The Complete Ethical Hacking Course
Packt via Coursera Specialization
Overview
Google, IBM & Meta Certificates – 40% Off
One plan covers every Professional Certificate on Coursera.
Unlock All Certificates
This specialization features Coursera Coach!
A smarter way to learn with interactive, real-time conversations that help you test your knowledge, challenge assumptions, and deepen your understanding as you progress through the specialization.
Develop practical cybersecurity skills by learning how ethical hackers identify, analyze, and report security vulnerabilities. This specialization helps you build penetration testing knowledge, use industry tools, and understand secure approaches for assessing modern applications.
Begin your journey by creating an ethical hacking lab with Kali Linux, virtual machines, and essential Linux concepts. You will then explore web technologies, databases, and common vulnerabilities through hands-on security testing.
Progress through practical scenarios covering web application security, API testing, reconnaissance, and bug bounty workflows. Using tools such as Burp Suite, SQLMap, and Postman, you will practice identifying vulnerabilities and documenting security findings professionally.
This specialization is designed for aspiring ethical hackers, cybersecurity learners, developers, and IT professionals. Basic computer knowledge is helpful, but no prior hacking experience is required. The specialization suits Beginner to Intermediate learners.
By the end of this specialization, you will be able to build testing environments, identify security vulnerabilities, perform ethical assessments, and create professional penetration testing reports.
Syllabus
- Course 1: Ethical Hacking Foundations & Network Security
- Course 2: Web Security, Social Engineering & External Attacks
- Course 3: Advanced Web Exploits, Python Scripting & Network Attacks
- Course 4: Exploit Development, Malware, & Defensive Strategies
Courses
-
This course features Coursera Coach! A smarter way to learn with interactive, real-time conversations that help you test your knowledge, challenge assumptions, and deepen your understanding as you progress through the course. Master advanced web application penetration testing by exploring SQL injection techniques, real-world attack scenarios, and modern web vulnerabilities in controlled lab environments. You'll develop practical skills to identify, analyze, and validate security weaknesses while gaining hands-on experience with industry-standard tools and intentionally vulnerable applications used by security professionals. The course begins with SQL injection fundamentals, where you'll learn to identify vulnerable inputs, validate SQL injection flaws, understand authentication bypass techniques, and explore GET-based attacks using UNION queries. You'll then progress to advanced SQL injection topics, including blind SQL injection, alternative testing methods, hexadecimal payloads, file operations, shell access concepts, and automated testing with SQLMap. Building on these techniques, you'll apply your knowledge within the OWASP Juice Shop environment by completing practical security challenges involving SQL injection, DOM-based XSS, XXE, authentication flaws, access control issues, request manipulation, cookie security, and business logic vulnerabilities. The course concludes with Server-Side Request Forgery (SSRF), where you'll examine backend exploitation techniques and evaluate blacklist and whitelist filtering mechanisms in realistic scenarios. This course is intended for aspiring penetration testers, cybersecurity professionals, ethical hackers, and security researchers who have a foundational understanding of web application security and SQL concepts. Prior experience with Linux, HTTP, and introductory penetration testing is recommended. The course is designed at an Advanced difficulty level. By the end of the course, you will be able to assess SQL injection vulnerabilities, perform advanced web application penetration testing, use SQLMap and OWASP Juice Shop effectively, analyze complex security flaws such as SSRF and XXE, and conduct structured web security assessments within authorized testing environments.
