Ethical Hacking · Course Modules · Week by Week
Ethical Hacking Course Modules Week by Week
Quick summary — ethical hacking course modules week by week
An ethical hacking course typically runs 12 weeks, covering foundation, offensive security, and advanced topics. Weeks 1-4 build networking and reconnaissance fundamentals. Weeks 5-8 cover scanning, exploitation, and web hacking. Weeks 9-12 dive into wireless, mobile, social engineering, and professional reporting.
In this guide you will learn:
- Weeks 1-4: Foundation — networking, Linux, and reconnaissance.
- Weeks 5-8: Offensive security — scanning, exploitation, and web hacking.
- Weeks 9-12: Advanced topics — wireless, mobile, and reporting.
- Tools you'll master — Nmap, Metasploit, Burp Suite, and more.
- Certifications to target — CEH, OSCP, and CompTIA Security+.
- Career outcomes — roles, salaries, and hiring.
SECTION 01Weeks 1-4 — foundation: networking, Linux, and reconnaissance
The first four weeks build your foundation. You'll learn how networks work, how to navigate Linux and Windows, and how to gather information about targets — the first phase of any ethical hacking engagement.
Week 1: Networking Fundamentals
OSI and TCP/IP models, IP addressing, subnetting, ports and protocols, DNS, HTTP/HTTPS, and how data flows across networks.
Week 2: Linux and Windows for Hackers
Linux command line, file permissions, users and groups, package management, Windows internals, and setting up a hacking lab with Kali Linux and virtual machines.
Week 3: Reconnaissance and OSINT
Passive and active reconnaissance, OSINT techniques, Google dorking, WHOIS, DNS enumeration, and footprinting targets without touching their systems.
Week 4: Scanning and Enumeration
Nmap scanning techniques, port scanning, service detection, vulnerability scanning with Nessus and OpenVAS, and enumerating SMB, SNMP, and LDAP.
SECTION 02Weeks 5-8 — offensive security: scanning, exploitation, and web hacking
Weeks 5-8 are the core of the course. You'll learn to exploit vulnerabilities, compromise systems, and hack web applications — always in a legal, controlled lab environment.
Week 5-6: System Exploitation
- Metasploit framework
- Exploiting known vulnerabilities
- Password attacks and cracking
- Privilege escalation (Linux & Windows)
- Post-exploitation and persistence
- Pivoting and lateral movement
Week 7-8: Web Application Hacking
- OWASP Top 10 vulnerabilities
- SQL injection and XSS
- Burp Suite mastery
- Authentication and session flaws
- File inclusion and command injection
- API and business logic testing
SECTION 03Weeks 9-12 — advanced topics: wireless, mobile, and reporting
The final four weeks cover advanced attack surfaces and the professional reporting skills that turn a hacker into a trusted security consultant.
Week 9: Wireless and Network Attacks
Wi-Fi security, WPA/WPA2 cracking, evil twin attacks, MITM (man-in-the-middle), ARP spoofing, and securing wireless networks.
Week 10: Mobile and IoT Hacking
Android and iOS security, mobile app testing, IoT device exploitation, and securing connected devices.
Week 11: Social Engineering
Phishing, pretexting, baiting, tailgating, and human-focused attacks. Learn to test and train employees against social engineering.
Week 12: Reporting and Capstone Project
Writing professional penetration test reports, documenting findings, risk ratings, remediation advice, and completing a full capstone penetration test from recon to report.
SECTION 04Tools you'll master in the course
By the end of 12 weeks, you'll be proficient with the industry-standard ethical hacking toolkit:
Full tool list:
- Reconnaissance: Nmap, WHOIS, DNSenum, theHarvester, Shodan.
- Vulnerability scanning: Nessus, OpenVAS, Nikto.
- Exploitation: Metasploit, SearchSploit, Hydra, John the Ripper.
- Web hacking: Burp Suite, OWASP ZAP, SQLmap, Gobuster.
- Wireless: Aircrack-ng, Wifite, Kismet.
- Post-exploitation: Mimikatz, PowerShell Empire, BloodHound.
SECTION 05Certifications to target after the course
After completing the 12-week course, target these certifications to boost your credibility and salary:
CompTIA Security+
Entry-level security certification covering foundational security concepts. Ideal for your first security role.
CEH (Certified Ethical Hacker)
EC-Council's flagship certification covering ethical hacking methodology and tools. Widely recognized by employers.
OSCP (Offensive Security Certified Professional)
The gold standard for hands-on penetration testing. Requires a 24-hour practical exam.
CompTIA PenTest+
Intermediate certification covering penetration testing and vulnerability management.
SECTION 06Career outcomes — roles, salaries, and hiring
Ethical hacking skills open doors to high-demand, high-paying roles:
Roles you can target:
- Ethical Hacker / Penetration Tester
- Cyber Security Analyst
- Security Consultant
- Vulnerability Assessor
- Red Team Specialist
- Security Engineer
Why hiring is strong:
- Every organization needs security testing — from startups to governments.
- Regulations (GDPR, HIPAA, PCI-DSS) mandate regular penetration testing.
- Cyber attacks are increasing, driving demand for skilled defenders.
- Certifications and hands-on skills command premium salaries.
SECTION 07Test yourself — is this path right for you?
Five questions. No sign-up.
0 / 5Pick an answer to see why it is right or wrong.
SECTION 08Frequently asked questions
How long is an ethical hacking course?
Most structured ethical hacking courses run 12 weeks, covering foundation (weeks 1-4), offensive security (weeks 5-8), and advanced topics (weeks 9-12).
What topics are covered in weeks 1-4?
Networking fundamentals, Linux and Windows for hackers, reconnaissance and OSINT, and scanning with Nmap and vulnerability scanners.
What tools will I learn in an ethical hacking course?
You'll master Nmap, Metasploit, Burp Suite, Wireshark, Nessus, SQLmap, Aircrack-ng, and other industry-standard tools.
Which certification should I target after the course?
Start with CompTIA Security+ or CEH, then work toward OSCP as you gain hands-on experience. OSCP is the gold standard for penetration testers.
What salary can I expect as an ethical hacker?
Entry-level ethical hackers earn ₹4-10 LPA in India. With experience and certifications like OSCP, salaries range from ₹10-25 LPA or more.
SECTION 09Related reads
Classroom & online · Noida
Ethical Hacking Course — 12 weeks from foundation to certification
Our Ethical Hacking Course covers networking, reconnaissance, exploitation, web hacking, wireless attacks, and professional reporting — everything you need to start your cyber security career.
₹24,500 · full programme- 12-week structured module plan
- Hands-on labs with Kali Linux
- Nmap, Metasploit, Burp Suite
- Capstone penetration test project
- CEH & Security+ exam prep
- Weekday & weekend batches

