Ethical Hacking Learning Path

In this blog post, I detail what I believe to be the ideal learning path and roadmap for the complete beginner, and those with little experience, looking to get into ethical hacking.
Ethical Hacking Learning Path
In: Ethical Hacking, Penetration Testing, Cybersecurity, Linux, Windows, Computer Networking, Web, Code, Certifications, CTF, HackTheBox, TryHackMe, HackMyVM

Foreword

Your Responsibility

Any misuse of the information provided on this page or elsewhere on this site is the sole responsibility of the user. Please always act ethically and obtain signed authorization before testing any system or network that is not your own.




Good Notetaking

Your notes are going to be one of the defining factors of your success in ethical hacking. You can't remember everything, so you will need to rely heavily on your notes. The quality of your notes will directly impact your ability to recall the information you need.

How to Take Bad Notes

❌ Writing down everything you hear, read, or watch

  • You're spending more time transcribing than actually learning

❌ Including too many screenshots and pictures

  • Pictures are not searchable on the page
  • You're polluting your field manual with too much information

🤔 And you likely do this because

  • You are learning something for the first time
  • Everything is new and exciting and every little detail seems significant
ℹ️
Realize, however, that your mindset now and your mindset later will be completely different when you revisit your notes. What seems important now may not be so later.

You don't want to struggle to find the information you need when reading your own notes.



How to Take Good Notes

Notes with a Purpose

✅ Your notes are your pocket guide, your field manual, not a novel or textbook

✅ The information should be available at a moment's notice

The information should be searchable and easy to find



Questions to Ask Yourself

Am I just blindly transcribing?
  • Will this information be valuable to me months from now?
Am I making more work for myself?
  • If the information is documented elsewhere
    • Capture the essential information and link back to the original source
    • Don't rewrite it
Has the instructor said to write this down?
  • Then write it down, obviously
Has this information come up multiple times?
  • It's probably important if it's mentioned multiple times
Is this likely to come up in an exam?
  • Oftentimes, exams will test on information such as trivia, factoids
Is this information going to be useful?
  • Many of my notes written months and years ago continue to be useful to me even now



High Impact Note Formats

Diagramming

Dealing with a Complex Topic?



Commands and Code Blocks

Need to capture commands, code snippets, or entire scripts?
Use code blocks with syntax highlighting

```
Write-Host -ForegroundColor Green "Hello, World!"
```

Example of a simple code fence in Markdown

Write-Host -ForegroundColor Green "Hello, World!"

Simple code fence results in plain text without syntax highlighting

```powershell
Write-Host -ForegroundColor Green "Hello, World!"
```

Example of a code fence with a target programming language in Markdown

Write-Host -ForegroundColor Green "Hello, World!"

Code fence with target language results in code with syntax highlighting



Collapsible Content

Need to Add Long Passages for Important Context?
Use a collapsible toggle so that it doesn't occupy too much space on the page.

Show / Hide

Lorem ipsum dolor sit amet consectetur adipiscing elit. Quisque faucibus ex sapien vitae pellentesque sem placerat. In id cursus mi pretium tellus duis convallis. Tempus leo eu aenean sed diam urna tempor. Pulvinar vivamus fringilla lacus nec metus bibendum egestas. Iaculis massa nisl malesuada lacinia integer nunc posuere. Ut hendrerit semper vel class aptent taciti sociosqu. Ad litora torquent per conubia nostra inceptos himenaeos.



Drawing Attention

Something You Really Want to Remember Later?
Use "callouts" on the page to draw your attention or point something out.

🚨
Enter something really important here...



Note-Taking Products

Local Notes + Sync

These are products where you take notes in an application and the notes will either be synced by the product or require syncing by the user.

Web-Based Platforms

These are products where everything is entirely web-based. You log into a web application with your web browser and all of your notes are stored by the web application.




