Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Document preview thumbnail
Preview 2 out of 7 pages
Book review

Certified Ethical Hacker Complete Course Notes | Cybersecurity, Penetration Testing & Ethical Hacking

Document preview thumbnail
Preview 2 out of 7 pages

Comprehensive Certified Ethical Hacker course notes covering essential cybersecurity and ethical hacking concepts. This document includes ethical hacking fundamentals, penetration testing, network security, Windows and Linux basics, networking, reconnaissance and footprinting, network scanning, enumeration, web server and web application security, OWASP topics, malware threats, wireless security, cryptography, sniffing, DoS/DDoS concepts, social engineering, mobile platform security, IDS/firewall concepts, and post-exploitation topics. Suitable for Cybersecurity students, Ethical Hacking beginners, CEH learners, and IT security students looking for structured course material and revision notes. The source document is organized into multiple modules and describes a course duration of approximately 30–35 hours.

Content preview

Basic Security Audit of OWASP Juice Shop
Target Application: OWASP Juice Shop
Testing Environment: Ubuntu Virtual Machine safe lab
environment with Docker container


1. Objective
The objective of this task was to perform a beginner-level security audit on a legal
vulnerable-by-design practice website. For this audit, I used OWASP Juice Shop, which
is intentionally vulnerable and designed for security training.
The audit focused on identifying, documenting, and manually verifying at least three
vulnerability categories:
• SQL Injection
• Application Error Disclosure
• Missing Content Security Policy Header
2. Scope
This security audit was performed only against a local instance of OWASP Juice Shop
running on my own machine. No real production website or third-party system was
tested.
In-scope target:
OWASP Juice Shop (http://127.0.0.1:3000)
Out of scope:
Any real public/production website
Any system without explicit permission
3. Environment Setup
OWASP Juice Shop was run locally using Docker. After starting the container, I verified
that the container was running with:
sudo docker ps
The Docker output showed the Juice Shop container running and mapped to local port
3000. The application was then accessed in the browser at: http://localhost:3000/#/

, 4. Methodology
4.1 Manual Exploration
I opened OWASP ZAP and used the Manual Explore feature to connect ZAP with the
local Juice Shop instance.




4.2 Browser Developer Tools
I used Firefox Developer Tools, especially the Network tab, to inspect requests,
responses, and HTTP headers.

Document information

School year
5
Uploaded on
August 23, 2026
Number of pages
7
Written in
2026/2027
Type
Book review
$6.89

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Sold
0
Followers
0
Items
6
Last sold
-



Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions