# CEH Practical Guide

## CEH Practical Guide

- [Certified Ethical Hacker CEH V13 Practical Guide: Complete Study Resources & Tips](https://ceh-practical.cavementech.com/certified-ethical-hacker-ceh-v13-practical-guide-complete-study-resources-and-tips.md): Discover comprehensive resources and expert tips to pass the Certified Ethical Hacker (CEH) Practical exam. Learn tools, techniques, and step-by-step instructions to ace the CEH Practical exam.
- [Module 2. Footprinting and Reconnaissance](https://ceh-practical.cavementech.com/module-2.-footprinting-and-reconnaissance.md)
- [1. Footprinting through  Search Engines](https://ceh-practical.cavementech.com/module-2.-footprinting-and-reconnaissance/1.-footprinting-through-search-engines.md): Through the effective use of search engines, you can extract critical information about a target organization such as technology platforms, employee details, login pages, intranet portals etc
- [2. Perform Footprinting Through Internet Research Services](https://ceh-practical.cavementech.com/module-2.-footprinting-and-reconnaissance/2.-perform-footprinting-through-internet-research-services.md): As a professional ethical hacker or pen tester, you should be able to extract a variety of information about your target organization from Internet research services.
- [3. Footprinting through Social Networking sites](https://ceh-practical.cavementech.com/module-2.-footprinting-and-reconnaissance/3.-footprinting-through-social-networking-sites.md): By footprinting through social networking sites, you can extract personal information such as name, position, organization name, current location, and educational qualifications.
- [4. Website Footprinting](https://ceh-practical.cavementech.com/module-2.-footprinting-and-reconnaissance/4.-website-footprinting.md)
- [5. WHOIS Footprinting](https://ceh-practical.cavementech.com/module-2.-footprinting-and-reconnaissance/5.-whois-footprinting.md): whois protocol runs on port 43.Regional internet Registries keep records of all data
- [6. DNS Footprinting](https://ceh-practical.cavementech.com/module-2.-footprinting-and-reconnaissance/6.-dns-footprinting.md): You need to perform DNS footprinting to gather information about DNS servers, DNS records, and types of servers used by the target organization. DNS zone data etc
- [7. Network footprinting](https://ceh-practical.cavementech.com/module-2.-footprinting-and-reconnaissance/7.-network-footprinting.md): Network footprinting is carried out to gather the network-related information of a target organization such as network range, traceroute, TTL values, etc
- [8. Email Footprinting](https://ceh-practical.cavementech.com/module-2.-footprinting-and-reconnaissance/8.-email-footprinting.md): Email tracking allows you to collect information such as IP addresses, mail servers, OS details, geolocation, information about service providers involved in sending the mail etc
- [9. Footprinting using footprinting tools](https://ceh-practical.cavementech.com/module-2.-footprinting-and-reconnaissance/9.-footprinting-using-footprinting-tools.md): Footprinting tools are used to collect basic information about the target systems in order to exploit them.
- [10. Perform Footprinting using AI](https://ceh-practical.cavementech.com/module-2.-footprinting-and-reconnaissance/10.-perform-footprinting-using-ai.md): Footprinting using AI accelerates the reconnaissance process by automating data collection and analysis, allowing security professionals to uncover vulnerabilities more efficiently.
- [Module 3. Scanning Networks](https://ceh-practical.cavementech.com/module-3.-scanning-networks.md)
- [1. Host Discovery](https://ceh-practical.cavementech.com/module-3.-scanning-networks/1.-host-discovery.md)
- [2. Port and Service Discovery](https://ceh-practical.cavementech.com/module-3.-scanning-networks/2.-port-and-service-discovery.md): The next step after discovering active hosts in the target network is to scan for open ports and services running on the target IP addresses
- [3. Perform OS Discovery](https://ceh-practical.cavementech.com/module-3.-scanning-networks/3.-perform-os-discovery.md): Identifying the OS used on the target system allows you to assess the system’s vulnerabilities and the exploits that might work on the system to perform additional attacks.
