← Back to Skills Library

Kali Linux

Information Technology > Operating system

Description

Kali Linux is a specialized Linux distribution designed for cybersecurity professionals and ethical hackers. It comes preloaded with a variety of tools for penetration testing, network analysis, and digital forensics. Users start by learning basic Linux commands and the principles of ethical hacking. As they progress, they delve into more complex tasks like network scanning, password cracking, and exploitation using tools like Metasploit. Advanced users can create custom payloads, perform post-exploitation tasks, and even reverse engineer malware. Mastery involves advanced web application testing, intrusion detection system evasion, and forensic analysis. Each level of proficiency requires a deeper understanding of both the tools and the underlying cybersecurity concepts.

Expected Behaviors

✎
LEVEL 1

Fundamental Awareness

At this level, individuals are expected to understand the basic purpose of Kali Linux and its role in ethical hacking. They should be familiar with basic Linux commands and have a general understanding of ethical hacking principles. However, they may not yet be able to apply these skills in practical scenarios.

🌱
LEVEL 2

Novice

Novices can install and configure Kali Linux, perform basic network scanning using Nmap, crack passwords with John the Ripper, and use Wireshark for packet analysis. They are beginning to apply their knowledge in practical situations but still require guidance.

🌍
LEVEL 3

Intermediate

Intermediate users can exploit vulnerabilities with Metasploit, hack wireless networks with Aircrack-ng, test web applications with OWASP ZAP, and conduct penetration testing with Burp Suite. They can solve problems independently but may lack the depth of understanding of advanced users.

⭐
LEVEL 4

Advanced

Advanced users can perform complex tasks such as creating custom payloads with Veil-Evasion, post-exploitation with Mimikatz, and network sniffing and spoofing with Ettercap. They have a deep understanding of Kali Linux tools and can adapt their approach based on the situation.

🏆
LEVEL 5

Expert

Experts can conduct advanced web application testing with SQLMap and Nikto, evade intrusion detection systems with Fragroute, reverse engineer malware with Radare2, and perform forensic analysis with Autopsy and Sleuth Kit. They have a comprehensive understanding of Kali Linux and can innovate new solutions.

Micro Skills

✎
LEVEL 1

Fundamental Awareness

Understanding the concept of penetration testing
Knowing the role of Kali Linux in penetration testing
Familiarity with the Kali Linux interface
Knowledge of the tools included in Kali Linux
Awareness of the potential misuse of Kali Linux
Commitment to using Kali Linux ethically
Understanding the Linux file system structure
Managing files from the command line
Creating files and directories
Moving and renaming files and directories
Deleting files and directories
Viewing running processes
Controlling processes
Understanding Linux file permissions
Changing file permissions and ownership
Defining ethical hacking
Defining malicious hacking
Understanding computer crime laws
Awareness of professional ethics in hacking
Understanding the concept of authorization in penetration testing
Preparing for a penetration test
Defining 'white hat', 'black hat' and 'grey hat' hackers
Understanding the motivations and methods of different types of hackers
🌱
LEVEL 2

Novice

Identifying the correct version for your system
Locating and navigating to the official download page
Understanding the difference between light, full and netinstaller versions
Choosing the right software for creating bootable media
Loading the Kali Linux ISO into the software
Selecting the correct drive to write the ISO
Successfully writing and verifying the ISO to the media
Setting up a new virtual machine in software like VirtualBox
Configuring the VM settings for optimal performance
Booting from the Kali Linux media and starting the installation process
Following the installation prompts correctly
Rebooting into the new Kali Linux installation
Using apt-get update to refresh package lists
Using apt-get upgrade to upgrade existing packages
Understanding when and why to use apt-get dist-upgrade
Setting a static IP address
Configuring DNS settings
Testing network connectivity with ping and other tools
Learning the basic Nmap command structure
Understanding common Nmap flags and options
Writing and testing simple Nmap commands
Using Nmap to ping sweep a network
Interpreting the results of a ping sweep
Using Nmap to scan for open ports on a target
Understanding the difference between TCP and UDP scans
Interpreting the results of a port scan
Reading and understanding Nmap output
Logging and saving Nmap results
Learning the basics of cryptographic hashing
Understanding how salts improve password security
Loading a hash file into John the Ripper
Starting a cracking session with a wordlist
Monitoring the progress of a cracking session
Finding and downloading popular wordlists
Modifying wordlists with custom words and patterns
Learning about legal and ethical considerations of password cracking
Implementing safety measures to prevent unauthorized access
Starting a new capture session in Wireshark
Selecting the correct network interface for capture
Stopping and saving a capture session
Learning the Wireshark display filter syntax
Applying filters to isolate specific types of traffic
Inspecting individual packets in the packet details pane
Recognizing common signs of network attacks
Saving a capture file for later analysis
Exporting filtered data to a new file
🌍
LEVEL 3

Intermediate

Understanding Metasploit Framework
Identifying and selecting appropriate exploits
Configuring and launching exploits
Using payloads in Metasploit
Understanding wireless networking basics
Capturing wireless traffic
Cracking WEP and WPA/WPA2 passwords
Mitigating wireless network attacks
Understanding web application vulnerabilities
Setting up and configuring OWASP ZAP
Performing automated scans
Interpreting scan results and identifying false positives
Understanding the Burp Suite interface
Configuring and using the Proxy, Spider, Scanner, and Intruder tools
Analyzing HTTP requests and responses
Testing for common web vulnerabilities
⭐
LEVEL 4

Advanced

Understanding and using advanced Metasploit modules
Creating and managing multiple sessions
Exploiting through client-side attacks
Post-exploitation privilege escalation
Understanding different payload types
Customizing payload options
Bypassing antivirus detection
Integrating payloads into exploits
Extracting plaintext passwords from memory
Pass-the-hash techniques
Golden ticket creation and use
Securing systems against Mimikatz attacks
Understanding and using different sniffing modes
Performing man-in-the-middle attacks
Spoofing DNS and redirecting traffic
Detecting and mitigating Ettercap attacks
🏆
LEVEL 5

Expert

Understanding SQL injection
Using SQLMap
Creating automation scripts
Running automated scans
Understanding web server vulnerabilities
Using Nikto
Analyzing scan results
Reporting findings
Understanding IDS evasion techniques
Using Fragroute
Setting up test environments
Running evasion tests
Understanding binary formats
Using Radare2
Understanding malware behavior
Using Radare2 for debugging
Understanding digital forensics principles
Using Sleuth Kit
Understanding forensic analysis
Using Autopsy

Skill Overview

  • Expert12 months experience
  • Micro-skills121
  • Roles requiring skill0

Sign up to prepare yourself or your team for a role that requires Kali Linux.

LoginSign Up