Notes Versus Write-Ups

Notes

As stressed before, your notes are:

  • Your field manual, your pocket guide
  • Highly searchable, concise summaries and snippets

Write-Ups

  • Write-ups are where you document in greater detail the things you're learning and doing (screenshots recommended)
  • Have a template that you can clone and fill out and have a scratchpad to store random details while you work
  • If you transfer information from your writeups to your notes, ensure you keep the information concise and searchable



Prerequisites to Ethical Hacking

Don't be this person. Seriously!

Realistic Expectations

In the age of the dopamine reward loop, the modern human brain has been wired to seek gratification and reward that is instant, low-effort, and high-return.

  • No one is gatekeeping, I promise
  • You can't help that you don't know something and you can't make yourself instantly know it
  • You're NOT going to learn ethical hacking in a day, a month, or maybe even a year
  • The field is too broad, covers too many topics, and requires continuous learning
  • Your skill will be a direct reflection of time + effort + repetition



Four Core Skill Areas

It is a matter of my opinion that in order to be a proficient ethical hacker, you should build up four core skill areas:

  1. Operating Systems
  2. Computer Networking
  3. Web Technologies
  4. Computer Programming

Why in this Order? 🤔

Operating Systems

  • You should know operating systems — command line and GUI — since these make up the backbone of all the other items on the list
  • Some variety of operating system runs user desktops, servers, networking equipment, IoT, and much more

Computer Networking

  • Once you know the operating system, you know the commands and settings to configure them
  • You are now ready to stitch multiple systems together to form a computer network

Web Technologies

  • Now that you've formed a network of computer systems, you probably want to share information between them
  • Some of the most common ways we share information is via web servers on an intranet, internet, or the world wide web

Programming

  • You've formed a very solid set of foundational skills
  • Computer programming helps you automate and write custom solutions for the skill areas learned above



Learning Resources

IT and Cybersecurity Learning Path
In this post, I suggest a path of free resources that newcomers to IT and cybersecurity can follow to build a solid set of foundational skills to secure their careers

The learning path suggests free resources in each of the four skill areas




Will ${cert_name} Help Me?

Certification Pros and Cons

Cons:

  • Expenses for study materials and vouchers
  • Time-consuming
  • Fees for renewal (and sometimes membership dues)

Pros:

  • May improve prospects when hunting for jobs
  • Offer the student an A-to-Z roadmap of topics to study
💡
You can always obtain the study materials for a certification and go through the content, but skip the exam if you think the material will add value to your pursuit of knowledge.



The Most Important Question

Will this certification help me with my immediate job search?

Considering the time and costs involved with getting certifications, this should really be your sole motivation for pursuing them.

Search job boards for the target certification and assess what kind of demand there is for it by employers. If the demand is high, then it may be a wise investment of your time and money.




Learning to Hack

Curiosity: The Most Important Attribute

You need to have the mentality of:

  • What if ________ ?
  • What would happen if I ________ ?
  • I wonder what caused ________ to happen.
  • I don't know what ________ is. Let me research it.

To the curious, nothing is inconsequential. Hackers want to understand how things work, how things are controlled, and how those control systems can be manipulated in unintended ways.

💡
This is why I stress the information above. You can be curious and poke and prod a system or an application. But your curiosity is wasted if you don't understand the underlying technology.

Breaking an Application

If you know the technology, you can begin to think in terms of inputs and outputs.

  • What kinds of inputs is the application accepting?
    • What format?
  • Is the application passing our inputs to potentially unsafe functions?
  • Is the application accepting file uploads?
    • Could this lead to code execution?
  • Does the application attempt to filter or sanitize inputs?
    • Can they be bypassed?
  • Does the application produce outputs?
    • What is the format?
    • Does the output reveal any information about the underlying system?
  • How does the application handle errors?
    • Is any error output returned to the user?
      • Does the output reveal any information about the underlying system?



Learn to Love Research

Your FIRST INSTINCT – when you encounter something you don't know – should be to do some research on:

  • Your favorite LLM
  • Google
  • GitHub
  • Stack Overflow
  • etc.

There's a good chance someone on the Internet has already asked about it or written about it.


