| Section | Weight | Objectives |
| Reconnaissance Techniques | 21% | - Footprinting and Reconnaissance
- 1. AWS Cloud Footprinting
- 2. Footprinting through Web Services
- 3. Footprinting through Search Engines
- 4. Website Footprinting
- 5. Competitive Intelligence Gathering
- 6. Footprinting through Social Networking Sites
- 7. Network Footprinting
- 8. Email Footprinting
- 9. Footprinting Countermeasures
- 10. Footprinting Tools
- 11. DNS Footprinting
- Scanning Networks
- 1. Scanning Tools
- 2. Detecting Live Systems
- 3. Nmap and Zenmap
- 4. Network Scanning Concepts
- 5. NIDS, NIPS, and Firewall Evasion Techniques
- 6. Masscan
- 7. Banner Grabbing
- 8. Scanning Countermeasures
- 9. Drawing Network Diagrams
- 10. Scan for Vulnerabilities
- 11. Proxy Servers and Anonymizers
- 12. Port Scanning Techniques
- 13. Hping2 and Hping3
|
| Cryptography and Post-Exploitation | 13% | - Cryptography Concepts
- 1. Cryptography Tools
- 2. Code Signing and Email Encryption
- 3. Encryption Fundamentals
- 4. Hashing and Digital Signatures
- 5. Public Key Infrastructure (PKI)
- 6. Encryption Algorithms (Symmetric and Asymmetric)
- 7. Disk Encryption and Cryptanalysis
- 8. Cryptography Countermeasures
- Post-Exploitation Techniques
- 1. Lateral Movement and Tunneling
- 2. Covering Tracks and Maintaining Access
- 3. Post-Exploitation Concepts
- 4. Reporting and Documentation
- 5. Advanced Persistent Threat (APT)
|
| Wireless Network Attacks | 9% | - Wireless Network Concepts
- 1. Wireless Encryption and Security
- 2. Wireless Network Topology and Threats
- 3. Wireless Terminology and Standards
- Wireless Hacking Methodology
- 1. Cracking WPA/WPA2 and WEP Encryption
- 2. Bluetooth and RFID Attacks
- 3. Wireless Network Countermeasures
- 4. Wireless Network Hacking Tools
- 5. Wireless Sniffing and Wardriving
|
| Web Application Attacks | 19% | - Hacking Web Servers and Web Applications
- 1. Web Server and Web Application Countermeasures
- 2. Web Server Attacks
- 3. Web Server Attack Methodology
- Web Application Concepts and Attacks
- 1. Web Application Scanning and Testing Tools
- 2. Web Application Countermeasures
- 3. Web Application Architecture
- 4. Web Application Password Cracking and Clickjacking
- 5. Cross-Site Scripting (XSS) and Request Forgery
- 6. OWASP Top 10 Vulnerabilities
- 7. Authentication and Session Management Attacks
- 8. Injection Attacks
|
| Cloud and Container Attacks | 10% | - Cloud Attacks and Security
- 1. Cloud Security Threats and Attacks
- 2. Container Security Tools and Countermeasures
- 3. Cloud Penetration Testing
- 4. Cloud Security Tools and Best Practices
- Cloud Computing Concepts
- 1. Container Technology
- 2. Cloud Architecture and Deployment Models
- 3. Serverless Architecture
- 4. Cloud Service Models (IaaS, PaaS, SaaS)
|
| Vulnerability Analysis | 7% | - Vulnerability Assessment Concepts
- 1. Vulnerability Assessment Solutions
- 2. Vulnerability Assessment Tools and Software
- 3. Vulnerability Scoring Systems
|
| Malware Threats | 8% | - Malware and Its Types
- 1. APT and Futuristic Malware
- 2. Malware Fundamentals
- 3. Types of Malware
- 4. APT Concepts
- Malware Analysis and Distribution
- 1. Malware Analysis Techniques
- 2. Malware Countermeasures
- 3. Malware Detection Methods
|
| Sniffing and Evasion | 10% | - Social Engineering
- 1. Social Engineering Tools and Countermeasures
- 2. Social Engineering Techniques
- 3. Social Engineering Concepts
- 4. Insider Threats and Identity Theft
- Network Sniffing
- 1. VLAN Hopping and DHCP Starvation
- 2. Sniffing Detection and Countermeasures
- 3. MAC Flooding and Switch Port Stealing
- 4. STP Attacks and DNS Poisoning
- 5. Sniffing Tools
- 6. ARP Spoofing
- 7. Sniffing Concepts
- Network Evasion
- 1. Denial of Service Attacks
- 2. Firewalls and Intrusion Detection/Prevention Systems
- 3. IDS/Firewall Evasion Tools
- 4. Evasion Techniques
|
| Mobile Platform and IoT Attacks | 7% | - Mobile Platform Attack Vectors
- 1. Mobile Platform Overview
- 2. Mobile Malware and Mobile Spyware
- 3. Mobile Security Tools and Countermeasures
- 4. Mobile Attack Surfaces and Vulnerabilities
- 5. Mobile Attack Techniques
- 6. Mobile Device Management (MDM)
- IoT and OT Attacks
- 1. OT Concepts and Attacks
- 2. IoT Attack Tools and Countermeasures
- 3. IoT Concepts and Architecture
- 4. IoT Vulnerabilities and Threats
- 5. IoT Hacking Methodology
|
| Enumeration | 15% | - Enumeration Concepts
- 1. Enumeration Techniques
- 2. Enumeration Fundamentals
- Enumeration Process
- 1. VoIP Enumeration
- 2. Mail Server Enumeration
- 3. NetBIOS Enumeration
- 4. Enumeration Countermeasures
- 5. SNMP Enumeration
- 6. NTP Enumeration
- 7. SMB and SAMBA Enumeration
- 8. LDAP Enumeration
- 9. RPC and NFS Enumeration
|
| Information Security and Ethical Hacking Overview | 6% | - Ethical Hacking Overview
- 1. Governance and Compliance
- 2. What is Ethical Hacking?
- 3. Security Testing Methodologies
- 4. Skills and Mindset of an Ethical Hacker
- 5. Need for Ethical Hackers
- Information Security Overview
- 1. Information Security Threats and Attack Vectors
- 2. Understanding Information Security
- 3. Understanding Information Security Controls
- 4. Understanding Information Security Laws and Standards
- 5. Proactive Cyber Defense
|
| System Hacking | 17% | - System Hacking Tools and Countermeasures
- 1. Ports and Log Files
- 2. Keyloggers and Spyware
- 3. Steganography
- 4. Password Recovery Tools
- 5. Covering Tracks Countermeasures
- 6. Rootkits
- System Hacking Methodologies
- 1. Hiding Files
- 2. Gaining Access
- 3. Covering Tracks
- 4. Executing Applications
- 5. Cracking Passwords
- 6. Escalating Privileges
|