https://www.youtube.com/watch?v=wFtrPsdnLbU
https://www.eccouncil.org/campaigns/ceh/ceh-practical-scholarship-2021/#Apply_now
Topics covered in exam:-
1. Scanning and Enumeration
2. Footprinting and Reconnaissance
3. Cracking
4. Network Analysis
5. System Exploitation
6. Web Application Exploitation
7. Cryptography
8. Steganography
Important Tools:-
1. Nmap
2. Hydra
3. Sqlmap
4. John / Hashcat
5. Metasploit / Netcat
6. Wireshark or Tcpdump
7. OpenStego
8. Snow
9. Veracrypt
10. HashCalc
11. CrypTool
12. Burpsuite
Important Vulnerabilities:-
SQL Injection labs:-
https://tryhackme.com/room/dailybugle
https://tryhackme.com/room/revenge
File Uploading Vulnerability to RCE Video:-
https://www.youtube.com/watch?v=OZ9Bo6Ipojw
Command Injection labs:-
https://portswigger.net/web-security/os-command-injection
IDOR labs:-
https://portswigger.net/web-security/access-control/lab-insecure-direct-object-references
Must Practice:-
https://tryhackme.com/room/owaspjuiceshop
CEH-Practical-Guide:-
https://github.com/CyberSecurityUP/Guide-CEH-Practical-Master
ILabs videos:-
https://www.youtube.com/watch?v=b2YrqpeklFw&list=PLrrgFyE6PtlaCixUxJPM0Y9Peye6iCewH&index=18
Repo For Notes:-
https://blog.adithyanak.com/ceh-practical-notes
https://github.com/ziyishen97/CEH-v11-Practical/blob/main/Practical%20Exam%20Notes.md
Wireshark labs:-
https://tryhackme.com/room/overpass2hacked
https://tryhackme.com/room/smaggrotto
https://tryhackme.com/room/h4cked
https://tryhackme.com/room/tshark
https://shishirsubedi.com.np/thm/misguided_ghosts/
Hydra labs:-
https://tryhackme.com/room/hydra
Cracking labs:-
https://tryhackme.com/room/crackthehash
https://tryhackme.com/room/crackthehashlevel2
Cryptography:-
https://www.hackthebox.eu/home/challenges/Crypto
Steganography:-
https://www.hackthebox.eu/home/challenges/Stego
Brutforce:-
https://www.youtube.com/watch?v=fdb3U2EFLzo
Example Question Types (I can't disclose real questions for NDA thing)
-
Find service and detect the OS?
-
What is the password for user X of the FTP server?
-
Which user X's phone number?
-
What is the password hidden in the .jpeg file?
-
What is the hidden message in the .txt file?
-
Find X from .pcap file
-
Crack X user hash