Google Dorks

Some Example Search Operators

  • "keyword" all results must contain this word
  • "some words" return all results with this exact phrase
  • -keyword results must not contain this word
  • -"some words" results must not contain this phrase
  • site:somesite.com return results only from a specific site
  • site:*.somesite.com return results from any subdomain of a site
  • filetype:pdf return results containing PDF files
  • before:YYYY-MM-DD return results before a specific date
  • after:YYYY-MM-DD return results after a specific date
  • after:YYYY-MM-DD before:YYYY-MM-DD returns results in a date range
  • cache:somesite.com check for cached version of a site
  • inurl:keyword results must contain this word in their URL
  • intitle:keyword results must contain this word in their title
  • site:somesite.com file:xlsx inurl:expense you can compound operators
Google Search Operators: 40 Commands to Know (Improve Research, Competitive Analysis, and SEO)
Google search operators are your secret tools to get enhanced info you can use for SEO, content research, & more. Get the full list here!

More examples of Google search operators


Google Hacking Database

Offensive Security’s Exploit Database Archive
The GHDB is an index of search queries (we call them dorks) used to find publicly available information, intended for pentesters and security researchers.

Google Dorks used by the community to find vulnerabilities or misconfigurations



Embracing the Road Ahead

At the risk of oversimplifying, three things will make you a better hacker:

  • Experience
  • Time
  • Repeated application of learned concepts

This is true for any hobby or profession, really. As you build incremental experience, you naturally become better at it. It just takes time.

💡
A hacker is the sum of their disparate experiences. No one, single thing is going to make you a hacker. A combination of the things you learn over time will.

Try different things to see what interests you:

  • Programming
  • Computer networking
  • Bug bounty
  • Active Directory
  • Binary exploitation and reverse engineering
  • Etc.

Nothing is really time wasted if you're continuously learning and adding skills to your repertoire.




Where to Practice Safely

Knowledge without practice is useless. Practice without knowledge is dangerous.

– Confucius

CTF Varieties

  • Binary Exploitation / Pwn
  • Boot2Root
  • Cryptography
  • Forensics
  • Hardware
  • Mobile
  • OSINT (Open Source Intelligence)
  • PCAP Analysis
  • Reverse Engineering
  • Steganography
  • Web Exploitation
  • Etc.

Hosted Services

Pros and Cons

Pros

  • The lab and environment are already set up for you
  • Just bring your Kali VM, connect to the VPN, and get to work
  • Some services also offer a pre-made attack box for convenience

Cons

  • Most will require a fee to use extended features
  • If you use the provided attack box, you're going to miss out on valuable experience setting up and maintaining your own VM

Home Lab

How to Start Your Home Lab


How to Start Your Home Lab
In this post, I cover the perks of running a home lab, scouting for equipment, and home lab design.
  • One of the single greatest way to develop core IT skills
  • You build it, you break it, you research it, you fix it
  • It's all yours and incredibly empowering

Proxmox Security Lab


Installing Proxmox on a Laptop and Building a Cybersecurity Lab
In this project, broken up into multiple modules, you will build a comprehensive cybersecurity home lab using Proxmox VE. Upon completion, you will have an environment where you can safely practice penetration testing against a wide variety of targets, as well as detection in your SIEM.

Note: You aren't required to use a laptop, just what this project focused on

  • The Proxmox guide is going to require separate server hardware
  • Proxmox allows for much more robust designs and solutions
  • Following along with this project, you'll learn:
    • Systems and network administration, including 802.1q VLANs
    • Internal penetration testing
    • External penetration testing
    • SIEM
  • I have even documented getting GOAD setup in this environment



Developing an Attack Methodology

Boot2Root Methodology

Boot2Root is my personal favorite, since it represents the opportunity to practice full system compromise. My favorite platforms to practice against Boot2Root targets are:

Boot2Root Process

The process is typically the same no matter which platform you're practicing on:

  1. Boot up the target
  2. Get the target's IP address
  3. Run a nmap scan
  4. Begin your assessment
💡
Step 4 is usually the most difficult part for beginners, as it can be overwhelming when you're staring at your first nmap scan and trying to figure out what to pick at first.
sudo nmap -Pn -p- -T4 -sC -sV -oN nmap_scan.txt 10.10.10.25

Example nmap scan of all 65,535 ports on IP address 10.10.10.25



I Ran Nmap, Now What?

