Learn Ethical Hacking From Scratch

Become an ethical hacker that can hack computer systems like black hat hackers and secure them like security experts. Learn Ethical Hacking From Scratch.

You will learn:

  • What Is Hacking & Why Learn It?
  • 03:09
  • Setting up a Hacking Lab
    5 lectures • 44min
    Lab Overview
  • 05:54
    Initial Preparation
  • 08:55
    Installing Kali Linux as a VM on Windows
  • 08:55
    Installing Kali Linux as a VM on Apple Mac OS
  • 09:38
    Installing Kali Linux as a VM on Linux
  • 10:46
  • Linux Basics
    2 lectures • 18min
    Basic Overview of Kali Linux
  • 05:10
    The Terminal & Linux Commands
  • 13:06
  • Network Hacking
    5 lectures • 29min
  • Introduction to Network Penetration Testing / Hacking
  • Preview
    Networks Basics
  • 04:28
    Connecting a Wireless Adapter To Kali
  • 06:51
    What is MAC Address & How To Change It
  • 08:20
    Wireless Modes (Managed & Monitor)
  • 06:57
  • Network Hacking – Pre Connection Attacks
    4 lectures • 33min
    Packet Sniffing Basics
  • 06:40
    WiFi Bands – 2.4Ghz & 5Ghz Frequencies
  • 07:54
    Targeted Packet Sniffing
  • 10:30
  • Deauthentication Attack (Disconnecting Any Device From The Network)
  • Preview
  • Network Hacking – Gaining Access – WEP Cracking
    5 lectures • 26min
  • Gaining Access Introduction
  • Preview
    Theory Behind Cracking WEP Encryption
  • 05:47
    WEP Cracking Basics
  • 06:17
    Fake Authentication Attack
  • 06:45
    ARP Request Replay Attack
  • 06:09
  • Network Hacking – Gaining Access – WPA / WPA2 Cracking
    5 lectures • 33min
    Introduction to WPA and WPA2 Cracking
  • 03:42
    Hacking WPA & WPA2 Without a Wordlist
  • 08:16
    Capturing The Handshake
  • 06:49
    Creating a Wordlist
  • 07:33
    Cracking WPA & WPA2 Using a Wordlist Attack
  • 06:26
  • Network Hacking – Gaining Access – Security
    2 lectures • 10min
    Securing Your Network From Hackers
  • 02:03
    Configuring Wireless Settings for Maximum Security
  • 08:05
  • Network Hacking – Post Connection Attacks
    1 lecture • 2min
  • Introduction to Post-Connection Attacks
  • Preview
  • Network Hacking – Post-Connection Attacks – Information Gathering
    4 lectures • 29min
    Installing Windows As a Virtual Machine
  • 06:09
    Discovering Devices Connected to the Same Network
  • 08:04
    Gathering Sensitive Info About Connected Devices (Device Name, Ports….etc)
  • 06:45
    Gathering More Sensitive Info (Running Services, Operating System….etc)
  • 08:08
  • Network Hacking – Post Connection Attacks – MITM Attacks
    19 lectures • 2hr 41min
    What is ARP Poisoning ?
  • 09:04
    Intercepting Network Traffic
  • 06:30
    Bettercap Basics
  • 07:43
    ARP Spoofing Using Bettercap
  • 08:17
    Spying on Network Devices (Capturing Passwords, Visited Websites…etc)
  • 05:11
    Creating Custom Spoofing Script
  • 09:42
  • Bypassing HTTPS
  • Preview
    Bypassing HSTS
  • 10:09
    Bypassing HSTS Recap – Firefox
  • 09:46
    Bypassing HSTS Recap – Chrome
  • 06:50
