Sign in

← All paths

Penetration Tester — career path

StationX Intermediate

The offensive career: find and prove weaknesses before an attacker does. Security+ as the baseline, then the hacking courses employers look for, then PenTest+ to certify it.

The path

Step 1 — Security foundation

The baseline every offensive job advert asks for.

follows a certification path

Learn

Step 2 — Hacking foundations

The attacker mindset, the toolkit and a first full hack, end to end.

2 courses

Learn

  • CourseEthical Hacking - Hands-On Training - Part I 🔒 StationX Unlimited
    20 sections · 74 lectures
    1. Course Overview 1
    2. Building Your Virtual Lab Environment Using VirtualBox 8
    3. Section: Troubleshooting VirtualBox 4
    4. Section: Passive Reconnaissance 6
    5. Active Scanning with Nmap 8
    6. Section: Scanning for Vulnerabilities Using Nessus 3
    7. Scanning for Vulnerabilities Using OpenVAS 2
    8. Section: Exploiting Microsoft Windows 3
    9. Section: MSFVENOM 5
    10. Section: Exploiting Linux 5
    11. Section: Social Engineering 1
    12. Section: BASH Scripting for Pentesters 2
    13. Section: Password Cracking 3
    14. Section: Pentesting Wireless Networks 5
    15. Section: Web Based Application Attacks 4
    16. Section: Browser Exploitation Framework (BeEF) 2
    17. Section: Remaining Anonymous 3
    18. Capture the Flag Walkthrough - Mr. Robot 4
    19. Capture the Flag Walkthrough – Stapler 4
    20. Audio Version of Training 1
  • CourseLearn Ethical Hacking From Scratch 🔒 StationX Unlimited
    27 sections · 146 lectures
    1. Training Overview 2
    2. 1. Course Introduction 3
    3. 2. Setting up a Hacking Lab 6
    4. 3. Linux Basics 3
    5. 4. Network Hacking 5
    6. 5. Network Hacking - Pre Connection Attacks 4
    7. 6. Network Hacking - Gaining Access - WEP Cracking 5
    8. 7. Network Hacking - Gaining Access - WPA / WPA2 Cracking 5
    9. 8. Network Hacking - Gaining Access - Security 2
    10. 9. Network Hacking - Post Connection Attacks 1
    11. 10. Network Hacking - Post-Connection Attacks - Information Gathering 5
    12. 11. Network Hacking - Post Connection Attacks - MITM Attacks 16
    13. 12. Network Hacking - Detection & Security 4
    14. 13. Gaining Access To Computers 1
    15. 14. Gaining Access - Server Side Attacks 9
    16. 15. Gaining Access - Client Side Attacks 6
    17. 16. Gaining Access - Client Side Attacks - Social Engineering 20
    18. 17. Gaining Access - Hacking Outside The Local Network 4
    19. 18. Post Exploitation 7
    20. 19. Website Hacking 2
    21. 20. Website Hacking - Information Gathering 7
    22. 21. Website Hacking - File Upload, Code Execution & File Inclusion Vulns 6
    23. 22. Website Hacking - SQL Injection Vulnerabilities 11
    24. 23. Website Hacking - Cross Site Scripting (XSS) Vulnerabilities 5
    25. 24. Website Hacking - Discovering Vulnerabilities Automatically 5
    26. 25. Bonus Section 1
    27. Audio Version of Training 1

Step 3 — Network attacks

Scan, enumerate and break into networks, wired and wireless.

2 courses

Learn

  • CourseThe Complete Nmap Ethical Hacking Course: Network Security Assessment 🔒 StationX Unlimited
    15 sections · 57 lectures
    1. Training Overview 2
    2. Introduction to the Course 4
    3. Nmap Cheat Sheet 1
    4. How to Install Nmap 3
    5. Nmap Basics, Target Specification & Port States 5
    6. Nmap Discovery and Ping Scanning 5
    7. Nmap Scan Techniques 5
    8. Nmap Port Specification, Service, Version & OS Detection 4
    9. Nmap Scripting Engine (NSE) 6
    10. Nmap Performance, Firewall and IDS Evasion 4
    11. Nmap Output and Extras 4
    12. Zenmap 4
    13. How Criminal Black Hats Use Nmap with Hacking Infrastructures 2
    14. Wrap up 2
    15. Preview 6
  • CourseLearn Network Hacking From Scratch (WiFi & Wired) 🔒 StationX Unlimited
    15 sections · 69 lectures
    1. Training Overview 2
    2. Section 0. 1
    3. Section 1. Preparation - Setting Up The Lab 8
    4. Section 2. Network Basics 4
    5. Section 3. Pre-Connection Attacks 4
    6. Section 4. Gaining Access 1
    7. Section 5. Gaining Access - WEP Cracking 6
    8. Section 6. Gaining Access - WPA/WPA2 Cracking 8
    9. Section 7. Gaining Access - Security & Mitigation 2
    10. Section 8. Post Connection Attacks 3
    11. Section 9. Post Connection Attacks - Information Gathering 3
    12. Section 10. Post Connections Attacks - Man In The Middle Attacks (MITM) 17
    13. Section 11. Post Connection Attacks - Gaining Full Control Over Devices On The Same Network 7
    14. Section 12. ARP Poisonning Detection & Security 2
    15. Audio Version of Training 1

Step 4 — Web application attacks

Work the OWASP Top Ten with Burp in hand.