💡
My philosophy when first picking at a box is to work my way through the ports in order of least effort to most effort.

1) File Servers

Why they're good starters:

  • File servers in this context:
    • FTP
    • SMB
    • HTTP (with directory listing)
  • Can sometimes allow anonymous authentication
  • HTTP may have directory listing enabled, allowing you to inspect directories and files right in your web browser
  • Are great places to enumerate more information for later
    • Usernames, emails, passwords, etc may be saved in files

2) Web Servers

Why they're good starters:

  • Easy to assess, just open your web browser
  • Web apps may reveal additional information on web pages
  • Use tools like gobuster, feroxbuster, wfuzz, or ffuf to brute-force additional virtual hosts, directories, and pages, which may lead to further information disclosure

3) Everything Else

As you're bound to find out as you experiment more with CTFs, you will get stuck. Assuming you've done a thorough job in steps 1 & 2 above, you should begin researching other ports and services and consider pivoting.

If you're seeing other ports you're not familiar with, you'll need to be ready to do lots of research on ways to assess them.



A More Detailed Boot2Root Methodology

When you're ready:

  1. Pick an easy target on one of the platforms listed above
  2. Boot it up and follow along with the process

It's OK if your first attempt is not successful. Just keep working at it and you will get better.

My CTF Methodology
In this post, I examine the steps I take to approach a typical CTF in the form of a vulnerable target (also known as boot2root), and elaborate on steps at each phase.



Is It OK to Use Walkthroughs?

Unequivocally, yes!

ℹ️
That's not to say you should just immediately open one up the moment you encounter a struggle.

If you've been stuck for 30 minutes and you're not getting anywhere, just read enough to get unstuck and put it away until you need it again.

Don't let your pride get in the way. You can't help that you don't know something. Add the knowledge to your notes and make an effort to remember it for next time.

It is Okay to Use Writeups
The path to becoming an self-sufficient learner

Don't take my word for it. See here as well.




Ethical Hacker Roadmap

1) Core Skills Checklist

This is not an exhaustive list of everything you need to know, but it should be a good basis of building and determining your proficiency.

Systems

  • You'll need to know a variety of operating systems
    • Windows
      • Windows XP
      • Windows7
      • Windows 10
      • Windows Server
    • Linux (Debian and RedHat derivatives)
    • BSD
    • Possibly more
  • Be comfortable in the terminal
    • Bash
    • PowerShell (and CMD)
  • Know how to list the users and groups on an operating system
  • Know the file system hierarchy on various operating systems
  • Know how to get the current operating system version and kernel
  • Be familiar with the Windows Registry
  • Know how to list installed hotfixes on Windows
  • Know how to check and modify permissions and ACLs
  • Know how to check, create, and modify scheduled tasks
  • Know how to list running process and services
  • Have a basic understanding of how Active Directory functions
    • Know how to work with AD in the shell and GUI
    • Know the difference between a local and network user
    • Know the difference between a local and network group
    • Know the difference between NTLM and Kerberos authentication
    • Know how to check various AD policies and configurations
    • Know how to query DNS records
    • Know how to query LDAP

Networking

  • You don't need to be a subnetting wizard
  • Given an IP address and network mask: know how to figure out your IP address space
  • Know how to query and configure network interfaces on the command line
  • Know how to read a routing table on the host
  • Know what ARP is and how to read an ARP table
  • Know how to list listening ports on a host
  • Know how to pivot to internal networks when your target has mutliple interfaces or routes
    • Proxying
    • Tunneling
  • Know how to forward individual ports
  • Be familiar with the OSI model
  • Understand the fundamentals of TCP/IP networking