- [4. Scan beyond Firewalls and IDS](https://ceh-practical.cavementech.com/module-3.-scanning-networks/4.-scan-beyond-firewalls-and-ids.md): IDSs and firewalls are efficient security mechanisms; however, they still have some security limitations. You may be required to launch attacks to exploit these limitations using various IDS/firewall
- [5.  Network scanning using various tools](https://ceh-practical.cavementech.com/module-3.-scanning-networks/5.-network-scanning-using-various-tools.md)
- [6. Perform Network Scanning using AI](https://ceh-practical.cavementech.com/module-3.-scanning-networks/6.-perform-network-scanning-using-ai.md): Network scanning using AI enhances cybersecurity by automating the detection of vulnerabilities and threats.
- [Module 4. Enumeration](https://ceh-practical.cavementech.com/module-4.-enumeration.md): Enumeration is the process of extracting usernames, machine names, network resources, shares, and services from a system or network.
- [1. Netbios Enumeration (Port 137)](https://ceh-practical.cavementech.com/module-4.-enumeration/1.-netbios-enumeration-port-137.md): used for file and printer sharing. port 137. Netbios name 16 characters. 15 chars define name and 16th character type of service. Port 137 is utilized by the NetBIOS Name service.
- [2. SNMP Enumeration (Port 161,162)](https://ceh-practical.cavementech.com/module-4.-enumeration/2.-snmp-enumeration-port-161-162.md): Use SNMP (application layer protocol) to obtain a list of user accounts and devices on system
- [3. LDAP Enumeration (Port 389)](https://ceh-practical.cavementech.com/module-4.-enumeration/3.-ldap-enumeration-port-389.md): Gather information about usernames, addresses,departmental details, servers etc
- [4. NFS Enumeration](https://ceh-practical.cavementech.com/module-4.-enumeration/4.-nfs-enumeration.md): port 111 ans 2049(tcp)
- [5. DNS Enumeration](https://ceh-practical.cavementech.com/module-4.-enumeration/5.-dns-enumeration.md): DNS enumeration techniques are used to obtain information about the DNS servers and network infrastructure of the target organization.
- [6. SMTP Enumeration](https://ceh-practical.cavementech.com/module-4.-enumeration/6.-smtp-enumeration.md): SMTP enumeration is performed to obtain a list of valid users, delivery addresses, message recipients on an SMTP server. Ports 25,2525 or 587.
- [7. RPC, SMB and FTP Enumeration](https://ceh-practical.cavementech.com/module-4.-enumeration/7.-rpc-smb-and-ftp-enumeration.md)
- [8. Enumeration using various tools](https://ceh-practical.cavementech.com/module-4.-enumeration/8.-enumeration-using-various-tools.md): As an ethical hacker, you should use a range of tools to find as much information as possible about the target network’s systems.
- [9. Perform Enumeration using AI](https://ceh-practical.cavementech.com/module-4.-enumeration/9.-perform-enumeration-using-ai.md): Artificial Intelligence (AI) can significantly enhance the enumeration process by automating tasks, analyzing large datasets, and identifying patterns that might be missed by traditional tools.
- [Module 5. Vulnerability Assessment](https://ceh-practical.cavementech.com/module-5.-vulnerability-assessment.md)
- [1. Perform Vulnerability Research with Vulnerability Scoring Systems and Databases](https://ceh-practical.cavementech.com/module-5.-vulnerability-assessment/1.-perform-vulnerability-research-with-vulnerability-scoring-systems-and-databases.md): Vulnerability research provides awareness of advanced techniques to identify flaws or loopholes in the software that could be exploited.
- [2. Perform Vulnerability Assessment using Various Vulnerability Assessment Tools](https://ceh-practical.cavementech.com/module-5.-vulnerability-assessment/2.-perform-vulnerability-assessment-using-various-vulnerability-assessment-tools.md): A vulnerability assessment is an in-depth examination of the ability of a system or application, including current security procedures and controls, to withstand exploitation.
- [3. Perform Vulnerability Analysis using AI](https://ceh-practical.cavementech.com/module-5.-vulnerability-assessment/3.-perform-vulnerability-analysis-using-ai.md): Vulnerability Analysis with AI employs advanced algorithms to unearth hidden security flaws in networks. AI-driven tools extract comprehensive data, prioritize risks, and fortify defenses.
- [Module 6. System Hacking](https://ceh-practical.cavementech.com/module-6.-system-hacking.md)
- [1. Gain access to the system](https://ceh-practical.cavementech.com/module-6.-system-hacking/1.-gain-access-to-the-system.md)
- [2. Privilege Escalation](https://ceh-practical.cavementech.com/module-6.-system-hacking/2.-privilege-escalation.md): Privilege Escalation techniques to learn for CEH Practical
- [3. Maintain Remote Access and Hide Malicious Activities](https://ceh-practical.cavementech.com/module-6.-system-hacking/3.-maintain-remote-access-and-hide-malicious-activities.md): Remote code execution techniques are often performed after initially compromising a system and further expanding access to remote systems present on the target network.
- [4. Clear Logs to hide the Evidence of Compromise](https://ceh-practical.cavementech.com/module-6.-system-hacking/4.-clear-logs-to-hide-the-evidence-of-compromise.md): To remain undetected, the intruders need to erase all evidence of security compromise from the system.
- [5. Active Directory (AD) Attacks](https://ceh-practical.cavementech.com/module-6.-system-hacking/5.-active-directory-ad-attacks.md): The module has recently been added in CEH V13 Practical
- [Module 7. Malware Threats](https://ceh-practical.cavementech.com/module-7.-malware-threats.md): Malware is malicious software that damages or disables computer systems and gives limited or full control of those systems to the malware creator for theft or fraud.
- [1. Gain access to systems with Trojans](https://ceh-practical.cavementech.com/module-7.-malware-threats/1.-gain-access-to-systems-with-trojans.md): The lab tasks in this exercise demonstrate how easily hackers can gain access to the target systems in the organization and create a covert communication channel for transferring sensitive data.
- [2. Infect the system using Virus](https://ceh-practical.cavementech.com/module-7.-malware-threats/2.-infect-the-system-using-virus.md): Viruses are the scourges of modern computing. Computer viruses have the potential to wreak havoc on both business and personal computers.
- [3. Perform Static Malware Analysis](https://ceh-practical.cavementech.com/module-7.-malware-threats/3.-perform-static-malware-analysis.md): Static Malware Analysis, also known as code analysis, involves going through the executable binary code without executing it to gain a better understanding of the malware and its purpose.
- [4. Perform Dynamic Malware Analysis](https://ceh-practical.cavementech.com/module-7.-malware-threats/4.-perform-dynamic-malware-analysis.md): Dynamic Malware Analysis, also known as behavioral analysis, involves executing malware code to learn how it interacts with the host system and its impact after infecting the system.
- [Module 8. Sniffing](https://ceh-practical.cavementech.com/module-8.-sniffing.md): Packet sniffing is a process of monitoring and capturing all data packets passing through a given network using a software application or hardware device.
- [1. Perform Active Sniffing](https://ceh-practical.cavementech.com/module-8.-sniffing/1.-perform-active-sniffing.md): In active sniffing, ARP traffic is actively injected into a LAN to sniff around a switched network and capture its traffic.
- [2. Perform Network Sniffing using Various Sniffing Tools](https://ceh-practical.cavementech.com/module-8.-sniffing/2.-perform-network-sniffing-using-various-sniffing-tools.md): An attacker can use sniffing tools such as Wireshark to sniff the traffic flowing between the client and the server.
- [3. Detect Network Sniffing](https://ceh-practical.cavementech.com/module-8.-sniffing/3.-detect-network-sniffing.md): A professional ethical hacker or pen tester should be able to detect network sniffing in the network.
