RSAY
عربيContact us

CEH v13 AI·OFFENSIVE SECURITY

EC-Council Certified Ethical Hacker

Learn to think like an attacker—lawfully—and develop practical skills for identifying, validating, and helping remediate security weaknesses.

Live, guided trainingFlexible study plans
Register now

CURRICULUM PREVIEW

EC-Council Certified Ethical Hacker

Learn to think like an attacker—lawfully—and develop practical skills for identifying, validating, and helping remediate security weaknesses.

What will you learn?

  • Understand ethical hacking methodology, authorization, scope, and reporting.
  • Perform reconnaissance, scanning, enumeration, and vulnerability analysis in safe labs.
  • Recognize common system, web, wireless, cloud, IoT, and social-engineering attack paths.

20 learning modules — explanation, practice, and review.

Explore the full syllabusThis is a curriculum preview, not a recorded lesson.

Choose a preferred plan, then confirm availability with our team.

Original RSAY CEH cyber operator illustration
RSAY / OFFENSIVE LABCEH

RSAY completion certificate

Recognize your training achievement

Online or in-person

Explore delivery options below

Intermediate

Review prerequisites before choosing

20 learning modules

Topics, practice, and learning checks

BUILD SKILLS THAT MATTER

Think critically. Test responsibly.

A focused learning experience that connects the concepts to decisions you make in real technical work.

Is this the right course for me? ↗

What you will be able to do

  • Understand ethical hacking methodology, authorization, scope, and reporting.
  • Perform reconnaissance, scanning, enumeration, and vulnerability analysis in safe labs.
  • Recognize common system, web, wireless, cloud, IoT, and social-engineering attack paths.
  • Validate findings and recommend practical remediation with defensive thinking.
  • Explore responsible uses of AI in ethical hacking and security analysis.

Who this course is for

Security analysts and engineers · Network and system administrators · Penetration-testing beginners · Professionals preparing for CEH

INSIDE THE COURSE

Explore the syllabus.

Open a module to see its focus, a suggested practical activity, and how you will check your understanding. Exam percentages are not allocations of training hours.

Official certification reference ↗

Activities are RSAY learning examples, not a promise of vendor-owned lab access. Final materials are confirmed in the cohort guide.

01Introduction to Ethical Hacking

Topics in focus

Ethics, authorization, scope, the hacking lifecycle, attack frameworks, reporting, and AI-supported workflows.

Put it into practice

Draft written authorization, rules of engagement, and stop conditions for a fictional lab assessment.

Your learning checkpoint

Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.

02Footprinting & Reconnaissance

Topics in focus

Passive and active reconnaissance, OSINT, search engines, social platforms, DNS, email, web, and organizational intelligence.

Put it into practice

Build a fictional organization's public asset map and separate verified facts from assumptions.

Your learning checkpoint

Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.

03Scanning Networks

Topics in focus

Host discovery, port and service scanning, OS detection, scan techniques, evasion concepts, and interpreting results.

Put it into practice

Interpret provided lab scan results and map the exposed services to their owners.

Your learning checkpoint

Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.

04Enumeration

Topics in focus

Enumerating Windows, Linux, network services, DNS, SNMP, LDAP, NFS, SMTP, SMB, and cloud resources.

Put it into practice

Document service and account information from a deliberately vulnerable lab system.

Your learning checkpoint

Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.

05Vulnerability Analysis

Topics in focus

Vulnerability research, scoring, scanners, configuration assessment, validation, prioritization, and remediation planning.

Put it into practice

Triage sample scanner findings, check false positives, and rank remediation priorities.

Your learning checkpoint

Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.

06System Hacking

Topics in focus

Authentication attacks, privilege escalation, persistence, file and data handling, evidence removal concepts, and defensive controls.

Put it into practice

Explain a controlled attack chain from supplied evidence and recommend controls at each boundary.

Your learning checkpoint

Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.

07Malware Threats

Topics in focus

Malware families, behavior, delivery, analysis fundamentals, indicators, sandboxing, and defensive countermeasures.

Put it into practice

Analyze a harmless malware-behavior report and identify useful detection indicators.

Your learning checkpoint

Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.

08Sniffing

Topics in focus

Packet capture, protocol analysis, switched-network attacks, detection, encryption, secure protocols, and monitoring controls.

