Learning flow
Five phases. One practical route.
Instead of random topics, the syllabus moves through foundation, discovery, practical security, specialization, and professional readiness.
Foundation
Ethics, Linux, networking, anonymity, protocols, and lab setup.
Practice
Reconnaissance, scanning, enumeration, vulnerability analysis, and tooling.
Attack
System security, password concepts, malware awareness, sniffing, spoofing, social engineering, and DoS concepts in lab context.
Defend
IDS, firewalls, honeypots, countermeasures, secure traffic analysis, and remediation thinking.
Professional
Web, mobile, cloud, cryptography, bug bounty, OSINT, dark web intelligence, projects, certificate, and career support.
Full syllabus
Accordion explorer, built like a working desk.
All 27 modules from your PDF are grouped by phase. The wording keeps the course positioned for lawful learning, authorized labs, defensive understanding, and professional reporting.
Phase 01Foundation
Cyber security introduction, ethical hacking, hacker types, ethical hacking phases, career skills, why ethical hacking is necessary, cybersecurity domains, jobs, and certificates.
Linux introduction, virtualization, Kali Linux setup, users, groups, shadow, passwd, Linux familiarity, command prompt, important Kali commands, Linux OS concepts, and Metasploitable setup.
Tor and its working, Tor Browser in Kali Linux, Tor configuration, proxy concepts, proxy types, proxy server setup, proxy chaining, onion routing, dark web access basics, and online anonymity.
Networks, network types, topologies, protocols, TCP/IP, DNS, DHCP, HTTP/HTTPS, FTP, SSH, SMTP, subnetting, IP addressing, routing, switching, and network security fundamentals.
Phase 02Practice and Discovery
Footprinting types, active and passive footprinting, website reconnaissance, WHOIS, Wappalyzer, Google Dorks, GHDB, Pentest-Tools, NSLookup, call spoofing awareness, email tracking, Shodan, Maltego, and Recon-ng.
Scanning concepts, network scanning, port scanning, important ports, version scanning, OS fingerprinting, Nmap installation and usage, open services, NSE, exploit research workflow, and Zenmap.
Enumeration techniques, Windows architecture, Windows security elements, SIDs, RIDs, SRM, SAM database, NetBIOS, nbtstat, NetBIOS Enumerator, nbtscan, DNS, NTP, LDAP, service enumeration, and countermeasures.
Vulnerability analysis, risk background, assessment types, vulnerability scoring systems, CVE, OWASP, National Vulnerability Database, and remediation prioritization.
Phase 03Practical Security
System hacking concepts, password cracking, password guessing, complexity, hashing, hash identifiers, dictionary, brute-force, hybrid, rainbow tables, John the Ripper, Windows password recovery, keyloggers, MITM, encryption, RAT awareness, and file-based attack awareness.
Malware, trojan, backdoor, ransomware, adware, virus, spyware, botnet, crypter concepts, antivirus sensor systems, malware detection, and reverse engineering basics.
Sniffing types, network sniffing threats, sniffer workflow, password sniffing awareness, Wireshark, Ettercap, Bettercap, ARP spoofing, DNS spoofing, PC and smartphone traffic capture, and MAC spoofing concepts.
Social engineering phases, human-based, computer-based, mobile-based techniques, clickbait, trend-based methods, impersonation, identity theft, email spoofing, malicious link awareness, phishing introduction, advanced phishing awareness, and account safety.
DoS/DDoS introduction, DoS attack types, Smurf, Fraggle, SYN flood, Ping of Death, DDoS using zombie systems, botnet awareness, GoldenEye and Slowloris concepts, attack impact, and penetration testing awareness.
HTTP cookies, why hijacking succeeds, social platform session risk awareness, session hijacking concepts, spoofing versus hijacking, session ID compromise, TCP/IP hijacking, source routing, RST, blind hijacking, forged ICMP, ARP spoofing, UDP hijacking, and countermeasures.
IDS introduction, firewalls, honeypots, intrusion detection tools, IP spoofing, firewall evasion awareness, SSH tunneling concepts, external system bypass awareness, honeypot setup, and IDS/firewall/honeypot systems.
Phase 04Specialization
Web server concepts, web server security issues, open source server architecture, web server architecture, defacement awareness, misconfiguration, HTTP response splitting, web cache poisoning, SSH brute-force awareness, web application attacks, and compromise concepts.
Web application introduction, server administration, web app threats, methodology, attack analysis, authentication, authorization, injection attacks, data connectivity issues, and session management attacks.
