Leader in the cybersecurity training sector.

C)PTC: Certified Penetration Testing Consultant

Target group

  • IS Security Officers
  • Cybersecurity Managers/Administrators
  • Penetration Testers
  • Ethical Hackers 
  • Auditors

Description

The Certified Penetration Testing Consultant, C)PTC , course is designed for IT Security Professionals and IT Network Administrators who are interested in taking an in-depth look into specific penetration testing and techniques used against operating systems. This course will teach you the necessary skills to work with a penetration testing team, the exploitation process, and how to create a buffer overflow against programs running on Windows and Linux while subverting features such as DEP and ASLR.

Program

  • Project Management
  • Pentesting Metrics
  • Team Roles, Responsibilities and Benefits

Lab Exercise – Skills Assessment

  • NMAP Basics
  • NMAP Automation
  • NMAP Report Documentation

Lab Exercise – Automation Breakdown

  • Purpose
  • Countermeasures
  • Evasion
  • Precision Strike
  • Customized Exploitation
  • Tailored Exploits
  • Zero Day Angle
  • Example Avenues of Attack
  • Overall Objective of Exploitation
  • Vulnserver
  • Spike Fuzzing Setup
  • Fuzzing a TCP Application
  • Custom Fuzzing Script

Lab Exercise – Fuzzing with Spike

  • Exploit-DB
  • Immunity Debugger
  • Python
  • Shellcode

Lab Exercise – Let’s Crash and Callback

  • Debugger
  • Vulnerability Research
  • Control EIP, Control the Crash
  • JMP ESP Instruction
  • Finding the Offset
  • Code Execution and Shellcode
  • Does the Exploit Work? Lab Exercise – MiniShare for the Win
  • Web Applications
  • OWASP Top 10 – 2017
  • Zap
  • Scapy
  • Exploiting the Stack on Linux

Lab Exercise – Stack Overflow. Did we get root?

  • Stack Smashing to the Extreme

Lab Exercise – Defeat Me and Lookout ASLR

  • Introduction to Windows Exploit Protection
  • Structured Exception Handling
  • Data Execution Prevention (DEP)
  • SafeSEH/SEHOP
  • Vulnerable Server Setup
  • Time to Test it Out
  • “Vulnserver” meets Immunity

VulnServer Demo Lab Exercise – Time to overwrite SEH and ASLR

  • Lab 1 – Skills Assessment
  • Lab 2 – Automation Breakdown
  • Lab 3 – Fuzzing with Spike
  • Lab 4 – Let’s Crash and Callback
  • Lab 5 – MiniShare for the Win
  • Lab 6 – Stack Overflow: Did we get root?
  • Lab 7 – Defeat Me and Lookout ASLR
  • Lab 8 – Time to Overwrite SHE and ASLR

Goal

Upon completion, the Certified Penetration Testing Consultant, C)PTC, candidate will have solid knowledge of testing and reporting proceedures which will prepare them for upper management roles within a cybersecurity system. They will be able to competently take the C)PTC exam.

Prerequisites

  • Mile2 C)PEH and C)PTE or equivalent knowledge 
  • 2 years of experience in Networking Technologies 
  • Sound Knowledge of TCP/IP 
  • Computer Hardware Knowledge

Cost

3499 €

We use cookies to improve your experience. See our Cookie policy and our Privacy policy.

Information request

I would like more information about your training courses

ACG Cyberacademy collects and uses the data provided via this form in order to process your registration requests. Fields marked with an * are required. The other information enables us to optimise the follow-up of your request and the quality of our customer relations.