    DNS Spoofing – Controlling DNS Requests on The Network
  • 10:51
    Injecting Javascript Code
  • 10:26
    Doing All of The Above Using a Graphical Interface
  • 10:29
    Wireshark – Basic Overview & How To Use It With MITM Attacks
  • 08:24
    Wireshark – Sniffing & Analysing Data
  • 05:30
    Wireshark – Using Filters, Tracing & Dissecting Packets
  • 06:28
    Wireshark – Capturing Passwords & Anything Sent By Any Device In The Network
  • 07:48
    Creating a Fake Access Point (Honeypot) – Theory
  • 07:29
    Creating a Fake Access Point (Honeypot) – Practical
  • 09:34
  • Network Hacking – Detection & Security
    4 lectures • 30min
    Detecting ARP Poisoning Attacks
  • 05:05
    Detecting suspicious Activities In The Network
  • 05:41
    Preventing MITM Attacks – Method 1
  • 08:39
    Preventing MITM Attacks – Method 2
  • 10:53
  • Gaining Access To Computers
    1 lecture • 4min
    Gaining Access Introduction
  • 04:14
  • Gaining Access – Server Side Attacks
    9 lectures • 1hr 2min
    Installing Metasploitable As a Virtual Machine
  • 04:33
    Introduction to Server-Side Attacks
  • 03:18
    Basic Information Gathering & Exploitation
  • 09:28
    Hacking a Remote Server Using a Basic Metasploit Exploit
  • 07:32
  • Exploiting a Code Execution Vulnerability to Hack into a Remote Server
  • Preview
    Nexpose – Installing Nexpose
  • 09:22
    Nexpose – Scanning a Target Server For Vulnerabilities
  • 05:45
    Nexpose – Analysing Scan Results & Generating Reports
  • 07:56
    Server-Side Attacks Conclusion
  • 03:47
  • Gaining Access – Client Side Attacks
    9 lectures • 1hr 5min
    Introduction to Client-Side Attacks
  • 02:19
    Installing Veil Framework
  • 03:56
    Veil Overview & Payloads Basics
  • 07:20
    Generating An Undetectable Backdoor
  • 10:19
    Listening For Incoming Connections
  • 07:18
    Using A Basic Delivery Method To Test The Backdoor & Hack Windows 10
  • 07:12
    Hacking Windows 10 Using Fake Update
  • 11:48
    Backdooring Downloads on The Fly to Hack Windows 10
  • 11:00
    How to Protect Yourself From The Discussed Delivery Methods
  • 03:52
  • Gaining Access – Client Side Attacks – Social Engineering
    19 lectures • 2hr
  • Gaining Access – Using The Above Attacks Outside The Local Network
    4 lectures • 25min
    Overview of the Setup
  • 07:10
    Ex1 – Generating a Backdoor That Works Outside The Network
  • 05:24
    Configuring The Router To Forward Connections To Kali
  • 06:59
    Ex2 – Using BeEF Outside The Network
  • 05:49
  • Post Exploitation
    8 lectures • 42min
  • Website Hacking
    2 lectures • 8min
  • Website Hacking – Information Gathering
    7 lectures • 42min
  • Website Hacking – File Upload, Code Execution & File Inclusion Vulns
    6 lectures • 36min
  • Website Hacking – SQL Injection Vulnerabilities
    11 lectures • 1hr
  • Website Hacking – Cross Site Scripting Vulnerabilities
    5 lectures • 21min
  • Website Hacking – Discovering Vulnerabilities Automatically
    5 lectures • 37min

