Module 1: Offensive Security Foundations & Reconnaissance
Scoping, rules of engagement, and passive/active target intelligence gathering.
5 topicsModule 1 of 6
What this module covers
5 topics
- 01Penetration Testing Execution Standard (PTES), legal boundaries, and ethical rules of engagement
- 02Passive OSINT: Amass, Sublist3r, Certificate Transparency logs, GitHub dorking, Shodan, and Censys
- 03Active reconnaissance: advanced Nmap port scanning, banner grabbing, and service enumeration
- 04Web technology profiling: Wappalyzer, WhatWeb, and directory brute-forcing with Gobuster / ffuf
- 05DNS enumeration, subdomain takeover vulnerabilities, and zone transfer exploitation