-
This course features Coursera Coach! A smarter way to learn with interactive, real-time conversations that help you test your knowledge, challenge assumptions, and deepen your understanding as you progress through the course. Build a strong foundation in ethical hacking by setting up a secure penetration testing environment and exploring the fundamentals of web technologies and HTML injection. You'll gain practical experience with Kali Linux, virtualization, Linux administration, and essential web security concepts while understanding how attackers exploit vulnerabilities and how security professionals identify them responsibly. Your journey begins with an introduction to the course, learning resources, and lab preparation before moving into a complete Kali Linux setup using VirtualBox on Windows and macOS. You'll configure virtual machines, troubleshoot installation issues, manage Linux files, permissions, packages, and user accounts, and become comfortable navigating a professional penetration testing environment. Next, you'll learn HTML fundamentals, including document structure, tags, elements, attributes, forms, and semantic page components. Building on this knowledge, you'll explore HTML injection concepts through hands-on labs using Beebox, Burp Suite, Dirbuster, and iFrame-based attacks, understanding how web vulnerabilities are identified and analyzed in controlled environments. This course is ideal for aspiring ethical hackers, cybersecurity students, IT professionals, web developers, and technology enthusiasts who want to understand web application security. Basic computer literacy is recommended, but no prior ethical hacking experience is required. The course is designed at a Beginner difficulty level. By the end of the course, you will be able to configure a secure ethical hacking lab, navigate Kali Linux confidently, understand core HTML concepts, use industry-standard security tools, identify HTML injection vulnerabilities, and perform foundational web application security testing in controlled environments.
-
This course features Coursera Coach! A smarter way to learn with interactive, real-time conversations that help you test your knowledge, challenge assumptions, and deepen your understanding as you progress through the course. Expand your offensive security expertise by mastering reconnaissance, API security testing, and responsible vulnerability discovery. Through practical demonstrations and hands-on labs, you'll learn how security professionals identify attack surfaces, assess modern APIs, document security findings, and participate in ethical bug bounty programs while following responsible disclosure practices. The course begins with information gathering techniques, including Whois lookups, DNS enumeration, site reporting, and firewall analysis to build a comprehensive understanding of target environments. You'll then dive into API penetration testing by configuring test environments, using Burp Suite and Postman, and evaluating common API security risks such as Broken Object Level Authorization (BOLA), broken authentication, excessive data exposure, mass assignment, CORS misconfigurations, SQL injection, and improper asset management. The final section focuses on applying these skills in realistic scenarios. You'll learn professional penetration test reporting, explore legitimate cybersecurity career paths, and observe live bug bounty methodologies involving reconnaissance, JavaScript analysis, open redirect testing, XSS, broken access control, IDOR, authentication reviews, and responsible vulnerability reporting. Throughout the course, emphasis is placed on ethical testing within authorized environments and industry best practices. This course is ideal for aspiring penetration testers, bug bounty hunters, cybersecurity analysts, and security professionals with prior knowledge of web application security and networking. Familiarity with HTTP, APIs, Linux, and foundational penetration testing concepts is recommended. The course is designed at an Advanced difficulty level. By the end of the course, you will be able to perform structured reconnaissance, assess API security using professional tools, identify and validate common API and web vulnerabilities, prepare professional penetration testing reports, and apply ethical bug bounty methodologies within authorized security testing environments.
-
This course features Coursera Coach! A smarter way to learn with interactive, real-time conversations that help you test your knowledge, challenge assumptions, and deepen your understanding as you progress through the course. Take your web application security skills to the next level by exploring common vulnerabilities that affect modern websites and learning how security professionals assess them in controlled environments. Through practical demonstrations and hands-on labs, you'll develop the ability to identify, analyze, and understand exploitation techniques while strengthening your knowledge of secure web application testing. The course begins with PHP code injection and file upload vulnerabilities before progressing to OS command injection and Server Side Include (SSI) attacks. You'll configure tools such as Foxy Proxy and Commix while learning to investigate server-side weaknesses responsibly. You'll then examine directory traversal vulnerabilities using Dotdotpwn and understand how attackers access unauthorized files through insecure application design. As you advance, you'll explore Cross-Site Scripting (XSS), broken access control, Insecure Direct Object References (IDOR), Cross-Site Request Forgery (CSRF), and brute force attacks using realistic lab environments and industry-standard tools. The course concludes with an SQL crash course, covering database fundamentals, queries, filtering, and advanced techniques that prepare you for understanding SQL-related security testing in later learning. This course is designed for aspiring penetration testers, cybersecurity students, IT professionals, developers, and ethical hackers seeking practical web security experience. Learners should have a basic understanding of networking, Linux, and introductory web technologies. The course is Intermediate level. By the end of the course, you will be able to identify and assess common web application vulnerabilities, configure security testing tools, evaluate authentication and authorization flaws, understand SQL fundamentals, and perform structured web application security assessments within authorized testing environments.
Taught by
Packt - Course Instructors