EdX

Penetration Testing - Post Exploitation (edX)

Offered by New York University, NYUx,
Penetration Testing - Post Exploitation (edX)

Learn post-exploitation phases of penetration testing, including Owning, Pivoting, Privilege Escalation and other advanced penetration testing topics. The machine's value is determined by the sensitivity of the data stored on it and the machine's usefulness in further compromising the network.

Class Deals by MOOC List - Click here and see EdX's Active Discounts, Deals, and Promo Codes.

This is the 8th course in the intermediate, undergraduate-level offering that makes up the larger Cybersecurity Fundamentals MicroBachelors Program. We recommend taking them in order, unless you have a background in these areas already and feel comfortable skipping ahead.

These topics build upon the learnings that are taught in the introductory-level Computer Science Fundamentals MicroBachelors program, offered by the same instructor.
This is a self-paced course that continues the development of ethical hacking skills. The curriculum provides an introduction to post-exploitation penetration testing topics. Among the topics covered are Owning, Pivoting, Privilege Escalation and other advanced penetration testing topics, The purpose of the Post-Exploitation phase is to determine the value of the machine compromised and to maintain control of the device for later use. The machine's value is determined by the sensitivity of the data stored on it and the machine's usefulness in further compromising the network. The methods the students learn in this phase are meant to help them identify and document sensitive information, identify configuration settings, communication channels, and relationships with other network devices that can be used to gain further access to the network. The students also learn how to set up one or more methods of accessing the machine later.

What you'll learn

  1. Discover credentials utilizing hash dumps
  2. Perform pass-the-hash attacks
  3. Document results of the penetration test
  4. Utilize currently exploited systems to gain access to others.
  5. Configure exploitation tools to pivot through a target environment
  6. Collapse what you'll learn

Syllabus

Week 1 - Post Exploitation - Owning, Pivoting, Privilege Escalation
Week 2 - Review of Web App Exploits
Week 3 - Exploitation – Passwords and Authentication
Week 4 - Penetration Testing Advanced Topics
Week 5 - Final Exam

Go to Class
MOOC List is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

Related Courses

Cybersecurity Risk Management (edX) EdX
Rochester Institute of Technology,RITx

Cybersecurity Risk Management (edX)

Learn key principles of risk analysis, risk assessment and risk mitigation for information security using both qualitative and quantitative methodologies. Cybersecurity risk management guides a growing number of IT decisions. Cybersecurity risks continue to have critical impacts on overall IT risk modeling, assessment and mitigation.

Jan 8th 2024
5-12 Weeks
Software Security (Cousera) Coursera
University of Maryland, College Park

Software Security (Cousera)

This course we will explore the foundations of software security. We will consider important software vulnerabilities and attacks that exploit them -- such as buffer overflows, SQL injection, and session hijacking -- and we will consider defenses that prevent or mitigate these attacks, including advanced testing and program analysis techniques. Importantly, we take a "build security in" mentality, considering techniques at each phase of the development cycle that can be used to strengthen the security of software systems.

May 20th 2024
5-12 Weeks
Vulnerabilidades y pruebas de penetración (Coursera) Coursera
Universidad de los Andes

Vulnerabilidades y pruebas de penetración (Coursera)

El curso Vulnerabilidades y pruebas de penetración busca que identifiques los conceptos de detección de vulnerabilidades y amenazas, los fundamentos de los ciberataques y de pruebas de penetración a sistemas. Este curso se desarrolla en cuatro (4) módulos en donde aprenderás a cómo Identificar las vulnerabilidades y amenazas de los ciberataques, recopilar la información disponible de la organización y los sistemas objetivo y la posterior identificación de los activos de información y las posibles amenazas, revisar como realizar la explotación de las vulnerabilidades de los sistemas para irrumpir en el mismo y poder acceder a los activos de información; es decir establecer el acceso a un sistema o recurso, determinar el valor del sistema comprometido y mantener el control para su uso posterior, y revisar como realizar la explotación de las vulnerabilidades de los servidores y las aplicaciones web.

Jun 22nd 2026
4 Weeks
Introduction to Safeguarding in the International Aid Sector (FutureLearn) FutureLearn
The Open University

Introduction to Safeguarding in the International Aid Sector (FutureLearn)

Become a safeguarding specialist and learn how to lead, develop, and implement a strong safeguarding policy in your organisation. Learn about safeguarding policies and procedures in the aid sector. This course will help those working in NGOs and development and humanitarian agencies to better understand the causes of harm, abuse, and exploitation.

Jan 24th 2022
5-12 Weeks
Ethical Hacking: An Introduction (FutureLearn) FutureLearn
Coventry University

Ethical Hacking: An Introduction (FutureLearn)

Learn the principles and methods of ethical hacking and penetration testing, and build your ethical hacking skills. Explore the principles and methods of ethical hacking. What is ethical hacking? How does it work? What principles do ethical hackers follow? Answer these questions and more with the course introducing ethical hacking. You will have the opportunity to learn the principles of ethical hacking and consider its legal and methodological foundations.

Jan 16th 2023
2 Weeks
Network Security (Udacity) Udacity
Georgia Institute of Technology,Udacity

Network Security (Udacity)

This course provides an introduction to computer and network security. Students successfully completing this class will be able to evaluate works in academic and commercial security, and will have rudimentary skills in security research. The course begins with a tutorial of the basic elements of cryptography, cryptanalysis, and systems security, and continues by covering a number of seminal papers and monographs in a wide range of security areas.

Self Paced
Self-Paced
Computer Forensics (edX) EdX
Rochester Institute of Technology,RITx

Computer Forensics (edX)

Learn the process, techniques and tools for performing a digital forensics investigation to obtain data related to computer crimes. Digital forensics involves the investigation of computer-related crimes with the goal of obtaining evidence to be presented in a court of law.

Jan 8th 2024
5-12 Weeks
Hacking and Patching (Coursera) Coursera
University of Colorado System

Hacking and Patching (Coursera)

In this MOOC, you will learn how to hack web apps with command injection vulnerabilities in a web site of your AWS Linux instance. You will learn how to search valuable information on a typical Linux systems with LAMP services, and deposit and hide Trojans for future exploitation. You will learn how to patch these web apps with input validation using regular expression. You will learn a security design pattern to avoid introducing injection vulnerabilities by input validation and replacing generic system calls with specific function calls.

Jun 22nd 2026
4 Weeks
Penetration Testing, Incident Response and Forensics (Coursera) Coursera
IBM

Penetration Testing, Incident Response and Forensics (Coursera)

This course gives you the background needed to gain Cybersecurity skills as part of the Cybersecurity Security Analyst Professional Certificate program. You will learn about the different phases of penetration testing, how to gather data for your penetration test and popular penetration testing tools. Furthermore, you will learn the phases of an incident response, important documentation to collect, and the components of an incident response policy and team. Finally, you will learn key steps in the forensic process and important data to collect.

Jun 15th 2026
4 Weeks