- [Module 9. Social Engineering](https://ceh-practical.cavementech.com/module-9.-social-engineering.md)
- [1. Perform Social Engineering using tools](https://ceh-practical.cavementech.com/module-9.-social-engineering/1.-perform-social-engineering-using-tools.md): In a social engineering test, you should try to trick the user into disclosing personal information such as credit card numbers, bank account details etx
- [2. Detect a Phishing attack](https://ceh-practical.cavementech.com/module-9.-social-engineering/2.-detect-a-phishing-attack.md): In this lab, you will learn how to detect phishing attempts using various phishing detection tools.
- [3. Audit Organization security for phishing attacks](https://ceh-practical.cavementech.com/module-9.-social-engineering/3.-audit-organization-security-for-phishing-attacks.md)
- [4. Social Engineering using AI](https://ceh-practical.cavementech.com/module-9.-social-engineering/4.-social-engineering-using-ai.md): he AI automates the creation of realistic phishing emails, convincing pretext scenarios, and strategic baiting tactics.
- [Module 10. Denial of Service](https://ceh-practical.cavementech.com/module-10.-denial-of-service.md): DoS and DDoS attacks exploit vulnerabilities in the implementation of TCP/IP model protocol or bugs in a specific OS.
- [1. Perform DOS and DDOS with various techniques](https://ceh-practical.cavementech.com/module-10.-denial-of-service/1.-perform-dos-and-ddos-with-various-techniques.md): As an expert ethical hacker or pen tester, you must have the required knowledge to perform DoS and DDoS attacks to be able to test systems in the target network.
- [2. Detect and Protect DOS and DDOS attacks](https://ceh-practical.cavementech.com/module-10.-denial-of-service/2.-detect-and-protect-dos-and-ddos-attacks.md)
- [Module 11. Session Hijacking](https://ceh-practical.cavementech.com/module-11.-session-hijacking.md): A session hijacking attack refers to the exploitation of a session token-generation mechanism or token security controls that enables an attacker to establish an unauthorized connection with a target
- [1. Perform Session Hijacking](https://ceh-practical.cavementech.com/module-11.-session-hijacking/1.-perform-session-hijacking.md): Session hijacking allows an attacker to take over an active session by bypassing the authentication process.
- [2. Detect  Session Hijacking](https://ceh-practical.cavementech.com/module-11.-session-hijacking/2.-detect-session-hijacking.md): Fortunately, there are various tools available that can help you to detect session hijacking attacks such as packet sniffers, IDSs, and SIEMs.
- [Module 12. Evading IDS, antivirus and Honeypots](https://ceh-practical.cavementech.com/module-12.-evading-ids-antivirus-and-honeypots.md)
- [1. Intrusion Detection using various tools](https://ceh-practical.cavementech.com/module-12.-evading-ids-antivirus-and-honeypots/1.-intrusion-detection-using-various-tools.md): The goal of the Intrusion Detection Analyst is to find possible attacks against a network
- [2. Evade Firewall using Evasion Techniques](https://ceh-practical.cavementech.com/module-12.-evading-ids-antivirus-and-honeypots/2.-evade-firewall-using-evasion-techniques.md)
- [Module 13. Hacking Web Servers](https://ceh-practical.cavementech.com/module-13.-hacking-web-servers.md)
- [1. Footprint the Webserver](https://ceh-practical.cavementech.com/module-13.-hacking-web-servers/1.-footprint-the-webserver.md): An ethical hacker or penetration tester must perform footprinting to detect the loopholes in the web server of the target organization.
- [2. Perform Webserver attacks](https://ceh-practical.cavementech.com/module-13.-hacking-web-servers/2.-perform-webserver-attacks.md): An ethical hacker or pen tester must test the company’s web server against various attacks and other vulnerabilities
- [3. Perform a Web Server Hacking using AI](https://ceh-practical.cavementech.com/module-13.-hacking-web-servers/3.-perform-a-web-server-hacking-using-ai.md): AI-powered tools and techniques provide ethical hackers with enhanced capabilities to discover vulnerabilities, automate attacks, and strengthen defenses.
