Skip to content
+91 936-855-2904
Security Track · CEH-aligned

Ethical Hacking Course on Real Targets

Learn offensive security the way it is actually practised: scope a target, break in, escalate, and write the report that gets the hole fixed. Four months, CEH-aligned, every technique run against live lab machines you are authorised to attack.

Attack live lab targets, legally CEH & OSCP prep built in Write real pentest reports

Program snapshot

Admissions open
Duration
4 months · 160 guided hours
Mode
Online live or classroom, Aligarh
Level
Beginner to intermediate
Schedule
Evening & weekend batches
Certificate
Cyber Warrior Certified Ethical Hacker
Aligned to
CEH, eJPT, OSCP prep

Fees from

₹35,000 incl. GST, full program

Fee details

What an ethical hacking course teaches

An ethical hacking course teaches you to attack systems the way a malicious hacker would, but with written permission and a report at the end. You learn reconnaissance, scanning, exploitation, web application attacks, privilege escalation and post-exploitation, and you practise every step on deliberately vulnerable machines in a controlled lab. The goal is to find weaknesses before criminals do.

160h Guided Hours
30+ Lab Machines to Root
4.9/5 Rating, 153 Reviews
100% Hands-on, No Slideware

Who should take this ethical hacking course

This is a hands-keyboard course. It suits people who want to break things to understand them, not memorise definitions.

Beginners aiming for a pentest career

Students and graduates who want to become penetration testers or bug bounty hunters and need a structured path with real targets, not scattered YouTube tutorials.

Security analysts adding offensive skills

SOC and blue-team analysts who defend systems and want to think like the attacker to write better detections.

Developers hardening their own apps

Web and mobile developers who want to find the OWASP bugs in their code before an auditor or attacker does.

CEH and OSCP candidates

Anyone preparing for CEH, eJPT or OSCP who wants a practitioner to run the labs alongside the theory.

Learning outcomes

What you can do after this ethical hacking course

Outcomes are written as things you will demonstrate on a live lab, because that is how the modules are graded.

01

Perform full reconnaissance

Footprint a target with OSINT, Shodan and DNS enumeration, then map the attack surface with Nmap and service fingerprinting.

02

Exploit vulnerabilities to gain access

Use Metasploit and manual exploits to get an initial foothold on Windows and Linux targets.

03

Hack web applications by hand

Find and exploit SQL injection, XSS, IDOR, SSRF and authentication flaws in Burp Suite without relying on automated scanners alone.

04

Escalate privileges to root and admin

Enumerate misconfigurations, kernel exploits and credential reuse to move from a low-privilege shell to full control.

05

Pivot and move laterally

Tunnel through a compromised host to reach internal networks the way a real intrusion spreads.

06

Write a professional pentest report

Score findings with CVSS and produce an executive summary and technical report that a client can act on.

Syllabus

Ethical hacking course syllabus

Eight modules over four months, CEH-aligned and lab-heavy. Every module ends with machines you must compromise and document.

8

Modules

160

Guided hours

Request the detailed syllabus PDF

Hacking phases, attacker types, rules of engagement and the legal boundaries that separate ethical hacking from a crime.

  • Five phases of hacking
  • Black, white and grey hats
  • Rules of engagement and authorisation
  • Indian IT Act and legal limits
  • Setting up Kali and the lab
  • Anonymity and OPSEC basics
  • Reporting mindset from day one
  • Bug bounty programs and scope

Module outcome: You can define a legal scope and set up a working attack lab.

Gathering everything about a target before touching it: passive OSINT then active enumeration.

  • Passive OSINT and Google dorking
  • Shodan and Censys
  • WHOIS, DNS and subdomain enumeration
  • Email and employee harvesting
  • Maltego for relationship mapping
  • Metadata extraction
  • Social engineering fundamentals
  • Building a target profile

Module outcome: You produce a full recon report on an authorised target domain.

Turning a list of hosts into a map of services, versions and likely vulnerabilities.

  • Nmap host discovery and port scanning
  • Service and OS fingerprinting
  • SMB, SNMP, FTP and SMTP enumeration
  • Vulnerability scanning with Nessus
  • Banner grabbing and NSE scripts
  • Firewall and IDS evasion basics
  • Mapping findings to exploits
  • Enumeration checklists

Module outcome: You enumerate a lab network and shortlist exploitable services.

Gaining the first shell with Metasploit and manual exploits on Windows and Linux targets.

  • Metasploit framework deep dive
  • Payloads, encoders and Meterpreter
  • Manual public exploit adaptation
  • Password attacks: Hydra, Hashcat
  • Pass-the-hash and credential reuse
  • Windows and Linux exploitation
  • Antivirus evasion concepts
  • Documenting the foothold

Module outcome: You get an initial shell on three lab machines and record how.

