raqyan Join Raqyan
CoursesTech › Ethical Hacking Foundations
Tech

Ethical Hacking Foundations

Learn to think like an attacker so you can defend like a professional — hands-on with real industry tools, inside legal practice labs, with ethics and the law first from night one.

Ground → Rise → Peak · the full climb
8 live sessions 4 weeks Cohort of 12–15 English · Arabic support Free tools only
Price
Ethical Hacking Foundations — course cover
By the time you reach the Peak

What you'll walk away with.

Understand how attackers think — so you can stop them
Hands-on with Kali Linux, Nmap, Wireshark, and Burp Suite
Recon, scan, and enumerate a target — legally, in practice labs
Find and prove common web vulnerabilities
Know exactly where the legal line is, in Egypt and Saudi Arabia
A complete, written security report you can show employers
The judgement to use AI safely in security work — not blindly
A clear next step: bug bounty, certifications, or freelance work
~100 bilingual cybersecurity terms
Proven ability to present technical findings in English
The climb

Eight live sessions. One full climb.

Two sessions a week for four weeks, live and hands-on — every task done legally, in safe practice environments, with permission only. Your capstone security report starts on night one: each session's Discovery Challenge becomes a section of it, so Session 8 is assembly and defence, not a scramble.

Ground · Sessions 1–2

Get your footing

Understand the terrain — and the line you never cross — before you touch a single tool.

  • 01
    Welcome to the Hidden Digital World + Think Like an Ethical HackerWhat cybersecurity is and why it matters to you, the hacker mindset (curiosity, not malice), and the most important half hour of the course: authorization, scope discipline, and the real cybercrime law that applies in Egypt and Saudi Arabia. Choose your capstone target field tonight.
    Attack case study
  • 02
    How the Internet Really WorksHow data travels, IP and DNS, HTTP versus HTTPS, cookies and sessions — and what actually happens when you click Login. This session stands alone deliberately: everything above it depends on this ground being solid.
    Network trace
Rise · Sessions 3–6

See the real threats — and the tools that find them

The human attack surface, identity, the professional toolbox, and how websites actually break.

  • 03
    Your Digital Footprint + Hacking HumansOSINT basics, data breaches and privacy — then social engineering, phishing, scams and deepfakes. Where most real breaches actually start. We use OSINT on ourselves and with permission, never to expose others.
    Phishing checklist
  • 04
    The Secrets of AuthenticationHow passwords are really stored, the attacks that break them, MFA and password managers. Ends with a guided lab setup so Session 5 opens with your tools already working.
    Auth review · lab ready
  • 05
    Inside the Hacker's ToolboxKali Linux, Nmap, Wireshark, Burp Suite Community, Shodan and VirusTotal — hands-on from minute one. Fluency with these exact tools is what a junior security interview tests.
    Nmap scan findings
  • 06
    The Secret Life of WebsitesLogin systems, databases and APIs behind the scenes, plus SQL injection and XSS demonstrated safely in PortSwigger's legal labs — applications built to be broken. Web vulnerabilities are where beginners earn their first bug bounty income.
    Vulnerability write-up
Peak · Sessions 7–8

Look ahead — and prove what you learned

Where AI genuinely helps, where it gets beginners into trouble, and your route to first income.

  • 07
    AI Meets CybersecurityAI for attackers and defenders, AI-powered scams — then the honest answer to “Can’t AI just hack for me?” It explains tools and drafts your report; it has no access to your target, no sense of your scope, and it invents tool flags and CVEs. Running a command you do not understand against a system you do not own is how a beginner commits a crime by accident.
    AI verification notes
  • 08
    Your Cyber Journey + Capstone DefenceAssemble four weeks of Discovery Challenges into one security report and defend it live in English with Arabic support available. Then career paths, the certifications that open doors, and your personal six-month roadmap to first income.
    Finished report, defended

What you need to bring

A laptop and an internet connection — that is it. This course runs entirely on free and open-source tools (Kali Linux, Nmap, Wireshark, Burp Suite Community) and free legal practice labs (TryHackMe, PortSwigger Web Security Academy), so there is no paid platform to buy. Browser-based labs are the primary path, so no student is blocked by their laptop, and lab setup happens together inside Session 4. No prior experience, networking, or Linux background needed. Between sessions you are never stuck alone — the Raqyan community is there when your setup breaks at 11pm.

The Jisr Method

Taught in English, with Arabic beside you.

Every session runs in English — the language the security field runs on — with Arabic scaffolding and a glossary for every key term, so a new word never stops you learning the real thing behind it.

Your instructor

Learn it from someone who does it — responsibly.

MA
Moaaz Afify
Cybersecurity engineer & instructor · Co-founder of Raqyan

Teaches offensive security the responsible way — ethics and the law first, hands-on always. He built this climb so you finish with a real security report you can put in front of an employer, and the judgement to use these skills legally.

Ready to join the next cohort?

Cohorts are capped at 15 so every project gets a real conversation. Tell us about you and we will be in touch.

Join this course

Pricing and certification details are shared when you get in touch.