Part 12
Advanced Tools and CEH Modules
More Kali tools, enumeration, Active Directory, malware, DoS, session hijacking, evasion, IoT/OT and mobile security – completing every module of the CEH exam, each attack paired with its defence.
Chapters in this part
36. More Essential Kali Tools
37. Enumeration: NetBIOS, SMB, SNMP, LDAP, SMTP, NFS and DNS
38. Active Directory Attacks and Defence
- 38.1 AD Basics for Defenders
- 38.2 Safe AD Lab Setup
- 38.3 Enumeration of AD
- 38.4 Kerberos Basics: AS-REP Roasting and Kerberoasting (Defensive View)
- 38.5 NTLM Relay and Pass-the-Hash Concepts (Lab Only)
- 38.6 BloodHound Attack-Path Analysis
- 38.7 Privilege Escalation Paths and Domain Admin Risks
- 38.8 Defence Checklist – Raja-Rani Traders Style AD
- 38.9 Putting It Together – Purple Team Mindset
39. Malware Threats
- 39.1 What Is Malware – Types for Defenders
- 39.2 How Malware Spreads
- 39.3 Ransomware Deep Dive – Raja-Rani Traders
- 39.4 Static vs Dynamic Analysis Mindset
- 39.5 Indicators of Compromise (IOC)
- 39.6 Defence Stack – Practical Controls
- 39.7 Safe Malware Lab Setup
- 39.8 Incident Response for Malware + CERT-In Awareness
- 39.9 Putting It Together – Purple Team Mindset
40. DoS and DDoS – Availability Attacks
- 40.1 What Is DoS vs DDoS – Availability First
- 40.2 Volumetric and Flood Concepts – Defender View
- 40.3 Protocol Attacks – SYN Flood and Handshake Abuse
- 40.4 Amplification and Reflection – Closed Lab Only
- 40.5 Application-Layer DoS – Slow and Heavy Requests
- 40.6 Botnets and IoT – Mirai-Class Lesson
- 40.7 Detection and Defence Stack
- 40.8 Lab-Safe Simulation – Ethics First
- 40.9 Incident Response for Availability Attacks + CERT-In Awareness
- 40.10 Putting It Together – Purple Team Mindset
41. Session Hijacking – Tokens, Cookies and Defence
- 41.1 What Is a Session – Why Hijacking Matters
- 41.2 Cookie Theft and Insecure Transit
- 41.3 Session Fixation and Predictable IDs
- 41.4 XSS Path to Session Cookies – Defence First
- 41.5 Network Sniffing of Sessions – Host-Only Concepts
- 41.6 Application-Level Hijack – URL Tokens, CSRF, JWT Concepts
- 41.7 Detection – Logs, Concurrent Sessions, SIEM Signals
- 41.8 Defence Hardening Checklist
- 41.9 Lab-Safe PHP Cookie Demo + Ethics / IT Act
- 41.10 Putting It Together – Purple Team Mindset
42. Evading IDS, Firewalls and Honeypots – Detection Games
- 42.1 IDS vs IPS vs Firewall vs Honeypot – Why Each Exists
- 42.2 Signature vs Anomaly IDS – False Positives and False Negatives
- 42.3 Fragmentation, Encoding, Obfuscation – Concepts, Then Reassembly
- 42.4 Slow Scans, Timing, Port Knocking – Nmap vs Blue Rate Alerts
- 42.5 Firewall Types – What "Evasion" Means to Blue
- 42.6 Honeypots and Honeynets – Deception, Ethics, Alerts
- 42.7 Covering Tracks vs Log Integrity – Blue Wins
- 42.8 Lab – Suricata or firewalld Logging on OWN VM
- 42.9 Project, Ethics and IT Act
- 42.10 Putting It Together – Purple Team Mindset
43. IoT and OT Security – Cameras, Smart Devices, Plant Networks
- 43.1 IoT vs OT / ICS / SCADA – CIA Plus Safety
- 43.2 Attack Surface – Defaults, Telnet, HTTP, UPnP, Dashboards
- 43.3 Protocol Awareness – MQTT, CoAP, Modbus, DNP3
- 43.4 Mirai-Class Botnets – Weak IoT, Outbound C2
- 43.5 Network Segregation – IT / OT Zones, Jump Hosts, firewalld
- 43.6 Internet Exposure Awareness – Your Lab Only
- 43.7 Firmware, Updates and Supply-Chain Hygiene
- 43.8 Detection – Outbound IoT, Failed Logins, Protocol Oddities
- 43.9 Lab – Mosquitto MQTT or Fake Camera UI on OWN VM
- 43.10 Project, Ethics, IT Act and Purple Interview Lines
44. Mobile Device Security – Android, iPhone, Bluetooth and Wi-Fi
- 44.1 Mobile Threat Model – What Can Go Wrong
- 44.2 Android Security Model – Permissions, Play Protect, Sideloading
- 44.3 iPhone / iOS Security Model – App Store, Sandbox, Lockdown Mode
- 44.4 Signs a Phone May Be Compromised – Practical Checklist
- 44.5 Cleanup and Response – If You Believe the Phone Is Compromised
- 44.6 MDM and BYOD – SME Concepts for Sahyadri Traders
- 44.7 Bluetooth Risks – Pairing Hygiene and BlueBorne Awareness
- 44.8 Wi-Fi on Phones – Evil Twin and Captive Portal Awareness
- 44.9 Hardening Checklist and Permission-Hygiene Lab
- 44.10 Project, Ethics, IT Act and Purple Interview Lines