Certified Ethical Hacking Certification
A Certified Ethical Hacker is a skilled professional who understands and knows how to look for weaknesses and vulnerabilities
in target systems and uses the same knowledge and tools as a malicious hacker, but in a lawful and legitimate manner to assess the
security posture of a target system(s). The CEH credential certifies individuals in the specific network security discipline of
Ethical Hacking from a vendor-neutral perspective.
The purpose of the CEH credential is to:
- Establish and govern minimum standards for credentialing professional
information security specialists in ethical hacking measures.
- Inform the public that credentialed individuals meet or
exceed the minimum standards.
- Reinforce ethical hacking as a unique and self-regulating profession.
About the Exam
- Number of Questions: 125
- Test Duration: 4 Hours
- Test Format: Multiple Choice
- Test Delivery: ECC EXAM, VUE
- Exam Prefix: 312-50 (ECC EXAM), 312-50 (VUE)
Course Content:Certified Ethical Hacking
Module 1: Introduction to Ethical Hacking
-
Information Security Overview
-
Hacking Methodologies and Frameworks
-
Hacking Concepts
-
Ethical Hacking Concepts
-
Information Security Controls
-
Information Security Laws and Standards
Module 2: Footprinting and Reconnaissance
-
Footprinting Concepts
-
Footprinting through Search Engines
-
Footprinting through Web Services
-
Footprinting through Social Networking Sites
-
Website Footprinting
-
Email Footprinting
-
Whois Footprinting
-
DNS Footprinting
-
Network Footprinting
-
Footprinting through Social Engineering
-
Footprinting Tools
-
Footprinting Countermeasures
Module 3: Scanning Networks
-
Network Scanning Concepts
-
Scanning Tools
-
Host Discovery
-
Port and Service Discovery
-
OS Discovery (Banner Grabbing/OS Fingerprinting)
-
Scanning Beyond IDS and Firewall
-
Network Scanning Countermeasures
Module 4: Enumeration
-
Enumeration Concepts
-
NetBIOS Enumeration
-
SNMP Enumeration
-
LDAP Enumeration
-
NTP and NFS Enumeration
-
SMTP and DNS Enumeration
-
Other Enumeration Techniques
-
Enumeration Countermeasures
Module 5: Vulnerability Analysis
-
Vulnerability Assessment Concepts
-
Vulnerability Classification and Assessment Types
-
Vulnerability Assessment Tools
-
Vulnerability Assessment Reports
Module 7: Malware Threats
-
Malware Concepts
-
APT Concepts
-
Trojan Concepts
-
o Worm Makers
-
Fileless Malware Concepts
-
Malware Analysis
-
Malware Countermeasures
-
Anti-Malware Software
Module 8: Sniffing
-
Sniffing Concepts
-
Sniffing Technique: MAC Attacks
-
Sniffing Technique: DHCP Attacks
-
Sniffing Technique: ARP Poisoning
-
Sniffing Technique: Spoofing Attacks
-
Sniffing Technique: DNS Poisoning
-
Sniffing Tools
Module 9: Social Engineering
-
Social Engineering Concepts
-
Social Engineering Techniques
-
Insider Threats
-
Impersonation on Social Networking Sites
-
Identity Theft
-
Social Engineering Countermeasures
Module 11: Session Hijacking
-
Session Hijacking Concepts
-
Application-Level Session Hijacking
-
Network-Level Session Hijacking
-
Session Hijacking Tools
-
Session Hijacking Countermeasures
Module 12: Evading IDS, Firewalls, and Honeypots
-
IDS, IPS, Firewall, and Honeypot Concepts
-
IDS, IPS, Firewall, and Honeypot Solutions
-
Evading IDS
-
Evading Firewalls
-
Evading NAC and Endpoint Security
-
IDS/Firewall Evading Tools
-
Detecting Honeypots
-
IDS/Firewall Evasion Countermeasures
Module 14: Hacking Web Applications
-
Web Application Concepts
-
Web Application Threats
-
Web Application Hacking Methodology
-
Web API, Webhooks, and Web Shell
-
Web Application Security
Module 15: SQL Injection
-
SQL Injection Concepts
-
Types of SQL Injection
-
SQL Injection Methodology
-
SQL Injection Tools
-
SQL Injection Countermeasures
Module 16: Hacking Wireless Networks
-
Wireless Concepts
-
Wireless Encryption
-
Wireless Threats
-
Wireless Hacking Methodology
-
Wireless Hacking Tools
-
Bluetooth Hacking
-
Wireless Attack Countermeasures
-
Wireless Security Tools
Module 18: IoT and OT Hacking
-
IoT Hacking
-
IoT Concepts
-
IoT Attacks
-
IoT Hacking Methodology
-
OT Hacking
-
OT Concepts
-
OT Attacks
-
OT Hacking Methodology
Module 19: Cloud Computing
-
Cloud Computing Concepts
-
Container Technology
-
Manipulating CloudTrial Service
-
Cloud Security
Module 20: Cryptography
-
Cryptography Concepts
-
Encryption Algorithms
-
Cryptography Tools
-
Email Encryption
-
Disk Encryption
-
Cryptanalysis
-
Cryptography Attack Countermeasures