • Manual Vulnerability Verification

    Confirms scanner findings through manual testing to eliminate false positives. Develops the analytical judgment required before attempting exploitation.

  • Lesson 2 • Vulnerability Scanning Tools

    Runs automated scanners to detect known CVEs and misconfigurations at scale. Students interpret scanner output critically rather than accepting results uncritically.

  • Lesson 3 • Advanced Port and Service Scanning

    Applies stealth, timing, and protocol-specific scans to map services accurately. Builds on basic scanning from Chapter 3 with evasion and precision techniques.

  • Lesson 4 • Service and User Enumeration

    Extracts usernames, shares, and service details from exposed network services. Enumerated data directly feeds credential attacks and privilege escalation paths.

Chapter 5See details

Exploitation Fundamentals

  • Lesson 1 • Exploitation Concepts and Terminology

    Defines exploits, payloads, shellcode, and staged vs. stageless delivery. Provides conceptual grounding before students touch any exploitation tooling.

  • Lesson 2 • Exploiting Common Service Vulnerabilities

    Targets unpatched services including file sharing, remote desktop, and web servers. Reinforces the link between vulnerability analysis findings and successful exploitation.

  • Lesson 3 • Exploitation Framework Usage

    Operates a professional exploitation framework to select, configure, and launch exploits. Students learn module selection, option setting, and session management.

  • Lesson 4 • Exploit Development Basics

    Introduces buffer overflow concepts and manual exploit construction at a foundational level. Prepares students for advanced binary exploitation covered in later chapters.

  • Lesson 5 • Client-Side Exploitation

    Delivers exploits through documents, links, and browser vulnerabilities targeting end users. Students understand social engineering as a delivery mechanism for technical payloads.

Chapter 6See details

Post-Exploitation and Privilege Escalation

  • Lesson 1 • Lateral Movement Techniques

    Moves between systems using harvested credentials and trusted relationships. Students map internal networks and pivot to reach high-value targets.

  • Lesson 2 • Linux Privilege Escalation

    Leverages SUID binaries, cron jobs, and kernel exploits to reach root on Linux systems. Students enumerate and exploit the most common Linux escalation vectors.

  • Lesson 3 • Post-Exploitation Objectives

    Defines attacker goals after initial access including data exfiltration and persistence. Frames post-exploitation as a structured phase with measurable objectives.

  • Lesson 4 • Credential Harvesting and Reuse

    Extracts password hashes, plaintext credentials, and tokens from compromised systems. Harvested credentials enable lateral movement and further privilege escalation.

  • Lesson 5 • Windows Privilege Escalation

    Exploits misconfigurations, weak permissions, and unpatched services to gain SYSTEM access. Students apply enumeration scripts and manual checks on Windows targets.

Chapter 7See details

Web Application Hacking

  • Lesson 1 • Advanced Web Vulnerabilities

    Covers SSRF, XXE, insecure deserialization, and access control flaws in modern apps. Students chain multiple vulnerabilities to achieve high-impact compromise scenarios.

  • Lesson 2 • Injection Vulnerabilities

    Exploits SQL, command, and LDAP injection flaws to extract data and execute commands. Students understand root causes and construct manual payloads beyond automated tools.

  • Lesson 3 • Web Application Reconnaissance

    Maps web application structure, technologies, and entry points before active testing. Builds a target profile that guides all subsequent web attack phases.

  • Lesson 4 • Authentication and Session Attacks

    Targets login mechanisms, session tokens, and password reset flows for unauthorized access. Exposes design flaws that bypass authentication without exploiting code vulnerabilities.

  • Lesson 5 • Cross-Site Scripting and CSRF

    Injects malicious scripts and forges cross-origin requests to compromise user sessions. Students craft stored, reflected, and DOM-based XSS payloads in lab applications.

Chapter 8See details

Penetration Testing Reporting and Strategy

  • Lesson 1 • Report Writing for Technical Audiences

    Structures executive summaries, technical findings, and remediation guidance clearly. Students write findings that security engineers can act on without ambiguity.

  • Lesson 2 • Penetration Test Planning

    Defines scope, rules of engagement, and success criteria before testing begins. Proper planning prevents legal issues and ensures findings are actionable.

  • Lesson 3 • Communicating Findings to Stakeholders

    Presents risk and impact to non-technical executives and technical teams separately. Bridges the gap between offensive findings and organizational decision-making.

  • Lesson 4 • Vulnerability Risk Scoring

    Applies standardized scoring systems to rate severity and business impact of findings. Enables clients to prioritize remediation based on risk rather than technical complexity.

  • Lesson 5 • Evidence Collection and Documentation

    Captures screenshots, logs, and command output as reproducible evidence during testing. Accurate documentation is the foundation of a credible penetration test report.

Certification

Your valid completion certificate

This course is for you:

  • IT support technician: ready to move from fixing systems to breaking them professionally.

  • Cybersecurity student: seeking hands-on attack skills beyond what classrooms typically teach.

  • Network administrator: wanting to understand threats from the attacker's point of view.

  • Career changer: coming from software development with an interest in security research.

  • CTF hobbyist: looking to turn competitive hacking skills into a paying career.

  • Junior SOC analyst: aiming to understand offensive tactics to sharpen defensive instincts.

What our students say

Your classes are perfect. I purchased the one-year package and finally have the opportunity to follow various topics of interest without needing to switch platforms... I thank you for everything you do, I've already recommended you to other people...
Giulio Carlo
Giulio CarloDigital Marketing Student
I like how the lessons are straight to the point and how I can switch chapters and skip content I don't need.
Mariana Ferres
Mariana FerresPhotography Student
I like the content and the presentation style and video transcription, which speeds up the process!
Luciana Alvarenga
Luciana AlvarengaNail Design Student
The platform is fast, simple to use. The diversity of content and complementary videos really help with learning.
André Felipe
André FelipePrompt Engineering Student

Top trainings

FAQ

Who is Dedika?

Is the certificate valid in United States?

Are the courses free?

What is the course workload?

What are the courses like?

How do the courses work?

What is the duration of the courses?

What is the cost or price of the courses?

What is an EAD or online course and how does it work?

PDF Course