top of page

EFFORT

4-8 WEEKS

40h-60h trainer-led

FORMAT

Self-paced

or instructor-led

CERTIFIES

City & Guilds

Assured

PREREQUISITES

None

Basic computer skills and ,  Networking Knowledge

For teams & organizations — volume pricing, instructor-led delivery, custom scenarios.

1,600

NX201 – Network Research

Valid for 6 months

// NX DEFENSE · LEVEL 2 · NX201

Network Research

Master network analysis techniques

Learn essential network and security analysis through hands-on practice with professional tools. From TCP/IP protocols to attack techniques, gain the skills needed for network security testing.

Overview

This course provides a comprehensive introduction to information security fundamentals using Linux as the primary platform. Students learn to leverage virtualization, networking protocols, and cybersecurity techniques to strengthen network defense capabilities. The program covers network scanning, attack analysis, and defense strategies through hands-on experience with industry-standard tools. It is designed for individuals seeking to build foundational skills in network security research and defensive operations.

Learning Objectives

By the end of this course, students will be able to:

 

  • Configure and administer Linux systems for security operations, including user management and package handling

  • Manipulate files and data using Linux command-line tools and scripting techniques

  • Configure and troubleshoot network services including SSH, FTP, DNS, DHCP, and Apache web servers

  • Conduct network reconnaissance using Nmap and Masscan to identify hosts, services, and vulnerabilities

  • Execute offline brute-force attacks using wordlist generation and password cracking tools

  • Develop Linux shell scripts to automate security tasks and system administration operations

  • Analyze network traffic and extract objects from packet captures using Wireshark filtering techniques

  • Identify and explain TCP/IP model layers, protocols, and network communication principles

  • Perform online attacks including service brute-forcing and man-in-the-middle techniques

  • Create and deploy trojan payloads using Metasploit Framework tools including Msfvenom and Msfconsole

  • Configure firewalls to block ports and monitor network devices for security threats

Course Modules

  1. Intro to Linux
    This module introduces students to Linux operating systems and virtualization technologies. Students learn to install and configure Linux distributions within VMware environments, explore fundamental system architecture, and navigate directory structures. The module establishes the foundation for using Linux as a security research platform.
        

  2. Text Manipulation
    Students master Linux command-line tools for processing and transforming text data. This module covers file manipulation commands essential for log analysis, data extraction, and information processing tasks common in security operations. Students learn to combine commands and use regular expressions for efficient data handling.
       

  3. Network Services
    This module explores critical network services used in enterprise environments. Students configure and troubleshoot SSH for secure remote access, FTP for file transfers, Apache web servers for hosting applications, and understand DNS and DHCP functionality. The module provides hands-on experience administering services that are frequently targeted in attacks.
        

  4. Scanning
    Students learn network reconnaissance techniques using industry-standard scanning tools. This module covers Nmap for comprehensive host and service discovery, including port scanning, version detection, and OS fingerprinting. Students also explore Masscan for rapid large-scale network scanning and understand how to interpret scan results for security assessments.
     

  5. Offline Brute-Force
    This module teaches offline password attack methodologies used in security assessments. Students learn to create effective wordlists, understand password hash formats, and utilize cracking tools to recover credentials from captured authentication data. The module emphasizes the importance of strong password policies and secure credential storage.
       

  6. Linux Scripting
    Students develop automation skills by writing shell scripts for security tasks and system administration. This module covers scripting fundamentals, control structures, and practical applications for automating repetitive operations. Students create scripts for log parsing, system monitoring, and security tool orchestration.
       

  7. Wireshark
    This module provides comprehensive training in network traffic analysis using Wireshark. Students learn packet capture techniques, apply advanced filtering to isolate specific traffic patterns, and extract files and objects from network sessions. The module develops skills essential for incident response, troubleshooting, and security monitoring.
     

  8. TCP/IP Model
    Students gain deep understanding of network communication fundamentals through the TCP/IP protocol stack. This module covers the four layers of the TCP/IP model, protocol functions at each layer, and how data encapsulation works across the stack. Understanding this model is critical for analyzing network behavior and identifying security issues.
       

  9. Online Attacks
    This module explores active network attack techniques including man-in-the-middle attacks, ARP poisoning, and service brute-forcing. Students learn how attackers intercept communications, manipulate network traffic, and compromise network services in real-time. The module emphasizes detection methods and defensive countermeasures alongside attack mechanics.
     

  10. Intro to Trojans
    Students learn payload creation and exploitation techniques using the Metasploit Framework. This module covers developing reverse connection payloads, bind payloads, and using Msfvenom for payload generation and Msfconsole for exploitation operations. Students understand how trojans establish persistence and evade detection.
       

  11. Intro to Firewalls
    This module teaches firewall fundamentals including operation principles, configuration techniques, and defensive strategies. Students learn to block ports, create firewall rules, and monitor network devices for suspicious activity. The module emphasizes using firewalls as a critical component of defense-in-depth security architecture.

// Where you'll do all of this

You won't watch this.

You'll run it live.

Every module above is executed inside Cyberium Arena — real tools on real nodes, deployed on the live internet, with live threat intelligence running from your first login. Not a sandbox. Not a VM. Not a video.

Live Internet

Real Tools

Sand Box

VM

Cyberium2_Login.png
Cyberium2_Student_1.png
Cyberium2_Training_Stats.png
Cyberium2_Specto_Cases.png

Delivery and Assessment

The course combines theoretical instruction with extensive hands-on labs where students work with Linux systems, security tools, and realistic network scenarios. Students complete practical exercises in virtualized environments, applying scanning techniques, analyzing traffic captures, and implementing security measures. Assessment includes demonstrations of technical skills and a comprehensive project integrating learned concepts.

Certification

Certificate of completion. This course prepares students for the ThinkCyber Network Research certification, accredited by City & Guilds.

1,600

NX201 – Network Research

Valid for 6 months

Ready when you are

Trusted since 2016 — national police, military cyber units & Fortune 500 teams · City & Guilds Assured

bottom of page