- [Module 14. Hacking Web Applications](https://ceh-practical.cavementech.com/module-14.-hacking-web-applications.md)
- [1. Footprint the Web Infrastructure](https://ceh-practical.cavementech.com/module-14.-hacking-web-applications/1.-footprint-the-web-infrastructure.md): Web infrastructure footprinting helps you to identify vulnerable web applications, understand how they connect with peers and the technologies they use, and find vulnerabilities.
- [2. Perform Web applications Attacks](https://ceh-practical.cavementech.com/module-14.-hacking-web-applications/2.-perform-web-applications-attacks.md): An ethical hacker or pen tester must test their company’s web application against various attacks and other vulnerabilities.
- [3. Detect Web Vulnerabilities using using web application security tools](https://ceh-practical.cavementech.com/module-14.-hacking-web-applications/3.-detect-web-vulnerabilities-using-using-web-application-security-tools.md): The tasks in this lab will assist in discovering the underlying vulnerabilities and flaws in the target web application.
- [4. Perform Web Application Hacking using AI](https://ceh-practical.cavementech.com/module-14.-hacking-web-applications/4.-perform-web-application-hacking-using-ai.md): Hacking web applications using AI involves leveraging advanced machine learning techniques to exploit vulnerabilities in web applications.
- [Module 15. SQL Injection](https://ceh-practical.cavementech.com/module-15.-sql-injection.md)
- [1. Perform SQL Injection attacks](https://ceh-practical.cavementech.com/module-15.-sql-injection/1.-perform-sql-injection-attacks.md): SQL injection attacks are performed on SQL databases with weak codes that do not adequately filter, use strong typing, or correctly execute user input.
- [2.  Detect SQL Vulnerabilities using different tool](https://ceh-practical.cavementech.com/module-15.-sql-injection/2.-detect-sql-vulnerabilities-using-different-tool.md): In this lab, you will learn how to test for SQL injection vulnerabilities using various other SQL injection detection tools.
- [3. Perform SQL Injection using AI](https://ceh-practical.cavementech.com/module-15.-sql-injection/3.-perform-sql-injection-using-ai.md): As an ethical hacker or penetration tester, you must have a sound knowledge on the integration of AI technology in identifying and exploiting SQL injection vulnerabilities
- [Module 16. Hacking Wireless Networks](https://ceh-practical.cavementech.com/module-16.-hacking-wireless-networks.md)
- [1.  Footprint a wireless Network](https://ceh-practical.cavementech.com/module-16.-hacking-wireless-networks/1.-footprint-a-wireless-network.md)
- [2. Perform Wireless Traffic Analysis](https://ceh-practical.cavementech.com/module-16.-hacking-wireless-networks/2.-perform-wireless-traffic-analysis.md)
- [3. Perform  Wireless Attacks](https://ceh-practical.cavementech.com/module-16.-hacking-wireless-networks/3.-perform-wireless-attacks.md): As an ethical hacker and pen tester of an organization, you must test its wireless security, exploit WPA2 flaws, and crack the network’s access point keys.
- [Module 17. Hacking Mobile Platforms](https://ceh-practical.cavementech.com/module-17.-hacking-mobile-platforms.md)
- [1. Hack Android Devices](https://ceh-practical.cavementech.com/module-17.-hacking-mobile-platforms/1.-hack-android-devices.md): As a professional ethical hacker or pen tester, you should be familiar with all the hacking tools, exploits, and payloads to perform various tests mobile devices connected to a network.
- [2. Secure Android Device](https://ceh-practical.cavementech.com/module-17.-hacking-mobile-platforms/2.-secure-android-device.md): Like personal computers, mobile devices store sensitive data and are susceptible to various threats. Therefore, they should be properly secured.