Learn Ethical Hacking From Scratch Course Description

Welcome this comprehensive Ethical Hacking course! This course assumes you have NO prior knowledge and by the end of it you’ll be able to hack systems like black-hat hackers and secure them like security experts!

This course is highly practical but it won’t neglect the theory; we’ll start with ethical hacking basics, breakdown the different penetration testing fields and install the needed software (on Windows, Linux and Mac OS X), then we’ll dive and start hacking straight away. You’ll learn everything by example, by analysing and exploiting different systems such as networks, servers, clients, websites …..etc. We’ll never have any boring dry theoretical lectures.

The course is divided into a number of sections, each section covers a penetration testing / hacking field, in each of these sections you’ll first learn how the target system works, the weaknesses of this system, and how to practically exploit theses weaknesses to hack this system.

By the end of the course you will have a strong foundation in most hacking or penetration testing fields and you’ll also learn how to detect, prevent and secure systems and yourself from the discussed attacks. 

The course is divided into four main sections:   

1. Network Hacking – This section will teach you how to test the security of both wired & wireless networks. First, you will learn network basics, how they work, and how devices communicate with each other. Then it will branch into three sub sections:   

  • Pre-connection attacks: in this subsection you’ll learn a number of attacks that can be executed without connecting to the target network and without the need to know the network password; you’ll learn how to gather information about the networks around you, discover connected devices, and control connections (deny/allow devices from connecting to networks).
  • Gaining Access: Now that you gathered information about the networks around you, in this subsection you will learn how to crack the key and get the password to your target network whether it uses WEP, WPA or even WPA2.
  • Post Connection attacks: Now that you have the key, you can connect to the target network, in this subsection you will learn a number of powerful techniques that allow you to gather comprehensive information about the connected devices, see anything they do on the internet (such as login information, passwords, visited urls, images, videos ….etc), redirect requests, inject evil code in loaded pages and much more! All of these attacks work against both wireless and wired networks. You will also learn how to create a fake WiFi network, attract users to connect to it and use all of the above techniques against the connected clients.

2. Gaining Access – In this section you will learn two main approaches to gain full control or hack computer systems:

  • Server Side Attacks:  In this subsection you will learn how to gain full access to computer systems without user interaction. You will learn how to gather useful information about a target computer system such as its operating system, open ports, installed services, then use this information to discover weaknesses and vulnerabilities and exploit them to gain full control over the target. Finally you will learn how to automatically scan servers for vulnerabilities and generate different types of reports with your discoveries.
  • Client Side Attacks – If the target system does not contain any weaknesses then the only way to hack it is by interacting with the users, in this subsection you’ll learn how to get the target user to install a backdoor on their system without even realising, this is done by hijacking software updates or backdooring downloads on the fly. This subsection also teaches you how to use social engineering to hack secure systems, so you’ll learn how to gather comprehensive information about system users such as their social accounts, friends, their mails…..etc, you’ll learn how to create trojans by backdooring normal files (such as an image or a pdf) and use the gathered information to spoof emails so they appear as if they’re sent from the target’s friend, boss or any email account they’re likely to interact with, to social engineer them into running your trojan.

3. Post Exploitation – In this section you will learn how to interact with the systems you compromised so far. You’ll learn how to access the file system (read/write/upload/execute), maintain your accessspy on the target (capture key strikes, turn on the webcam, take screenshots….etc) and even use the target computer as a pivot to hack other systems.

4. Website / Web Application Hacking – In this section you will learn how websites work, how to gather information about a target website (such as website owner, server location, used technologies ….etc) and how to discover and exploit the following dangerous vulnerabilities to hack websites:

  • File Upload.
  • Code Execution.
  • Local File Inclusion.
  • Remote File Inclusion.
  • SQL Injection.
  • Cross Site Scripting (XSS).

At the end of each section you will learn how to detect, prevent and secure systems and yourself from the discussed attacks. 

All the techniques in this course are practical and work against real systems, you’ll understand the whole mechanism of each technique first, then you’ll learn how to use it to hack the target system. By the end of the course you’ll be able to modify these techniques to launch more powerful attacks, and adopt them to suit different situations and different scenarios.

With this course you’ll get 24/7 support, so if you have any questions you can post them in the Q&A section and we’ll respond to you within 15 hours.


  • This course is created for educational purposes only, all the attacks are launched in my own lab or against systems that I have permission to test.
  • This course is totally a product of Zaid Sabih & zSecurity and no other organisation is associated with it or a certification exam. Although, you will receive a Course Completion Certification from Udemy, apart from that NO OTHER ORGANISATION IS INVOLVED.

Who this course is for:

  • Anybody interested in learning ethical hacking/penetration testing
  • Anybody interested in learning how hackers hack computer systems
  • Anybody interested in learning how to secure systems from hackers

Download Learn Ethical Hacking From Scratch


Share Post

Leave a Comment