
CompTIA
Cisco
ISACA & governance
Offense & defense
CEH v13 AI·OFFENSIVE SECURITY
EC-Council Certified Ethical Hacker
Learn to think like an attacker—lawfully—and develop practical skills for identifying, validating, and helping remediate security weaknesses.
Choose a preferred plan, then confirm availability with our team.

RSAY completion certificate
Recognize your training achievement
Online or in-person
Explore delivery options below
Intermediate
Review prerequisites before choosing
20 learning modules
Topics, practice, and learning checks
BUILD SKILLS THAT MATTER
Think critically. Test responsibly.
A focused learning experience that connects the concepts to decisions you make in real technical work.
Is this the right course for me? ↗What you will be able to do
- Understand ethical hacking methodology, authorization, scope, and reporting.
- Perform reconnaissance, scanning, enumeration, and vulnerability analysis in safe labs.
- Recognize common system, web, wireless, cloud, IoT, and social-engineering attack paths.
- Validate findings and recommend practical remediation with defensive thinking.
- Explore responsible uses of AI in ethical hacking and security analysis.
Who this course is for
Security analysts and engineers · Network and system administrators · Penetration-testing beginners · Professionals preparing for CEH
INSIDE THE COURSE
Explore the syllabus.
Open a module to see its focus, a suggested practical activity, and how you will check your understanding. Exam percentages are not allocations of training hours.
Official certification reference ↗Activities are RSAY learning examples, not a promise of vendor-owned lab access. Final materials are confirmed in the cohort guide.
01Introduction to Ethical Hacking
Topics in focus
Ethics, authorization, scope, the hacking lifecycle, attack frameworks, reporting, and AI-supported workflows.
Put it into practice
Draft written authorization, rules of engagement, and stop conditions for a fictional lab assessment.
Your learning checkpoint
Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.
02Footprinting & Reconnaissance
Topics in focus
Passive and active reconnaissance, OSINT, search engines, social platforms, DNS, email, web, and organizational intelligence.
Put it into practice
Build a fictional organization's public asset map and separate verified facts from assumptions.
Your learning checkpoint
Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.
03Scanning Networks
Topics in focus
Host discovery, port and service scanning, OS detection, scan techniques, evasion concepts, and interpreting results.
Put it into practice
Interpret provided lab scan results and map the exposed services to their owners.
Your learning checkpoint
Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.
04Enumeration
Topics in focus
Enumerating Windows, Linux, network services, DNS, SNMP, LDAP, NFS, SMTP, SMB, and cloud resources.
Put it into practice
Document service and account information from a deliberately vulnerable lab system.
Your learning checkpoint
Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.
05Vulnerability Analysis
Topics in focus
Vulnerability research, scoring, scanners, configuration assessment, validation, prioritization, and remediation planning.
Put it into practice
Triage sample scanner findings, check false positives, and rank remediation priorities.
Your learning checkpoint
Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.
06System Hacking
Topics in focus
Authentication attacks, privilege escalation, persistence, file and data handling, evidence removal concepts, and defensive controls.
Put it into practice
Explain a controlled attack chain from supplied evidence and recommend controls at each boundary.
Your learning checkpoint
Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.
07Malware Threats
Topics in focus
Malware families, behavior, delivery, analysis fundamentals, indicators, sandboxing, and defensive countermeasures.
Put it into practice
Analyze a harmless malware-behavior report and identify useful detection indicators.
Your learning checkpoint
Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.
08Sniffing
Topics in focus
Packet capture, protocol analysis, switched-network attacks, detection, encryption, secure protocols, and monitoring controls.
Put it into practice
Inspect a supplied packet capture for sensitive plaintext and recommend encrypted alternatives.
Your learning checkpoint
Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.
09Social Engineering
Topics in focus
Human attack vectors, phishing, impersonation, physical techniques, awareness testing, policy, and prevention.
Put it into practice
Review simulated social-engineering messages and design a safe awareness and reporting exercise.
Your learning checkpoint
Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.
10Denial-of-Service
Topics in focus
DoS and DDoS concepts, amplification, botnets, service exhaustion, detection, response, and resilience.
Put it into practice
Use traffic charts to distinguish a capacity incident from an availability attack; propose mitigations.
Your learning checkpoint
Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.
11Session Hijacking
Topics in focus
Session identifiers, cookies and tokens, transport and application risks, detection, and secure session design.
Put it into practice
Review a training application's cookie settings and explain session-expiry and transport protections.
Your learning checkpoint
Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.
12Evading IDS, Firewalls & Honeypots
Topics in focus
Security-control behavior, traffic inspection, evasion concepts, decoys, detection engineering, and defensive tuning.
Put it into practice
Compare sanitized firewall and IDS logs to understand visibility gaps and defensive tuning.
Your learning checkpoint
Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.
13Hacking Web Servers
Topics in focus
Server enumeration, misconfiguration, authentication, patching, logging, common attack paths, and hardening.
Put it into practice
Inspect a mock web-server configuration for unnecessary exposure and hardening opportunities.
Your learning checkpoint
Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.
14Hacking Web Applications
Topics in focus
Application architecture, input validation, authentication, sessions, access control, APIs, business logic, and secure testing.
Put it into practice
Map an intentionally vulnerable training application's trust boundaries and document a finding.
Your learning checkpoint
Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.
15SQL Injection
Topics in focus
Injection causes, discovery, database behavior, validation in safe labs, parameterization, and remediation.