2 courses

Learn

  • CourseLearn Website Hacking / Penetration Testing From Scratch 🔒 StationX Unlimited
    21 sections · 103 lectures
    1. Training Overview 2
    2. Section 0: Course Introduction 1
    3. Section 1: Preparation - Creating a Hacking Lab 6
    4. Section 2. Preparation - Linux Basics 4
    5. Section 3. Website Basics 2
    6. Section 4. Information Gathering 9
    7. Section 5. File Upload Vulnerabilities 6
    8. Section 6. Code Execution Vulnerabilities 3
    9. Section 7. Local File Inclusion Vulnerabilities (LFI) 2
    10. Section 8. Remote File Inclusion Vulnerabilities (RFI) 4
    11. Section 9. SQL Injection Vulnerabilities 2
    12. Section 10. SQL Injection Vulnerabilities - SQLi In Login Pages 4
    13. Section 11. SQL injection Vulnerabilities - Extracting Data From The Database 4
    14. Section 12. SQL injection Vulnerabilities - Advanced Exploitation 11
    15. Section 13. XSS Vulnerabilities 6
    16. Section 14. XSS Vulnerabilities - Exploitation 14
    17. Section 15. Insecure Session Management 5
    18. Section 16. Brute Force & Dictionary Attacks 3
    19. Section 17. Discovering Vulnerabilities Automatically Using Owasp ZAP 2
    20. Section 18. Post Exploitation 12
    21. Audio Version of Training 1
  • CourseLearn Burp Suite, the Nr. 1 Web Hacking Tool 🔒 StationX Unlimited
    4 sections · 12 lectures
    1. Training Overview 2
    2. Setup 3
    3. The Tool 6
    4. Congrats! 1

Step 5 — Privilege escalation and Active Directory

Go from a foothold to domain admin — the part interviews probe hardest.

2 courses · 24 labs

Learn

  • CourseThe Complete Pentesting & Privilege Escalation Course 🔒 StationX Unlimited
    10 sections · 63 lectures
    1. Training Overview 2
    2. Introduction 2
    3. Bandit 14
    4. Wakanda 5
    5. Mr. Robot 6
    6. Fristi Leaks 5
    7. Linux Privilege Escalation 14
    8. Windows Privilege Escalation 10
    9. Arctic 4
    10. Closing 1
  • CourseActive Directory with Windows Server 2016 🔒 StationX Unlimited
    7 sections · 62 lectures
    1. Training Overview 2
    2. Introduction 1
    3. Install and Configure AD DS 16
    4. Managing and Maintaining AD DS 16
    5. Create and Manage Group Policy 10
    6. Implement AD Certificate Services 8
    7. Implement Identity Federation and Access Solutions 9

Step 6 — Scripting for testers

Write the tools instead of waiting for them.

1 course

Learn

  • CourseLearn Python & Ethical Hacking From Scratch 🔒 StationX Unlimited
    21 sections · 194 lectures
    1. Training Overview 2
    2. Section 1: Introduction 13
    3. Section 2: Writing a MAC Address Changer - Python Basics 13
    4. Section 3: MAC Changer - Algorithm Design 7
    5. Section 4: Programming a Network Scanner 16
    6. Section 5: Writing an ARP Spoofer 12
    7. Section 6: Writing a Packet Sniffer 8
    8. Section 7: Writing a DNS Spoofer 8
    9. Section 8: Writing a File Interceptor 7
    10. Section 9: Writing a Code Injector 14
    11. Section 10: Bypassing HTTPS 4
    12. Section 11: Writing an ARP Spoof Detector 3
    13. Section 12: Writing Malware 10
    14. Section 13: Writing Malware - Keylogger 8
    15. Section 14: Writing Malware - Backdoors 22
    16. Section 15: Writing Malware - Packaging 15
    17. Section 16: Website / Web Application Hacking 3
    18. Section 17: Website Hacking - Writing a Crawler 9
    19. Section 18: Writing a Program To Guess Login Information 3
    20. Section 19: Writing a Vulnerability Scanner 16
    21. Audio Version of Training 1

Step 7 — Certify it

The methodology, the labs and the report — proven in an exam.

follows a certification path

Learn

Where this leads

Advanced · after the job

The AI-Driven Penetration Tester

Senior roles are going to the people who can direct AI to build security solutions. When you're working in the role and ready for that step, the AI Master's Program is where it's taught — an advanced, application-only programme.

See the AI Master's Program →Application-only. A separate programme for when you're ready.