Course Overview

Zero-day software vulnerabilities can lurk undetected for years, leaving software users particularly susceptible to hackers. It is a reasonable option for those looking to defend their systems and potentially exploit vulnerabilities in others.

Zero-day attacks target software vulnerabilities, and this course will provide an effective solution to many of those attacks to help you plan and reduce the risk. The course provides insights into zero-day vulnerability research and exploitation.

By the end of the course, you will gain practical experience to detect and protect your system software from malicious hackers.

What You Will Learn

  • Learn about Fuzzing
  • Understand about Buffer Overflow Attacks
  • Pivoting from One Compromised Windows Machine to Another Box Using RPivot
  • Learn how to Offensively Pass Reverse Shells Using SSH Tunneling
  • Concealing Your Remote Reconnaissance, Scanning And Crawling Using Tor-over-VPN
  • Learn How to Attack a Corporate Ethernet LAN from a Wi-Fi Hotspot Using Proxy ARP Daemons
  • Introduction to Egghunters for situations of limited buffer space.
  • Understand Reverse and Bind Shells
  • Learn about Post Exploitation
  • Familiarize with Kali Linux
  • Introduction to Exploit Development
  • Learn about Debugging Crashed Applications
  • Introduction to edb (Evan's Debugger)
  • Introduction to gdb (GNU Debugger)
  • Introduction to Immunity Debugger
  • Learn about Netwide Assembly (NASM)
  • Familiarize with Metasploit
  • Understand Encoding
  • Introduction to Pivoting
  • Familiarize with Proxies and Transparent Proxifiers (Proxychains)
  • Introduction to Tunneling
  • Introduction to SSH
  • Understanding Network & Security
  • Introduction to Hijacking Execution

Program Curriculum

  • How Are Zero-day Attacks Discovered?
  • The Ethics of Zero-day Exploits
  • The Exploit Development Process
  • The Cost of Zero-day Attack Protection
  • $7 Million Cybersecurity Scholarship by EC-Council
  • Chapter 1 Quiz

  • GDB-PEDA Debugger/Exploit Development Extension Installation
  • Controlling EIP
  • Writing our Proof-of-concept
  • Bad Character Analysis
  • Successful Exploitation
  • Chapter 2 Lab
  • Chapter 2 Quiz

  • SLMail 5.5 and Immunity Debugger Installation
  • Fuzzing
  • Taking Control of EIP
  • Eliminating Bad Characters - Part 1
  • Eliminating Bad Characters - Part 2
  • Locating JMP ESP Instruction and ASLR Bypass - Part 1
  • Locating JMP ESP Instruction and ASLR Bypass - Part 2
  • Locating JMP ESP Instruction and ASLR Bypass - Part 3
  • Exploiting the Target
  • Chapter 3 Lab
  • Chapter 3 Quiz

  • Gaining Control of Execution
  • Constructing Multi-Stage Shellcode
  • Exploiting the Crossfire Application
  • Chapter 4:Quiz

  • Introduction to Egghunters
  • Fuzzing/Proof-of-Concept
  • Hijacking Execution and Short-Jumping to Our Egghunter Space
  • Generating the Egghunter
  • Locating Buffer-space for Our Shellcode
  • Exploitation Attempt
  • Chapter 5 Lab
  • Chapter 5 Quiz

  • Rpivot Usage
  • Using Tor-over-VPN
  • Offensive Shell Passing
  • Offensive Proxy ARP Bridges
  • Chapter 6 Lab
  • Chapter 6 Quiz
Load more modules

Instructor

Dimitris Amprazis

Dimitris Amprazis has Excellent communication and consultating skills with proven abilities in resolving networking, hardware & software related issues. Ha is proficient in Linux Operating system configuration, utilities, and programming. He has extensive knowledge of hardware, software and networking technologies to provide a combination of analysis and support. Dimitris is highly killed in organizing meetings and reviews. Skills: 1. Kali Linux, Parrot Secutiy OS, CentOS, Fedora, Ubuntu, Linux Mint 2. Wireless penetration testing - WPA, WPA2, WEP 3. Network Vulnerability scan and penetration testing.Web 4. Web Application security testing, Vulnerability Assessment, penetration testing and generating reports using tool 5. Password hash cracking MD5, SHA1,SHA2, etc, 6. Experience with tools: Aircrack-ng, Hydra, Burpsuite, Metasploit. OWASP-ZAP, Nmap, Wireshark, Sqlmap, John-Ripper, Nesuss, Nikto, Dirp. 7. Steganography 8. Integration experience on Security information and Event management solutions (SIEM). 9. Network traffic analysis, supervision, filtration and packet dissection with WireShark

Join over 1 Million professionals from the most renowned Companies in the world!

certificate

Fastest Way to Level Up Your Cybersecurity Skills

Invest in your future with flexible subscription plans that give you access to the world’s largest online cybersecurity course library. Whether you're exploring cybersecurity courses for beginners or advancing your expertise,
access in-demand courses, practical labs, and CTF challenges designed to support continuous learning.

Monthly Plans
Annual Plans
Save 20% with our annual plans!

Pro

Build your cybersecurity skills with 900+ bite-sized courses and curated learning paths designed for continuous learning.

$ 69.00
Billed monthly or $599.00 billed annually

What is included

  • 880+ Premium Short Courses
  • 70+ Structured Learning Paths
  • Validation of Completion with all courses and learning paths
  • New Courses added every month
Early Access Offer

Pro +

Develop real-world cybersecurity skills through hands-on labs and CTF challenges designed for practical learning.

$ 79.00
Billed monthly or $699.00 billed annually

Everything in Pro, Plus:

  • 1600+ Hands-on lab exercises with guided instructions
  • 150+ CTF Challenges with detailed walkthroughs
  • New Hands-on Labs and Challenges added every month

Related Courses

1 of 50