Web

  • Know the most common HTTP request methods
  • Know the most common HTTP response codes
  • Know some basic HTTP headers and how they work
  • Know the basic functionality of a web server
  • Know how to make HTTP requests from the command line
  • Know how to use Burp or some other web proxy
  • Know how DNS works to resolve hostnames to IPs
  • Know how DNS hostnames correlate to virtual hosts on a web server
  • Know how to modify your hosts file on your attack box
  • Know how to modify your DNS settings on your attack box
  • Be familiar with SQL and NoSQL databases
    • Have basic proficiency in SQL
    • Understand SQL injections

Programming

  • You don't need to be a full-time engineer or a computer science wizard
  • Have some basic proficiency in AT LEAST one of these object-oriented languages:
    • PowerShell
    • Python
  • Have a basic understanding of primitive data types in programming
  • Know how to use flow control logic (conditions)
  • Know how to use loops
  • Know how to read, create, and edit scripts and exploits
  • Know how to compile public exploits
    • 32-bit
    • 64-bit
  • Know how to read and understand error messages when your scripts fail
    • Google the error messages when you can't figure it out



2) Pentesting Methodology

Applying it to Boot2Root CTFs

⚠️
Remember, what you experience in a CTF is not a good indicator of what you'll experience on a real penetration test. But, the experience is very good for training your attacker mindset and learning about common vulnerabilities.

In other words, while pwning an application with XXE on a vulnerable box may not directly resemble real life, it can help you think outside the box when you encounter a real app in the wild that processes XML.

1. Client Visit and Scoping

  • For a CTF, think platform rules of engagement
  • Have an understanding of what you may and may not do
  • Be very clear on what your target is
  • Never engage out of scope without permission

2. Intelligence Gathering

  • Passive
    • Finding information about a target in an indirect way
    • No interaction with target systems
  • Active
    • Finding infomration about a target directly
      • Query DNS servers
      • Visiting target web sites, FTP servers, mail servers, etc

3. Threat Modeling

  • Asses the target type and determine some common weaknesses
  • For example, most web applications could use a database, which could lead to SQLi

4. Vulnerability Analysis

  • Directly related to the quality of your intel
  • Based on your interactions with the target systems
  • Check version numbers, inputs, etc
  • What do your findings reveal?

5. Exploitation

  • Use great care and rely on your intel
  • Is there an exploit for the target service?
    • Version-specific?
    • Architecture-specific (32-bit/64-bit)?
  • An incorrect exploit could crash the service

6. Post Exploitation

  • Congrats, you got a shell!
  • Get a lay of the land
  • Privilege escalation, further penetration
  • Repeat the enumeration process (steps 2 through 5)

7. Reporting

  • For a CTF, this could be a blog write-up
  • You'll want to clearly define how you exploited targets
  • Describe the vulnerability
  • Describe the exploit used and how it works
  • Describe any changes you made to an exploit
  • Describe how to prevent exploitation



3) Individual Challenges

Develop Your Attack Methodology


Get to Know the Platforms

HackTheBox

TryHackMe



Learn the Tools and Tactics

HackTheBox

TryHackMe



Work on Beginner-Friendly Boot2Root

Things to Remember

  • It is OK to look at write-ups and learn from your failures
  • Work your way up from least effort to most effort
  • Nothing wrong with looking for easy wins and low-hanging fruit
  • Look at everything and leave no stone unturned
  • Take good notes!
  • Question everything, let your curiosity go wild

HackTheBox

TryHackMe



Learn Web App Pentesting In-Depth

Web Resources



Explore Other Platforms

Target Variety

  • Get lots of practice against a wide variety of operating systems
    • Windows
      • Server 2008, 2012, 2016, etc
      • XP, 7, 10, 11
    • Linux (Debian and Red Hat derivatives)
    • BSD

Hosted Environments

  • Again, if the goal is variety, practice your skills against targets on multiple platforms:
    • HackTheBox
    • TryHackMe
    • OffSec Proving Grounds
    • Etc.
  • Different box creators will introduce different styles, which helps you not get too comfortable with one way of doing things
  • These platforms offer Linux and Windows targets
    • See below for Active Directory recommendations