The attack surface behind most real breaches, exploited by hand in Burp Suite.

  • Burp Suite proxy, repeater, intruder
  • SQL injection: union, blind, time-based
  • XSS: reflected, stored, DOM
  • IDOR and broken access control
  • Authentication and session attacks
  • SSRF, XXE and file upload
  • API and JWT attacks
  • Chaining bugs to impact

Module outcome: You root OWASP Juice Shop and DVWA and document each exploit.

From a low shell to full control, and what to do once you own the box.

  • Linux privesc: SUID, cron, kernel
  • Windows privesc: services, tokens, UAC
  • Automated enumeration scripts
  • Credential harvesting
  • Persistence techniques
  • Data exfiltration concepts
  • Covering and cleaning up
  • Ethical limits on post-ex

Module outcome: You escalate to root and administrator on graded targets.

Moving deeper into a network and attacking the layers below the application.

  • Tunnelling and port forwarding
  • Lateral movement in Active Directory
  • MITM and ARP spoofing
  • Wi-Fi attacks: WPA2 cracking
  • DNS and DHCP attacks
  • Network sniffing and analysis
  • Attacking internal services
  • Segmentation testing

Module outcome: You pivot from a DMZ host into an internal subnet.

A full capstone engagement plus report, and structured preparation for CEH and eJPT exams.

  • CVSS scoring and severity
  • Executive vs technical reporting
  • Capstone: compromise a multi-host lab
  • Present findings to a review panel
  • CEH exam domains and practice
  • eJPT and OSCP roadmap
  • Bug bounty submission etiquette
  • Interview and portfolio prep

Module outcome: You deliver a graded capstone pentest report and CTF write-up.

The offensive toolkit you will master

Industry-standard tools installed in your own lab in week one. Licences you need for the labs are included in the fee.

Platform

  • Kali Linux
  • Parrot OS
  • Metasploitable & DVWA
  • HackTheBox-style lab

Recon & Scan

  • Nmap
  • Shodan
  • Maltego
  • Nessus
  • Gobuster

Exploitation

  • Metasploit
  • Burp Suite
  • SQLmap
  • Hydra
  • Hashcat
  • John the Ripper

Network & Wireless

  • Wireshark
  • Aircrack-ng
  • Bettercap
  • Responder
Portfolio work

Hacking projects for your portfolio

You keep every write-up. These are the deliverables that get a junior pentester hired.

Project 1

Full black-box network pentest

Given only a scope, compromise a five-host lab from recon to root and deliver a client-grade report.

  • Nmap
  • Metasploit
  • Reporting
Project 2

Web application exploitation lab

Exploit the full OWASP Top 10 on a vulnerable app and write proof-of-concept and remediation for each bug.

  • Burp Suite
  • OWASP
  • SQLi/XSS
Project 3

Capstone Capture The Flag

A multi-machine CTF where you chain vulnerabilities, pivot and escalate to capture every flag, then publish a write-up.

  • CTF
  • Privesc
  • Pivoting
Project 4

Wireless security assessment

Audit a WPA2 network, capture and crack a handshake in the lab and document the fix.

  • Aircrack-ng
  • Wi-Fi
  • Reporting
Project 5

Simulated bug bounty submission

Find a valid vulnerability in a practice target and write a submission that would be accepted by a real program.

  • Bug bounty
  • Recon
  • PoC
Project 6

Active Directory attack path

From a foothold, enumerate and abuse an AD misconfiguration to reach domain admin and map the path.

  • Active Directory
  • Lateral movement

How the ethical hacking course runs

Six steps from enquiry to certificate. The first two are free.

  1. 1

    Book a counselling call

    A 20-minute call with a penetration tester who tells you honestly whether this course or the broader cyber security course fits your goal.

  2. 2

    Complete the aptitude check

    A short check on logic and basic networking that decides which foundation sessions you need, not whether you get in.

  3. 3

    Build your attack lab

    In week one we set up Kali and a network of vulnerable machines you are authorised to attack for the whole program.

  4. 4

    Attack, escalate, document

    Live sessions plus graded labs every fortnight. You compromise machines and write them up the way a real engagement requires.

  5. 5

    Run the capstone CTF

    A supervised multi-host CTF and report presented to a review panel, which becomes your portfolio centrepiece.

  6. 6

    Certification and placement prep

    CEH and eJPT exam preparation, resume and portfolio review, mock interviews and referrals into pentest roles.

Career outcomes

Careers after an ethical hacking course

Offensive security roles are among the hardest to automate and the fastest growing in India. They hire on demonstrated skill, which is why the capstone matters more than the certificate.

