Festival Season Offer15% off on all our programmes — claim it before you enrol
MODULE 5 OF 6  ·  20 Hrs  ·  2 Weeks

Advanced Exploitation, Cryptography & Mobile Security

Attack surfaces don't stop at the network edge. This module extends offensive testing into IoT, mobile and cryptographic systems — the emerging areas most assessments now have to cover.

Who This Module Is For
Students who have completed core penetration testing and are ready to assess IoT, mobile and cryptographic implementations.
Real-World Relevance
IoT and mobile assessments are a fast-growing line item in enterprise VAPT scopes, and cryptographic weaknesses remain one of the most commonly missed findings in junior-level testing.
Program OverviewView Hands-On Labs
Curriculum

What You Will Learn

A detailed, industry-aligned breakdown of every topic covered in this module.

  • IoT concepts and IoT-specific attack vectors
  • Cryptography and encryption fundamentals — symmetric, asymmetric and hashing
  • Steganography and data-hiding techniques across image, audio and text
  • Mobile security fundamentals and the mobile threat landscape
  • Android application security and Android hacking techniques
  • Password cracking and recovery techniques — dictionary, brute-force and rule-based
  • Network discovery and host scanning at scale
  • Encryption key management basics
  • Common cryptographic attack patterns and weak-implementation risks
  • Mobile device hardening and secure configuration
  • IoT device discovery and exposure assessment
Technology Stack

Tools You Will Use

Hands-on time with the same tools used in professional security operations and penetration-testing engagements.

Angry IP Scanner

Lightweight IP and port scanner used for rapid host discovery across a network range.

John the Ripper

Password-cracking tool used to test hash strength via dictionary, brute-force and rule-based attacks.

Aircrack-ng

Wireless auditing suite used to assess WiFi encryption strength and test wireless network defences.

Hashcat

GPU-accelerated password recovery tool used for large-scale hash-cracking exercises.

Kali Linux

Debian-based penetration testing distribution preloaded with the industry-standard offensive security toolset.

Practical Work

Hands-On Labs

Enterprise and SOC-style lab scenarios, run inside your isolated penetration-testing environment.

01

Crack a set of password hashes using dictionary and brute-force techniques.

02

Extract a hidden payload using steganographic analysis.

03

Assess an Android application for common mobile security weaknesses.

04

Discover and fingerprint live hosts and IoT devices on a lab network.

05

Evaluate a wireless network's encryption implementation for cryptographic weaknesses.

Evaluation

Assessment

Knowledge Assessment

Quiz covering cryptography fundamentals, the mobile threat landscape and IoT attack surfaces.

Practical Evaluation

Students must recover credentials from an assigned hash set and document one mobile or IoT vulnerability finding.

Portfolio

Projects

Industry-style deliverables added directly to your project portfolio.

Portfolio Project 01

Password Security & Cryptographic Weakness Assessment

Recover and analyse a password set, then report on the cryptographic weaknesses that allowed it.

Portfolio Project 02

Mobile Application Security Report (Android)

A structured security review of an Android application with findings and remediation guidance.

Portfolio Project 03

IoT Device Exposure & Attack Surface Assessment

Discovery and exposure analysis of IoT devices on a lab network.

Module Outcome

What This Module Builds

Students extend their offensive skillset to IoT, mobile, wireless and cryptographic systems, identifying vulnerabilities across emerging attack surfaces.

Maps to job roles
Mobile Security AnalystVAPT EngineerIoT Security AnalystSecurity Consultant

Continue building your cybersecurity portfolio

Next up: Module 6 — AI-Powered Security Operations & Cyber Defense

Go to Module 6Full Roadmap