Kali Linux is the Debian-based distribution built specifically for penetration testing and security auditing, and it ships with hundreds of the tools security professionals use every day. This course starts from zero and gets you comfortable working in that environment, so you can run basic security assessments on your own.
You begin with Linux fundamentals: distributions, the shell, the file hierarchy and the core command line. From there you build a full home lab, installing Kali alongside deliberately vulnerable targets like Metasploitable and OWASP images in both VirtualBox and VMware, connected over a NAT network.
Tools and techniques you’ll use
Once the lab is running, the course moves into practical work with the tools that matter. You capture and inspect traffic with Wireshark and TCPDump, map networks and enumerate hosts with Nmap, and run exploits through Metasploit. You crack credentials with Hydra, John the Ripper and Hashcat, gather intelligence with theHarvester, Recon-NG, Maltego and DNS recon tools, and test web applications by intercepting traffic in Burp Suite.
The approach throughout is practical: a short piece of theory, then hands-on exercises so you apply each concept immediately. The course covers configuration, user and package management, system monitoring and firewall rules, so you can maintain and customize your own Kali install rather than just following steps blindly.
This is a foundational course. It gives you broad, approachable exposure to the essential toolset rather than deep specialization in any single tool. By the end, you will be able to install and configure Kali Linux, navigate it confidently from the command line, and run basic network scans, exploitation attempts and web assessments in a safe lab environment.