Home Lab

  • My Home Lab Guides will show you how to host vulnerable home lab targets in a secure way
    • Vulnhub is simply massive, with tons of targets
      • Unfortunately, you won't find any Windows targets here
      • But, it's still an excellent place to perfect your methodology
    • HackMyVM
      • This is a newer site that allows the community to share vulnerable targets
      • They do have vulnerable Windows targets
      • Vulnhub was acquired by OffSec and hasn't seen any recent VM releases, so do check out HackMyVM for more current targets



4) Active Directory Methodology

Active Directory presents a bit more of a challenge from what you saw with individual boxes in step 3. Generally speaking, Active Directory typically involves network penetration testing:

  • Initial foothold
  • Privilege escalation
  • Credential mining
  • Pivoting
  • Etc.
ℹ️
However, there are standalone domain controllers you can practice on as well on some of the hosted platforms above.

Active Directory is just an extension of Windows fundamentals

  • Get comfortable with the Active Directory exploit chain
  • You'll need your Windows methodologies
  • And, you'll need to understand the core function of Active Directory

Attacking Active Directory

Basic Pivoting Practice


Fantastic Comprehensive Module


Practice Active Directory Networks


Cheat Sheets



5) Real-World Targets

At some point, you're going to want to move beyond CTFs and vulnerable boxes and test your skills against real-life and hardened targets on:

  • Vulnerability Disclosure Programs (VDP)
  • Bug Bounty Platforms
ℹ️
This is outside of the scope of this blog post, since we're primarily focusing on complete beginners and those with little experience.

CTFs and environments dedicated to the safe practice of ethical hacking are much better suited to this audience.

Once you've become comfortable with the skillset, workflow, and the tools involved with the trade, you should consider graduating up to VDP and / or bug bounty programs.

Open-Sourced Collection of Bug Bounty Platforms
Open-Sourced Collection of Bug Bounty Platforms Part of The @disclose_io Project.



Finding Your Niche

The learning path on this page covers a wide variety of topics in the computer security field. You should try a little bit of everything in order to find what interests you the most. That may end up being:

  • Web App
  • Hardware (IoT / Drone / Automotive / ICS)
  • Pwn (Binary Exploitation)
  • Active Directory
  • OS (Kernel / Driver / Firmware)
  • Etc.

You can't remain a generalist forever, simply for the fact that:

  • The computer security industry is constantly evolving
  • It's impossible to master all of the niches

What you should do instead is:

  • Find one niche that's very interesting to you
  • Spend 70% — 80% of your focus becoming proficient there
  • Spend the remainder of your time outside of this niche to keep things interesting



Impostor Syndrome

When it comes to any profession — not just computer security — it's perfectly normal to experience feelings of inadequacy, especially when comparing yourself to someone very skilled.

💡
Remember! When you see someone very skilled, you are seeing that person at a snapshot in time — not how long it took them to get this point.
  • The only comparison to make is your current self versus your past self
    • Do I sometimes feel inadequate when comparing myself with others? Yes!
    • Have I made progress more quickly than I thought I would? Also, yes!
  • There is a lot to learn in this field and there will always be new things to learn
  • Be kind to yourself and remember to give yourself time to relax too
    • Constantly grinding and learning will lead to burnout
    • You have a finite attention span, give yourself time to do non-study things



Seeking Help from the Community

Asking Good Questions

When seeking help from the community, there is a reasonable expectation that you are going to ask questions that reflect:

Effort

  • Is the answer easily found with a quick Google search?
  • Show that you at least tried some things
  • What did you try? What was the result?