SQL injection introduction, SQL query workflow, database creation basics, identification, authentication bypass, vulnerability detection, blind SQL injection, SQLMAP, XSS, stored and reflected XSS, CSRF awareness, command injection, parameter protection, and DVWA practice.
Wireless security introduction, wireless networks, WPS, wireless pentesting setup, adapter usage, Wi-Fi password attack awareness, jammer concepts, jamming signal attack, GPS mapping, and Bluetooth hacking awareness.
Android security lab concepts, RAT and Metasploit payload awareness, Play Protect bypass awareness, and OWASP Top 10 Mobile Threats.
IoT introduction, IoT attacks, OWASP Top 10 IoT vulnerabilities, rolling code attack, BlueBorne, jamming, car remote signal risk, CCTV risk, device-to-device, cloud, gateway, and back-end data-sharing models.
Cloud computing introduction, deployment models, service models, IaaS, PaaS, SaaS, cloud service types, and cloud computing threats.
Cryptography introduction, cryptography types, public and private keys, government key access concepts, symmetric and asymmetric encryption, cryptanalysis, PGP, GPG, DES, RC4, RC5, RSA, RC6, email encryption, digital signatures, live cracking code awareness, steganography, manual hidden messages, image, folder, audio, and email steganography.
Bug bounty introduction, lab setup, HackerOne, Bugcrowd, Open Bug Bounty, Burp Suite setup, responsible disclosure policies and procedures, subdomain takeover, directory bruteforcing, recon techniques, GitHub recon, WordPress hunting, and bounty programs.
Phase 05Intelligence and Professional Track
IP logger, Canarytoken, Grabify awareness, IMEI and device identification basics, GPS tracking concepts, call detail records, and cell tower triangulation concepts.
OSINT introduction, open source intelligence types, IP, domain, DNS, QR, UPI, image, mobile number, vehicle, social media account investigation, geolocation, map-based OSINT, reporting, and documentation.
Deep web and dark web introduction, important dark web terms, safe access basics, finding dark web websites, dark web investigation, onion website hosting concepts, cybercrime awareness, and threat intelligence.
Host: labs.cydenium Cookie: session=review User-Agent: student X-Lab: authorized
{
"finding": "access control",
"severity": "medium",
"next": "write report"
}
$ nmap -sV lab.cydenium.local 22/tcp open ssh 80/tcp open http 443/tcp open https $ notes add "validate, report, remediate"
Lifetime Access
Lifetime course, software, support access, and updates for software, videos, and modules.
NEEV AI
24x7 NEEV AI support plus chat and call guidance for learner guidance.
Internship
1 month live internship opportunity after the 6 month live training path.
Projects
Mini projects and weekend live practice tests to build momentum.
Career Direction
Internship and placement support, expert career guidance, resume building, and LinkedIn setup.
Verified certificate
A certificate record that can be verified through our main website.
Completion is treated as proof of structured learning. The certificate record is designed for website verification, so students can share it with more confidence.
Certificate of Training
Cydenium Certified Cybersecurity Expert
VERIFYFoundation starts
Cybersecurity, ethics, Linux, labs, and networking.
Discovery workflow
Reconnaissance, scanning, enumeration, and vulnerability analysis.
Security practice
System security, traffic analysis, social engineering awareness, and countermeasures.
Web and cloud
Web servers, web apps, SQL injection, wireless, Android, IoT, cloud, and crypto.
Professional track
Bug bounty, OSINT, dark web intelligence, projects, certificate, internship, and career support.
Is CCCE beginner friendly?
Yes. The first phase covers cybersecurity basics, Linux, virtualization, networking, anonymity, and lab setup before advanced topics appear.
What is the duration?
CCCE is planned as a 6 month live training route, followed by a 1 month live internship opportunity after the training path.
Are classes live?
Yes. CCCE includes live classes, recordings, weekend practice tests, mini projects, study material, and practical training across the modules.
Are labs included?
Yes. The program is built around guided labs, tools, practice workflows, projects, and mentor-led review so learners do more than watch videos.
Is mentor support included?
Yes. Learners get mentor support along with 24x7 NEEV AI support for structured guidance during the CCCE journey.
Is internship included?
The program includes a 1 month live internship opportunity, along with career guidance, resume building, and LinkedIn profile setup.
How is the certificate verified?
CCCE certificate records can be verified through Cydenium's main website, so students can share their completion record with more confidence.
How is risky content handled?
The page frames offensive topics for lawful training, authorized labs, defensive awareness, reporting, and countermeasures.
Ready?