Course Overview

The main idea of this course is to turn an innocent router into a hacking box (AKA hardware backdoor or Pentest box). We will not be focusing on the hacking tools themselves but rather than how to use them in such scenario where we do have our box in between with our target. Also, we will not develop new exploits. But we will test exploits through our box.

Please make sure to check with local, state, and federal laws prior to doing any physical assessments. Also, ensure you have proper approval, work with the facility’s physical security teams, and have a signoff paper in case you get caught. IF you want to use AWS. Check the AWS Abuse and Pentest Policy. The last thing you want is to go to jail.

Instead of buying WiFi Pineapple, Minipwner, Pwn. etc. why not build your own custom one?

In this course, we will build your custom Ethical Hacking Box. Control it from AWS. Install Python & Scapy. Tunnel tools and attacks!

What You Will Learn

  • Build your own hacking box “Plug-and-Pwn”
  • Get a reverse access to the box using VPN
  • SSH
  • SSL
  • Install and use Python and Scapy
  • Tunnel exploits and attacks using SSH tunneling / SOCKS
  • Control the box from AWS Cloud
  • How to flash OpenWRT (A Free
  • Opensource Linux distribution for embedded devices)
  • Understand DoS amplification attack (SNMP+DNS) + SYN Flooding

Program Curriculum

  • Is My Home Router Compatible with OpenWRT?
  • Flashing OpenWRT
  • Installing USB Libraries
  • Making Root File System on External Storage (USB)
  • $7 Million Cybersecurity Scholarship by EC-Council
  • Chapter 1 Quiz

  • Quick Intro
  • Understanding SSH Tunneling (Reverse + Dynamic Port Forwarding)
  • SSH Reverse Connection: Step-By-Step
  • NCAT over TLS Reverse Connection: Step-By-Step
  • OpenVPN Reverse Connection: Step-By-Step
  • Making A Persistent Connection
  • Chapter 2 Quiz

  • Why Cloud? Create a Free Tier Kali Instance
  • Access the Kali Instance from Linux (SSH + RDP)
  • Access the Kali Instance from Windows (SSH + RDP)
  • Manage Your Box from AWS Cloud
  • Chapter 3 Quiz

  • Nmap NSE - Using ProxyChain
  • Metasploit Exploits (Bind Shell + Reverse Shell)
  • SQL Injection (SQL Map)
  • Chapter 4 Quiz

  • Python - Exploit UnrealIRCd (CVE-2010-2075)
  • Python - Exploiting PHP CGI Injection (CVE-2012-1823)
  • Installing Scapy
  • Sending Crafted Packets (ICMP + DNS)
  • SYN Flood
  • DNS Amplification
  • Chapter 5 Quiz
Load more modules

Instructor

Hussam Khrais

Hussam Khrais is a security engineer based in Berlin, Germany. He builds security tools and scanners in Python and does his best to learn as much as I can. He also enjoys solving problems and turning obstacles upside down. His favorite quote is, "What stands in the way becomes the way."

Join over 1 Million professionals from the most renowned Companies in the world!

certificate

Empower Your Learning with Our Flexible Plans

Invest in your future with our flexible subscription plans. Whether you're just starting out or looking to enhance your expertise, there's a plan tailored to meet your needs. Gain access to in-demand skills and courses for your continuous learning needs.

Monthly Plans
Annual Plans
Save 20% with our annual plans!

Pro

Ideal for continuous learning, offering extensive resources with 600+ courses and diverse Learning Paths to enhance your skills.

$ 499.00
Billed annually or $59.00 billed monthly

What is included

  • 700+ Premium Short Courses
  • 50+ Structured Learning Paths
  • Validation of Completion with all courses and learning paths
  • New Courses added every month
Early Access Offer

Pro +

Experience immersive learning with Practice Labs, CTF Challenges, and exclusive EC-Council certifications for comprehensive skill-building.

$ 599.00
Billed annually or $69.00 billed monthly

Everything in Pro and

  • 800+ Practice Lab exercises with guided instructions
  • 150+ CTF Challenges with detailed walkthroughs
  • New Practice Labs and Challenges added every month
  • 3 Official EC-Council Essentials Certifications¹ (retails at $897!)
    Exclusive Bonus with Annual Plans

¹This plan includes Digital Forensics Essentials (DFE), Ethical Hacking Essentials (EHE), and Network Defense Essentials (NDE) certifications. No other EC-Council certifications are included.

Related Courses

1 of 8