

Certified Ethical Hacker (CEH v13) — AI-Powered
Learn to think like the attacker.
CEH v13 is the world's most recognized ethical-hacking certification — and the first version to integrate AI across every attack domain. If you are looking for an ethical hacking course in Mumbai, this is it, delivered the way it was meant to be taught: instructor-led, fully hands-on, in a Mumbai-classroom + live-online format, with mentorship that runs until you clear the exam.
What is the CEH certification?
The Certified Ethical Hacker (CEH v13, EC-Council) is a foundational credential that teaches you to think and act like an attacker across the five phases of hacking, now with an AI-driven track. As an EC-Council Accredited Training Center, Macksofy runs it as a classroom and live-online ethical hacking course in Mumbai, with hands-on labs.
Outcomes — concrete, measurable.
Every capability you walk away with, mapped to the cybersecurity domains and the career roles they unlock in India + UAE.
Run end-to-end recon, scanning and enumeration on real targets
Is CEH right for you?
- Aspiring penetration testers and red-team operators
- SOC analysts who need offensive context to write better detections
- Network and system administrators moving into security
- Engineering students preparing for a cybersecurity career
What we assume you know
- Working knowledge of TCP/IP, OSI model, common protocols
- Comfort with Linux and Windows command lines
- No prior hacking experience required — we cover the basics
21 modules. 5 days intensive or 8 weekends.
Search modules and topics, and switch between Split and Track views to see how every module flows into the next.
Module 01 · Introduction to Ethical Hacking
- 01Information security overview
- 02Cyber kill chain & MITRE ATT&CK
- 03Hacker classes, attack vectors, IoCs
- 04Information security laws — Indian IT Act 2000, UAE cyber law
Module 02 · Footprinting and Reconnaissance
- 01Active vs passive footprinting
- 02OSINT — theHarvester, Maltego, Shodan, Censys
- 03WHOIS, DNS, network footprinting
- 04Email, web, social-media footprinting
Module 03 · Scanning Networks
- 01Network scanning concepts
- 02Nmap deep-dive — NSE, scan timing, evasion
- 03Banner grabbing, OS fingerprinting
- 04Drawing network diagrams
Module 04 · Enumeration
- 01NetBIOS, SNMP, LDAP, SMTP enumeration
- 02DNS, NFS, NTP, IPv6 enumeration
- 03Active Directory enumeration basics
Module 05 · Vulnerability Analysis
- 01Vulnerability classification & CVSS 3.1
- 02Vulnerability assessment lifecycle
- 03Tools — Nessus, OpenVAS, Nikto, Qualys
Module 06 · System Hacking
- 01Password cracking — Hashcat, John the Ripper
- 02Privilege escalation (Linux + Windows)
- 03Maintaining access, covering tracks
- 04Steganography & rootkits
Module 07 · Malware Threats
- 01Malware concepts, APT, fileless malware
- 02Trojan / virus / worm / ransomware analysis
- 03Static + dynamic malware analysis basics
- 04Anti-malware countermeasures
Module 08 · Sniffing
- 01Packet sniffing — Wireshark, tcpdump
- 02MAC flooding, DHCP / ARP / DNS spoofing
- 03Bettercap MITM workflows
- 04Sniffing detection & countermeasures
Module 09 · Social Engineering
- 01Human-based, computer-based, mobile-based vectors
- 02Phishing simulation with GoPhish
- 03Insider threats & identity theft
Module 10 · Denial-of-Service
- 01Volumetric, protocol, application-layer DoS
- 02DDoS botnets and reflection attacks
- 03Mitigation strategies
Module 11 · Session Hijacking
- 01Application-layer (web) session hijacking
- 02Network-layer hijacking — TCP/IP, MITM
- 03Tools — Burp, ZAP — and detection
Module 12 · Evading IDS, Firewalls & Honeypots
- 01IDS / IPS evasion techniques
- 02Firewall bypass — fragmentation, tunneling
- 03Honeypot detection
Module 13 · Hacking Web Servers
- 01Web-server architecture and attack surface
- 02Misconfiguration, directory traversal, source-code disclosure
- 03Patch management and hardening
Module 14 · Hacking Web Applications
- 01OWASP Top 10 hands-on — XSS, IDOR, SSRF, XXE, deserialization
- 02Burp Suite Pro — proxy, repeater, intruder, extensions
- 03API testing (REST + GraphQL)
- 04Authentication / session-management attacks
Module 15 · SQL Injection
- 01In-band, blind, time-based, second-order SQLi
- 02sqlmap automation and manual exploitation
- 03WAF bypass techniques
Module 16 · Hacking Wireless Networks
- 01802.11 fundamentals
- 02WEP / WPA / WPA2 / WPA3 attacks
- 03Aircrack-ng suite + Hashcat handshake cracking
- 04Evil twin, KARMA, enterprise EAP attacks
Module 17 · Hacking Mobile Platforms
- 01Android architecture + reversing — Frida, Objection
- 02iOS attack surface
- 03OWASP MASVS basics
- 04Mobile device management bypass
Module 18 · IoT and OT Hacking
- 01IoT attack surface — firmware, BLE, ZigBee
- 02OT / SCADA introduction — Modbus, DNP3
- 03IoT firmware extraction (binwalk)
Module 19 · Cloud Computing
- 01AWS / Azure / GCP attack chains
- 02Container & K8s escapes
- 03Serverless attacks
- 04Cloud-native pentest tooling — Pacu, ScoutSuite
Module 20 · Cryptography + AI-Driven Offense (v13)
- 01Symmetric / asymmetric crypto attacks
- 02PKI, hashing, certificate pinning
- 03AI-assisted recon, prompt injection, LLM jailbreaks (NEW v13)
- 04Defensive AI controls
Capstone · Exam preparation + mock CEH (Macksofy)
- 01End-to-end engagement on a corporate-grade lab
- 02Mock CEH exam under timed conditions
- 03Reporting and documentation
The same toolkit our consultants use on real engagements.
Not academic exercises. The tools below are exactly what Macksofy consultants run on paying client engagements every week — so the muscle memory you build in class carries straight into your first job.
What roles open up after you complete this.
| Role | Salary band | Experience |
|---|---|---|
| SOC Analyst (L1 / L2) | ₹4–7 LPA | 0–2 years |
| Junior Penetration Tester | ₹6–10 LPA | 1–3 years |
| Vulnerability Analyst | ₹6–9 LPA | 1–2 years |
| Cybersecurity Consultant | ₹8–12 LPA | 2–4 years |
We don’t promise jobs. We open doors.
70%+ of CEH graduates progress into security roles within 6 months. Our placement cell connects you with 80+ hiring partners across India and UAE.
- 1:1 resume and LinkedIn rewrite with our hiring desk
- Mock interviews with senior pen-testers (technical + behavioural)
- Direct intros to hiring managers at our partner network
- Mentor-led exam-prep continues until you clear CEH
“Cleared CEH v13 on first attempt. Macksofy's labs were the difference — I'd already faced everything before exam day.”
Things students ask before enrolling.
Macksofy delivers this work to the following standards and regulator requirements. Definitions and controls are sourced from the issuing bodies below.
Get a fixed-price proposal in 48 hours.
Tell us about your security need — pentest, audit, training or a wider engagement. A senior consultant will reply within a few business hours.
- CERT-In Empanelled
- EC-Council ATC · CompTIA Authorized
- Thousands of professionals trained
- India + UAE engagements