Put it into practice

Inspect a supplied packet capture for sensitive plaintext and recommend encrypted alternatives.

Your learning checkpoint

Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.

09Social Engineering

Topics in focus

Human attack vectors, phishing, impersonation, physical techniques, awareness testing, policy, and prevention.

Put it into practice

Review simulated social-engineering messages and design a safe awareness and reporting exercise.

Your learning checkpoint

Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.

10Denial-of-Service

Topics in focus

DoS and DDoS concepts, amplification, botnets, service exhaustion, detection, response, and resilience.

Put it into practice

Use traffic charts to distinguish a capacity incident from an availability attack; propose mitigations.

Your learning checkpoint

Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.

11Session Hijacking

Topics in focus

Session identifiers, cookies and tokens, transport and application risks, detection, and secure session design.

Put it into practice

Review a training application's cookie settings and explain session-expiry and transport protections.

Your learning checkpoint

Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.

12Evading IDS, Firewalls & Honeypots

Topics in focus

Security-control behavior, traffic inspection, evasion concepts, decoys, detection engineering, and defensive tuning.

Put it into practice

Compare sanitized firewall and IDS logs to understand visibility gaps and defensive tuning.

Your learning checkpoint

Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.

13Hacking Web Servers

Topics in focus

Server enumeration, misconfiguration, authentication, patching, logging, common attack paths, and hardening.

Put it into practice

Inspect a mock web-server configuration for unnecessary exposure and hardening opportunities.

Your learning checkpoint

Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.

14Hacking Web Applications

Topics in focus

Application architecture, input validation, authentication, sessions, access control, APIs, business logic, and secure testing.

Put it into practice

Map an intentionally vulnerable training application's trust boundaries and document a finding.

Your learning checkpoint

Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.

15SQL Injection

Topics in focus

Injection causes, discovery, database behavior, validation in safe labs, parameterization, and remediation.

Put it into practice

Explain why a sample unsafe database query is vulnerable and compare it with a parameterized query.

Your learning checkpoint

Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.

16Hacking Wireless Networks

Topics in focus

Wireless standards, discovery, authentication, encryption, common exposure patterns, secure assessment, and hardening.

Put it into practice

Review a lab wireless design for authentication, encryption, and guest isolation.

Your learning checkpoint

Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.

17Hacking Mobile Platforms

Topics in focus

Mobile architecture, app storage, permissions, communications, device management, testing, and defensive design.

Put it into practice

Assess a fictional mobile-app permission list and propose device and application safeguards.

Your learning checkpoint

Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.

18IoT & OT Hacking

Topics in focus

Connected-device and industrial environments, protocols, trust boundaries, common weaknesses, safe testing, and segmentation.

Put it into practice

Threat-model an isolated sensor network, emphasizing safety and the limits of active testing.

Your learning checkpoint

Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.

19Cloud Computing

Topics in focus

Shared responsibility, identity, storage, compute, containers, serverless, misconfiguration, monitoring, and remediation.

Put it into practice

Review sample cloud permissions and storage settings for excessive access and exposure.

Your learning checkpoint

Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.

20Cryptography

Topics in focus

Symmetric and asymmetric cryptography, hashing, PKI, certificates, encryption use cases, attacks, and implementation safeguards.

Put it into practice

Compare hashing, symmetric encryption, and public-key use in a secure data-transfer scenario.

Your learning checkpoint

Submit your reasoning and supporting evidence. Explain the decisions you made, the limitations of your approach, and what you would improve after feedback.

RSAY ITCCERTIFICATE OF COMPLETION

RECOGNIZE YOUR PROGRESS

Your learning. Your achievement.

Receive an RSAY ITC completion certificate when you meet the attendance, activities, and assessment requirements published in your cohort guide.

Completion is not vendor certification

The RSAY certificate records training completion. Vendor certification requires its own exam and applicable eligibility criteria. An exam voucher is not included unless explicitly confirmed in your package.

CERTIFICATION EXAM

Know your next milestone.

Certification / version
CEH v13 AI
Exam duration
4 hours
Assessment
125 multiple-choice questions

Exam policies can change. Verify current requirements with the certification provider before booking. Training does not guarantee a pass.

