Offensive Security · Beginner to Advanced

Zero to Hero Ethical Hacking

Twelve weeks that take you from your first Linux command to running a full-scope engagement against a live target network.

12wk

Course Length

48

Lessons & Labs

820+

Students Enrolled

Zero to Hero Ethical Hacking course
LevelAll Levels
FormatLive Online + Labs
Next CohortFirst Monday Monthly
CertificateVelpoint Verified
Course Overview

From Complete Beginner To Job-Ready Hacker

This is the course we wish existed when we started. It assumes nothing — no prior security background, no networking degree — and takes you all the way to running a real penetration test end to end. Every concept is taught with a keyboard in your hands, not a slide on a screen.

You build your own lab, learn how attackers think, and then practise every technique against an isolated network modelled on a mid-sized company: a public web tier, an internal Active Directory domain and a segmented finance subnet. By the final module you are chaining findings, escalating privileges, moving laterally and writing it all up the way a client actually needs it.

What You'll Learn

Skills You Leave With

  • Set up and run your own Kali Linux hacking lab safely and legally.
  • Understand networking, Linux and the TCP/IP stack well enough to attack them.
  • Perform passive and active reconnaissance without tripping detection.
  • Find, verify and safely exploit web and network vulnerabilities.
  • Escalate privileges on Linux and Windows, then move laterally through a domain.
  • Attack Active Directory — Kerberoasting, delegation abuse and ACL paths.
  • Write a professional findings report with impact and remediation a client can act on.
Curriculum

7 Modules, 48 Lessons

  • How the internet actually works 34 min
  • Linux command line from scratch 46 min
  • Networking & TCP/IP for hackers 42 min
  • Lab: build your Kali environment 60 min
  • Assignment: map your home network
  • OSINT without touching the target 38 min
  • Host discovery & port scanning with Nmap 45 min
  • Service and version fingerprinting 37 min
  • Lab: map the target network 120 min
  • Injection: SQL, command and template 52 min
  • Broken authentication and sessions 44 min
  • Access control and IDOR chains 39 min
  • Lab: compromise the public web tier 150 min
  • Finding and using public exploits safely 40 min
  • The Metasploit framework end to end 55 min
  • Payloads, listeners and reverse shells 43 min
  • Lab: gain your first foothold 150 min
  • Linux: SUID, capabilities and cron paths 48 min
  • Windows: tokens, services and unquoted paths 51 min
  • Credential harvesting and reuse 37 min
  • Lab: root three hosts 180 min
  • Domain enumeration and attack paths 46 min
  • Kerberos abuse: roasting and delegation 55 min
  • Lab: reach the finance subnet 210 min
  • Rating severity honestly 33 min
  • Writing remediation a developer can use 40 min
  • Final assessment: full engagement 48 hrs
  • Certificate issue and review

"I started this course not knowing what a terminal was. Twelve weeks later I passed my first real interview by walking them through an engagement I ran in the lab."

— Graduate, Cohort 9

LKR 5,000 / course

Includes lab access · 90 days of lab access after the final session.

  • Duration 12 weeks
  • Lessons 48
  • Graded labs 12
  • Level All Levels
  • Live sessions 2 / week
  • Language English & Sinhala
  • Certificate Included
Enrol Now Download Syllabus

Seats fill fast — next cohort opens the first Monday of the month

Prerequisites
  • A laptop with 8GB+ RAM that can run a virtual machine.
  • Curiosity and willingness to break things — no security background needed.
  • Basic comfort using a computer; everything else is taught from zero.
RD
R. Dissanayake
Lead Instructor

14 years of red team work across banking and telco. Writes the offensive curriculum and reviews every graded lab submission on this course personally.

3Courses
1,020Students
4.9Rating
Course Resources

Everything You Get Access To

Enrol and these land in your student portal from day one — yours to keep, with 90 days of lab access after the final session.

Setup Guide
Kali Linux Lab Setup Guide

Step-by-step PDF to build your own virtual hacking lab from scratch, safely and offline.

Cheat Sheet
Nmap & Enumeration Cheat Sheet

Every scan flag, NSE script and enumeration command you will reach for, on one page.

Checklist
Privilege Escalation Checklists

The Linux and Windows privesc checklists our testers actually run on engagements.

Template
Penetration Test Report Template

The client-ready report format you write your final engagement in — findings, impact, remediation.

Lab Access
Isolated Target Network

Your own copy of the corporate lab — 18 hosts, 4 segments — resettable for 90 days.

Reading
Curated Reading & Practice List

Recommended books plus a sequenced set of Hack The Box and TryHackMe rooms to keep practising.

Continue Learning

Other Courses

Cybersecurity From Zero complete program Zero to Job Ready
Complete Program

Cybersecurity From Zero — Complete Program

Our full syllabus in one guided programme: networking, Linux, Windows, security fundamentals, ethical hacking, blue team and a final project — taught live, from absolute zero to portfolio ready.

LKR 19,90024 weeks
Cyber Security From Scratch course Absolute Beginner
Fundamentals

Cyber Security From Scratch

The true starting point. Learn how computers, networks and attacks actually work, lock down your own devices, and set up your first lab — with zero IT background.

LKR 5,00010 weeks

Not Sure This Is Your Level?

Tell us where you're starting from and we'll point you
to the right course — no obligation to enrol.

Talk To An Instructor