Clarity of the Problem

  • Bad question: Anyone around for a Python question?
  • Better question: I'm working on a Python script to scan TCP ports. When I run the script, I get this error message. Here's a screenshot of the output for additional clarity.
  • Why This Works: It's clear what you're working on, what the problem is, and anyone potentially interested in helping out has a general idea of how much time they're going to need to invest in helping you out.
  • See also: https://dontasktoask.com/

Respect for Others' Time

  • Posting your question in one forum / channel and then posting again in another forum / channel five minutes later is bad etiquette
  • Be patient, people may or may not be immediately available to assist you
  • When someone helps you with your question, they are volunteering their time to help you

If you ask a question that does not reflect these principles, or ask lazy questions, most people are going to correct you, or possibly refuse to answer at all.


Mentorship

💡
Being able to ask questions of someone with more experience in the industry is invaluable; moreso that you are getting this experience at no cost to you.

Bring the Right Mindset

  • Mentorship is voluntary, no one owes this to you
  • If you are fortunate enough to receive mentorship:
    • Understand that your mentors have lives — work, family, personal interests
    • Don't take your mentor's time for granted

Mentorship Styles

Mentorship styles differ from person to person, mainly as a reflection of the mentor's personality.

  • Active: More involved in the day-to-day activities of the mentee and approaching the mentee proactively
  • Passive: Available when the mentee has questions, but may engage first if they find something that the mentee could benefit from

Finding the Right Mentor

Also, in my experience, mentors come and go. I've mentored people for days, weeks, and months at a time. Then, when they've gotten to a certain point that I'm no longer needed, I don't hear from them any longer. And, that's fine. That's the way it should be. I'm still around if they want to ask questions.


Where You Can Find Your Peers

I would encourage you to seek out a mentor or a community of your peers. It is an immense help to have others to learn from and learn with. It's not a zero-sum game, we all give and take to and from each other.




More Pages to Check Out

Free IT and Cybersecurity Resources
I will try to keep this list continuously updated with training and informational resources for different areas that could benefit students and professionals of cybersecurity and IT
CTF - 0xBEN
Capture the Flag (cybersecurity)
Offensive Cybersecurity | 0xBEN | Notes
The Secret step-by-step Guide to learn Hacking
totally clickbait. but also not clickbait. I don’t know where to start hacking, there is no guide to learn this stuff. But I hope you still have a plan now!G…
How the Best Hackers Learn Their Craft
Presenter: David Brumley, CEO, ForAllSecureDo you want to know how to build a top-ranked competitive hacking team? It’s all about the system. In sports, we u…
How to learn hacking: The (step-by-step) beginner’s bible
The truth behind learning the wonderful wizardry that is hacking. You’ll learn what it takes to learn hacking from scratch and the necessary steps to get started!
Penetration Tester Job Role Path | HTB Academy
The Penetration Tester Job Role Path is for newcomers to information security who aspire to become professional penetration testers. This path covers core se…
Introduction to Pentesting
Understand what a penetration test involves, including testing techniques and methodologies every pentester should know.
Roadmaps
Community driven roadmaps, articles and guides for developers to grow in their career.

Ethical Hacking Roadmap

Comments
More from 0xBEN
Building a Security Lab in VMware Workstation Pro
VMware

Building a Security Lab in VMware Workstation Pro

In this project, broken up into multiple modules, you will build a comprehensive cybersecurity home lab using VMware Workstation Pro. Upon completion, you will have an environment where you can safely practice penetration testing against a wide variety of targets, as well as detection in your SIEM.
My CTF Methodology
CTF

My CTF Methodology

In this post, I examine the steps I take to approach a typical CTF in the form of a vulnerable target (also known as boot2root), and elaborate on steps at each phase.
Installing Proxmox on a Laptop and Building a Cybersecurity Lab
Proxmox

Installing Proxmox on a Laptop and Building a Cybersecurity Lab

In this project, broken up into multiple modules, you will build a comprehensive cybersecurity home lab using Proxmox VE. Upon completion, you will have an environment where you can safely practice penetration testing against a wide variety of targets, as well as detection in your SIEM.
Table of Contents
Great! You’ve successfully signed up.
Welcome back! You've successfully signed in.
You've successfully subscribed to 0xBEN.
Your link has expired.
Success! Check your email for magic link to sign-in.
Success! Your billing info has been updated.
Your billing was not updated.