- [Module 18. IoT and OT Hacking](https://ceh-practical.cavementech.com/module-18.-iot-and-ot-hacking.md)
- [1. Footprinting IoT and OT devices](https://ceh-practical.cavementech.com/module-18.-iot-and-ot-hacking/1.-footprinting-iot-and-ot-devices.md): As a professional ethical hacker or pen tester, your first step is to gather maximum information about the target IoT and OT devices by performing footprinting
- [2. Capture and Analyze IoT traffic](https://ceh-practical.cavementech.com/module-18.-iot-and-ot-hacking/2.-capture-and-analyze-iot-traffic.md): Using various tools and techniques, you can capture the valuable data flowing between the IoT devices
- [3. Perform IoT Attacks](https://ceh-practical.cavementech.com/module-18.-iot-and-ot-hacking/3.-perform-iot-attacks.md): Most IoT devices come with security issues such as the absence of a proper authentication mechanism or the use of default credentials or absence of a lock-out mechanism
- [Module 19. Cloud Computing](https://ceh-practical.cavementech.com/module-19.-cloud-computing.md)
- [1. Perform Reconnaissance on Azure](https://ceh-practical.cavementech.com/module-19.-cloud-computing/1.-perform-reconnaissance-on-azure.md): As an ethical hacker, you need to know how to utilize PowerShell command-based scripting tools for conducting reconnaissance and gathering information.
- [2. S3 Bucket Enumeration](https://ceh-practical.cavementech.com/module-19.-cloud-computing/2.-s3-bucket-enumeration.md)
- [3. Exploit S3 buckets](https://ceh-practical.cavementech.com/module-19.-cloud-computing/3.-exploit-s3-buckets.md): Using various techniques, you can exploit misconfigurations in bucket implementation and breach the security mechanism to compromise data privacy
- [4. Perform Privilege Escalation to Gain Higher Privileges](https://ceh-practical.cavementech.com/module-19.-cloud-computing/4.-perform-privilege-escalation-to-gain-higher-privileges.md): In the cloud platform, owing to mistakes in the access allocation system such as coding errors and design flaws, a customer, a third party, or an employee can obtain higher access rights than those th
- [5. Perform Vulnerability Assessment on Docker Images](https://ceh-practical.cavementech.com/module-19.-cloud-computing/5.-perform-vulnerability-assessment-on-docker-images.md): By leveraging tools like Trivy, you can analyze Docker images, identifying and exploiting vulnerabilities
- [Module 20. Cryptography](https://ceh-practical.cavementech.com/module-20.-cryptography.md)
- [1. Encrypt the Information using Various Cryptography Tools](https://ceh-practical.cavementech.com/module-20.-cryptography/1.-encrypt-the-information-using-various-cryptography-tools.md)
- [2. Create a self signed Certificate](https://ceh-practical.cavementech.com/module-20.-cryptography/2.-create-a-self-signed-certificate.md): In cryptography and computer security, a self-signed certificate is an identity certificate signed by the same entity whose identity it verifies.
- [3. Perform Disk Encryption](https://ceh-practical.cavementech.com/module-20.-cryptography/3.-perform-disk-encryption.md): Disk encryption is a technology that protects the confidentiality of the data stored on a disk by converting it into an unreadable code using disk encryption software or hardware.
- [4. Cryptanalysis Using different tools](https://ceh-practical.cavementech.com/module-20.-cryptography/4.-cryptanalysis-using-different-tools.md)
- [5. Perform Cryptography using AI](https://ceh-practical.cavementech.com/module-20.-cryptography/5.-perform-cryptography-using-ai.md): AI-enhanced cryptography empowers ethical hackers with advanced tools for securing data through complex algorithms and neural networks.
- [Tips and Tricks for CEH Practical exam](https://ceh-practical.cavementech.com/tips-and-tricks-for-ceh-practical-exam.md)
- [Additional Resources](https://ceh-practical.cavementech.com/additional-resources.md)