Put it into practice
Explain why a sample unsafe database query is vulnerable and compare it with a parameterized query.
Your learning checkpoint
Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.
16Hacking Wireless Networks
Topics in focus
Wireless standards, discovery, authentication, encryption, common exposure patterns, secure assessment, and hardening.
Put it into practice
Review a lab wireless design for authentication, encryption, and guest isolation.
Your learning checkpoint
Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.
17Hacking Mobile Platforms
Topics in focus
Mobile architecture, app storage, permissions, communications, device management, testing, and defensive design.
Put it into practice
Assess a fictional mobile-app permission list and propose device and application safeguards.
Your learning checkpoint
Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.
18IoT & OT Hacking
Topics in focus
Connected-device and industrial environments, protocols, trust boundaries, common weaknesses, safe testing, and segmentation.
Put it into practice
Threat-model an isolated sensor network, emphasizing safety and the limits of active testing.
Your learning checkpoint
Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.
19Cloud Computing
Topics in focus
Shared responsibility, identity, storage, compute, containers, serverless, misconfiguration, monitoring, and remediation.
Put it into practice
Review sample cloud permissions and storage settings for excessive access and exposure.
Your learning checkpoint
Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.
20Cryptography
Topics in focus
Symmetric and asymmetric cryptography, hashing, PKI, certificates, encryption use cases, attacks, and implementation safeguards.
Put it into practice
Compare hashing, symmetric encryption, and public-key use in a secure data-transfer scenario.
Your learning checkpoint
Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.
RECOGNIZE YOUR PROGRESS
Your learning. Your achievement.
Receive an RSAY ITC completion certificate when you meet the attendance, activities, and assessment requirements published in your cohort guide.
Completion is not vendor certification
The RSAY certificate records training completion. Vendor certification requires its own exam and applicable eligibility criteria. An exam voucher is not included unless explicitly confirmed in your package.
CERTIFICATION EXAM
Know your next milestone.
- Certification / version
- CEH v13 AI
- Exam duration
- 4 hours
- Assessment
- 125 multiple-choice questions
Exam policies can change. Verify current requirements with the certification provider before booking. Training does not guarantee a pass.
Review official requirements ↗MAKE ROOM FOR YOUR NEXT SKILL
Course schedule & pricing
An intensive week, evening sessions, or weekends. Explore a learning rhythm that fits your life.
Example schedules · not open cohorts
Compare three 40-hour plans. Dates, delivery, breaks, venue, and final price must be confirmed by RSAY. Choosing a plan does not book or charge you.
All times: Riyadh · UTC+3
Five-day intensive
Sunday–Thursday · 09:00–17:00
Online or in-person · venue to be confirmed5 × 8 hours = 40 hours
View every session
- 4 Oct 2026 09:00–17:00
- 5 Oct 2026 09:00–17:00
- 6 Oct 2026 09:00–17:00
- 7 Oct 2026 09:00–17:00
- 8 Oct 2026 09:00–17:00
Weekday evenings
Sunday–Wednesday · 18:00–20:00
Online or in-person · venue to be confirmed20 × 2 hours = 40 hours
View every session
- 4 Oct 2026 18:00–20:00
- 5 Oct 2026 18:00–20:00
- 6 Oct 2026 18:00–20:00
- 7 Oct 2026 18:00–20:00
- 11 Oct 2026 18:00–20:00
- 12 Oct 2026 18:00–20:00
- 13 Oct 2026 18:00–20:00
- 14 Oct 2026 18:00–20:00
- 18 Oct 2026 18:00–20:00
- 19 Oct 2026 18:00–20:00
- 20 Oct 2026 18:00–20:00
- 21 Oct 2026 18:00–20:00
- 25 Oct 2026 18:00–20:00
- 26 Oct 2026 18:00–20:00
- 27 Oct 2026 18:00–20:00
- 28 Oct 2026 18:00–20:00
- 1 Nov 2026 18:00–20:00
- 2 Nov 2026 18:00–20:00
- 3 Nov 2026 18:00–20:00
- 4 Nov 2026 18:00–20:00
Five weekends
Friday–Saturday · 09:00–13:00
Online or in-person · venue to be confirmed10 × 4 hours = 40 hours
View every session
- 9 Oct 2026 09:00–13:00
- 10 Oct 2026 09:00–13:00
- 16 Oct 2026 09:00–13:00
- 17 Oct 2026 09:00–13:00
- 23 Oct 2026 09:00–13:00
- 24 Oct 2026 09:00–13:00
- 30 Oct 2026 09:00–13:00
- 31 Oct 2026 09:00–13:00
- 6 Nov 2026 09:00–13:00
- 7 Nov 2026 09:00–13:00
Prerequisites
Review the intermediate level and intended audience. Relevant networking and operating-system knowledge helps with technical security courses; our team can assess your starting point.
Technical requirements
A computer, current browser, reliable internet, and clear audio. Software, virtual-machine requirements, and lab access are specified before registration is confirmed.
Learning schedule
The cohort guide confirms dates, breaks, live hours, self-study, activities, and assessments. Example plans on this page are illustrative until confirmed.
Measuring progress
Knowledge checks, practical activities, feedback, and a final review connect to learning outcomes. Completion criteria and assessment weights are published in the cohort guide.
Support & accessibility
Tell us about learning support or accessibility needs before enrollment. Our team can clarify attendance, complaints, privacy, and refund policies.