Structured CEH module notes, certification prep and personal revision notes.
Module 01 — Introduction to Ethical Hacking
Threat landscape, hacking phases, laws and standards.
Module 02 — Footprinting and Reconnaissance
Passive and active information gathering workflows.
Module 03 — Scanning Networks
Host discovery, port scanning, banner grabbing, evasion.
Module 04 — Enumeration
SMB, SNMP, LDAP, NFS, SMTP and DNS enumeration.
Module 05 — Vulnerability Analysis
Scoring, scanners, validation and reporting.
Module 06 — System Hacking
Gaining access, escalation, persistence, log clearing.
Module 07 — Malware Threats
Trojans, worms, APTs, fileless malware, analysis basics.
Module 08 — Sniffing
ARP poisoning, MITM, DHCP attacks, sniffing defenses.
Module 09 — Social Engineering
Pretexting, phishing, impersonation, insider threats.
Module 10 — Denial of Service
DoS/DDoS techniques, botnets, mitigation.
Module 11 — Session Hijacking
Application and network level hijacking, defenses.
Module 12 — Evading IDS, Firewalls and Honeypots
Detection evasion, tunneling, honeypot detection.
Module 13 — Hacking Web Servers
Server misconfigurations, patch management, attacks.
Module 14 — Hacking Web Applications
Web attack surface, OWASP mapping, exploitation.
Module 15 — SQL Injection
Error, union, blind and out-of-band injection.
Module 16 — Hacking Wireless Networks
WEP/WPA/WPA2/WPA3, rogue APs, wireless recon.
Module 17 — Hacking Mobile Platforms
Android/iOS attack surface, mobile OWASP, MDM.
Module 18 — IoT and OT Hacking
IoT protocols, ICS/SCADA, firmware analysis.
Module 19 — Cloud Computing
Shared responsibility, container security, cloud attacks.
Module 20 — Cryptography
Algorithms, PKI, hashing, disk encryption, cryptanalysis.
Personal Notes
Working notes, lab findings and things worth remembering.
Revision Notes
Condensed recall sheets for fast pre-exam revision.
OSCP Notes
Methodology, enumeration flow and privilege escalation for OSCP.
PNPT Notes
External recon, AD attack chain and reporting for the PNPT.
CRTO Notes
Red team ops: C2, evasion, lateral movement, persistence.
CPTS Notes
HTB CPTS module notes across the full penetration test lifecycle.
Windows Notes
Windows internals, security features and offensive tradecraft.
Linux Notes
Linux internals, tooling and offensive/defensive workflows.
Networking Notes
Protocols, routing, segmentation and packet-level analysis.
Web Security Notes
Web attack surface notes mapped to the OWASP Top 10.
Active Directory Notes
Domain enumeration, Kerberos abuse and AD hardening notes.