← Back to catalogue

Discipline herald — Security
Discipline herald

Level 2 · M.Sc

MSc Blackhat Offensive Security

Security · Live · v0

Offensive security foundations, taught CTF-style — reconnaissance, exploitation theory, and detection-first analysis.

Path type
Security
Requirements
Open entry
Enrollment

€19.90

Deadline
Next cohort starts 2027-09-06 (AY 2027/28)
Length
~1 year · 42 phases
Language
English · Español
Content freshness
Curriculum updated 2026-08-23 · content rev 803433c2
Cortex Credits (CC)
126 CC
What are Cortex Credits?
Syllabus
View the phase syllabus
  1. Foundations & operator tooling
  2. The authorized-self-attack ethic & rules of engagement
  3. Stand up the shared reference lab
  4. The attacker's model & the trace-first doctrine
  5. OSINT, host discovery & the network map
  6. Port scanning mastery, evasion & firewall-rule mapping
  7. Port scanning mastery II: service/version + NSE
  8. DNS & infrastructure enumeration
  9. Web surface enumeration
  10. Recon debrief: the map & the trace it left
  11. Vulnerability scanning
  12. Web-app probing & template scanning
  13. TLS & crypto-posture inspection
  14. Manual verification vs scanner noise
  15. Vuln-assessment debrief
  16. Passive capture & the silent observer
  17. Dissection with tshark
  18. MITM, wireless & name-service poisoning
  19. Packet crafting I: hping3
  20. Packet crafting II: Scapy at the CLI
  21. Interception debrief
  22. Credential attacks I: online & poisoning
  23. Credential attacks II: offline cracking
  24. Initial access via the web
  25. Foothold & reverse shells
  26. Privilege-escalation enumeration
  27. Linux privesc exploitation paths
  28. Container & boundary-escape concepts
  29. Post-ex enumeration, looting, pivoting & tunnelling
  30. Persistence mechanisms
  31. Hiding I: userland (LD_PRELOAD)
  32. Hiding II: capture & tampering
  33. Beaconing, covert channels & exfil
  34. Persistence & hiding debrief
  35. Evasion & anti-forensics analysis
  36. Framework literacy: Metasploit at the CLI
  37. Lightweight C2 & tradecraft: the traces convenience cannot erase
  38. The professional pentest report: every finding carries its detection
  39. The purple-team debrief
  40. Capstone: full authorized engagement
  41. Hardening feedback loop & postmortem
  42. Portal integration
Enrolment prerequisites
  • A verified account and admissions-committee approval.

What changed

Every release of this programme, newest first.

  1. v0 Pilot Wave A backfill: v0 pilot baseline

Professor: Vacancy available

Sign in to request enrolment

↑↓ to move · ↵ to open · esc to close Sign in to search programmes and course content.