A complete, methodology-first course on penetration testing — from reconnaissance and exploitation to Active Directory attacks, AI for pentesting, and professional reporting. Eleven modules, 40 lessons, 7 hands-on labs on free legal tools (Metasploitable2, Kali Linux, BloodHound, Burp Suite, PentestGPT), and a full engagement case study.
11modules · 40 lessons
7hands-on labs, free legal tools
AIagent-assisted pentesting, module 8
1full engagement case study
$0lab tooling cost
Why this course
The direct complement to this catalogue's SOC & SIEM course — learn what defenders are actually detecting, from the other side of the table.
⌘
Legal, hands-on labs
Six labs on genuinely free, purpose-built targets — Metasploitable2, OWASP Juice Shop, BloodHound — zero authorization ambiguity, ever.
⇄
Methodology over tricks
Built around the same recon → scan → exploit → report structure real engagements and certifications like OSCP actually test.
◎
Certification-ready
A dedicated module maps this course directly onto the OSCP/PNPT/GPEN landscape, so you know exactly what's next.
What You'll Actually Achieve
Concrete outcomes, not vague promises — visible here in the free preview before you decide.
📚 Learning Outcomes
Run a full, methodologically sound engagement from OSINT through Active Directory attack-path mapping
Explain why triage discipline (picking 2-3 findings to go deep on) matters more than exhaustive exploitation attempts
Evaluate AI-assisted pentesting tool output critically against your own manually-verified findings
Write a client-ready finding: what, why it's exploitable, and what remediation actually closes it
🔬 Lab Outcomes — What You'll Actually Build
A complete target profile document built across 7 connected phases of one continuous engagement
A working exploit chain against Metasploitable2, documented end-to-end with CVE references
A mapped Active Directory attack path to Domain Admin using BloodHound, on your own lab domain
A written comparison of AI-assisted vs. manual pentesting — where the AI helped, where it didn't
Industry Relevance — JobTkl's Assessment
Our own rubric based on tool currency, real-world grounding, and current hiring signal — not a third-party certification or independently verified score.
Tool/Framework CurrencyMetasploit, Burp Suite, BloodHound CE, PentestGPT — the actual current toolchain, not deprecated equivalents
Real-World GroundingA continuous target-profile campaign structure, mirroring how a real engagement actually runs
Emerging-Skill DemandThe AI-assisted pentesting phase addresses a skill gap most existing pentest courses haven't caught up to yet
Curriculum
Module 1 is free. The rest unlock with a subscription.
One course. One price.
Lifetime access to all 11 modules and future updates.