Review official requirements ↗

MAKE ROOM FOR YOUR NEXT SKILL

Course schedule & pricing

An intensive week, evening sessions, or weekends. Explore a learning rhythm that fits your life.

Example schedules · not open cohorts
Compare three 40-hour plans. Dates, delivery, breaks, venue, and final price must be confirmed by RSAY. Choosing a plan does not book or charge you.

All times: Riyadh · UTC+3

TRAINING PLAN
DATES & HOURS
TRAINING PRICE
CHOOSE DELIVERY
EXAMPLE

Five-day intensive

Sunday–Thursday · 09:00–17:00

Online or in-person · venue to be confirmed
4 Oct 2026 – 8 Oct 2026

5 × 8 hours = 40 hours

View every session
  1. 4 Oct 2026 09:00–17:00
  2. 5 Oct 2026 09:00–17:00
  3. 6 Oct 2026 09:00–17:00
  4. 7 Oct 2026 09:00–17:00
  5. 8 Oct 2026 09:00–17:00
SAR 3,000Indicative training price. Confirm tax and inclusions before payment. Vendor exam voucher is separate unless confirmed.
EXAMPLE

Weekday evenings

Sunday–Wednesday · 18:00–20:00

Online or in-person · venue to be confirmed
4 Oct 2026 – 4 Nov 2026

20 × 2 hours = 40 hours

View every session
  1. 4 Oct 2026 18:00–20:00
  2. 5 Oct 2026 18:00–20:00
  3. 6 Oct 2026 18:00–20:00
  4. 7 Oct 2026 18:00–20:00
  5. 11 Oct 2026 18:00–20:00
  6. 12 Oct 2026 18:00–20:00
  7. 13 Oct 2026 18:00–20:00
  8. 14 Oct 2026 18:00–20:00
  9. 18 Oct 2026 18:00–20:00
  10. 19 Oct 2026 18:00–20:00
  11. 20 Oct 2026 18:00–20:00
  12. 21 Oct 2026 18:00–20:00
  13. 25 Oct 2026 18:00–20:00
  14. 26 Oct 2026 18:00–20:00
  15. 27 Oct 2026 18:00–20:00
  16. 28 Oct 2026 18:00–20:00
  17. 1 Nov 2026 18:00–20:00
  18. 2 Nov 2026 18:00–20:00
  19. 3 Nov 2026 18:00–20:00
  20. 4 Nov 2026 18:00–20:00
SAR 3,000Indicative training price. Confirm tax and inclusions before payment. Vendor exam voucher is separate unless confirmed.
EXAMPLE

Five weekends

Friday–Saturday · 09:00–13:00

Online or in-person · venue to be confirmed
9 Oct 2026 – 7 Nov 2026

10 × 4 hours = 40 hours

View every session
  1. 9 Oct 2026 09:00–13:00
  2. 10 Oct 2026 09:00–13:00
  3. 16 Oct 2026 09:00–13:00
  4. 17 Oct 2026 09:00–13:00
  5. 23 Oct 2026 09:00–13:00
  6. 24 Oct 2026 09:00–13:00
  7. 30 Oct 2026 09:00–13:00
  8. 31 Oct 2026 09:00–13:00
  9. 6 Nov 2026 09:00–13:00
  10. 7 Nov 2026 09:00–13:00
SAR 3,000Indicative training price. Confirm tax and inclusions before payment. Vendor exam voucher is separate unless confirmed.
Check the confirmed training calendar ↗

BEFORE YOU ENROLL

A clear start. Support all the way.

Talk to RSAY
Prerequisites

Review the intermediate level and intended audience. Relevant networking and operating-system knowledge helps with technical security courses; our team can assess your starting point.

Technical requirements

A computer, current browser, reliable internet, and clear audio. Software, virtual-machine requirements, and lab access are specified before registration is confirmed.

Learning schedule

The cohort guide confirms dates, breaks, live hours, self-study, activities, and assessments. Example plans on this page are illustrative until confirmed.

Measuring progress

Knowledge checks, practical activities, feedback, and a final review connect to learning outcomes. Completion criteria and assessment weights are published in the cohort guide.

Support & accessibility

Tell us about learning support or accessibility needs before enrollment. Our team can clarify attendance, complaints, privacy, and refund policies.

Learner policies & rights ↗