Job roles, typical salary ranges in India and what the role involves after completing the Ethical Hacking Course.
Role Typical salary (India) What the job involves
Penetration Tester ₹4.5 to 11 LPA Run authorised attacks on networks, apps and cloud and write the findings report. The direct target role for this course.
VAPT Analyst ₹4 to 9 LPA Perform vulnerability assessments and validation for a security services firm or in-house team.
Bug Bounty Hunter Variable / bounty Find and responsibly disclose vulnerabilities on public programs; some do it full time, most alongside a job.
Red Team Operator ₹8 to 18 LPA Simulate real adversaries end to end. Usually reached after a few years as a pentester.
Application Security Engineer ₹6 to 15 LPA Embed in development teams to find and fix bugs before release.
Security Researcher ₹6 to 16 LPA Analyse vulnerabilities, write exploits and publish findings for a security company.

Where graduates of this track get hired

  • Security services firms
  • Fintech & banks
  • Product startups
  • Bug bounty platforms
  • Managed security providers
  • E-commerce
  • Consulting firms
  • Cyber Warrior audit team

Salary bands are indicative for India in 2026 and vary by skill, city and employer. Bug bounty income is highly variable. Placement support is active help until you are hired, not a guarantee.

Placement support includes

  • Resume, LinkedIn and GitHub portfolio review
  • Mock technical and HR interviews with our engineers
  • Referrals into our client and partner network
  • Priority consideration for the Cyber Warrior internship

Choosing a format

Same labs and syllabus in every format. Live contact and speed of help are what differ.

Comparison of online live, classroom, self-paced and corporate formats for the Ethical Hacking Course.
Criterion Online live Classroom, Aligarh Self-paced Corporate batch
Live sessions per week 3, evening or weekend 3 at our Aligarh centre Recorded only Scheduled with your team
Attack lab Personal cloud lab Lab + centre network Personal cloud lab Your scope or ours
Doubt clearing Saturday clinic + chat Daily, in person Weekly office hours Dedicated trainer
Graded labs & capstone Yes Yes Self-submitted Tailored
CEH / eJPT prep Included Included Included Optional
Best for Anyone in India Aligarh students Budget self-starters Security teams
Typical duration 4 months 4 months Up to 8 months access 2 to 6 weeks

Corporate red-team and awareness batches are scoped through corporate training.

Fees & batches

Ethical hacking course fees

One fee, everything included: lab access, tool licences, CEH preparation and placement support.

Next batches

New batches on the first Monday of every month, evening and weekend options.

Pay in instalments

Pay in 3 monthly instalments at no extra cost; the first confirms your seat.

Scholarships

Up to 25% merit scholarship based on the aptitude check.

Ethical Hacking Course · full program

₹35,000incl. GST, full program

Apply for this batch

Everything included

  • 160 hours of live, practitioner-led sessions
  • Recordings for 12 months
  • Personal attack lab with 30+ targets
  • Burp Suite and Nessus lab licences
  • Graded capstone CTF and report
  • CEH and eJPT exam preparation
  • Cyber Warrior Certified Ethical Hacker certificate
  • Placement support until hired
  • Alumni CTF community access

Fees are indicative for the current cycle. Refunds follow our refund policy: full refund before the second live session.

Why learn ethical hacking with Cyber Warrior

Your instructors break into systems for a living. The techniques you learn are the ones they used on last month's VAPT engagement, anonymised.

Taught by working pentesters

Not academics. The people grading your shells run real authorised attacks for clients.

Real targets, real authorisation

You attack a full lab network under a written scope, learning the legal discipline alongside the technical skill.

Reporting from day one

Employers pay for the report, not the shell. You practise writing findings in every module.

CEH, eJPT and OSCP roadmap

Structured preparation that maps the course to the certifications employers recognise.

Aligarh classroom, India-wide online

In-person lab days in Aligarh and live online batches for the rest of the country.

Small batches and an alumni CTF community

Capped at 25, with an ongoing CTF community so your practice does not stop at graduation.

Clear answers

Ethical Hacking Course questions

The questions every applicant asks on the first counselling call.

Start breaking things, legally

Book a call with a working penetration tester. We will tell you whether the ethical hacking course or the full cyber security course fits your goal, and when the next lab batch starts.

Prefer WhatsApp or email? Contact the admissions team and we reply in under 3 minutes during working hours.

CYBER WARRIOR ZERO TRUST SECURITY CUSTOM WEB ENGINEERING VAPT AUDITING AWS CLOUD ARCHITECTURE ENTERPRISE AUTOMATION CYBER WARRIOR ZERO TRUST SECURITY CUSTOM WEB ENGINEERING VAPT AUDITING AWS CLOUD ARCHITECTURE ENTERPRISE AUTOMATION