# Hacked By Himel > A Trusted Cyber Security Learning Platform ## Posts - [বাংলাদেশের ব্যাংকগুলোর সাইবার নিরাপত্তা ঝুঁকি ও Phishing Simulation-এর প্রয়োজনীয়তা](https://academy.hbhsec.com/%e0%a6%ac%e0%a6%be%e0%a6%82%e0%a6%b2%e0%a6%be%e0%a6%a6%e0%a7%87%e0%a6%b6%e0%a7%87%e0%a6%b0-%e0%a6%ac%e0%a7%8d%e0%a6%af%e0%a6%be%e0%a6%82%e0%a6%95%e0%a6%97%e0%a7%81%e0%a6%b2%e0%a7%8b%e0%a6%b0-%e0%a6%b8/): বাংলাদেশ ব্যাংক ২০২৬ সালে একটি নতুন Cyber Security Framework (Version 1.0) জারি করেছে, যা অনুযায়ী দেশের সব তফসিলি ব্যাংক, NBFI, MFS প্রোভাইডার এবং পেমেন্ট সিস্টেম অপারেটরদের ৩১ ডিসেম্বর ২০২৬-এর মধ্যে উন্নত সাইবার নিরাপত্তা ব্যবস্থা বাস্তবায়ন করতে হবে। এই ফ্রেমওয়ার্কের একটি মূল স্তম্ভ হলো কর্মী-পর্যায়ে ফিশিং সিমুলেশন ও সিকিউরিটি অ্যাওয়ারনেস ট্রেনিং, কারণ বাংলাদেশের ব্যাংকিং খাতে ঘটা বেশিরভাগ সাইবার আক্রমণের মূল প্রবেশপথ এখনও মানুষ — প্রযুক্তি না। নিচে আমরা দেখাচ্ছি কেন এই ঝুঁকি বাস্তব, কী কী পরিসংখ্যান তা প্রমাণ করে, এবং প্রতিষ্ঠানগুলোর এখনই কী পদক্ষেপ নেওয়া উচিত। বাংলাদেশে বর্তমান সাইবার হুমকির চিত্র কেমন? বাংলাদেশের জাতীয় সাইবার নিরাপত্তা সংস্থা BGD e-GOV CIRT-এর সাম্প্রতিক পর্যবেক্ষণ… - [How to Learn OSINT in 2026: Complete Guide to Open Source Intelligence Investigation](https://academy.hbhsec.com/how-to-learn-osint-in-2026-complete-guide-to-open-source-intelligence-investigation/): আজকের digital world-এ তথ্যই সবচেয়ে শক্তিশালী অস্ত্র।Cyber security, ethical hacking, digital investigation কিংবা threat intelligence—প্রায় সব ক্ষেত্রেই প্রথম ধাপ হলো OSINT (Open Source Intelligence)। কিন্তু সমস্যা হলো—ইন্টারনেটে অসংখ্য তথ্য থাকলেও সেগুলোকে connect করে meaningful intelligence বানানো খুব কম মানুষই পারে। এই কারণেই তৈরি করা হয়েছে OSINT For Beginners Course — একটি complete hands-on training program যেখানে আপনি শিখবেন কীভাবে publicly available data ব্যবহার করে professional level investigation করা যায়। এই কোর্সটি beginner থেকে professional level পর্যন্ত step-by-step OSINT skills শেখানোর জন্য তৈরি করা হয়েছে। OSINT (Open Source Intelligence) আসলে কী? OSINT মানে হলো: Publicly available information সংগ্রহ, বিশ্লেষণ এবং ব্যবহার করে… - [সাইবার সিকিউরিটিতে ক্যারিয়ার গড়তে চান? কিন্তু কঠিন কোডিং দেখে ভয় পাচ্ছেন? এই লেখাটি আপনার জন্য।](https://academy.hbhsec.com/%e0%a6%b8%e0%a6%be%e0%a6%87%e0%a6%ac%e0%a6%be%e0%a6%b0-%e0%a6%b8%e0%a6%bf%e0%a6%95%e0%a6%bf%e0%a6%89%e0%a6%b0%e0%a6%bf%e0%a6%9f%e0%a6%bf%e0%a6%a4%e0%a7%87-%e0%a6%95%e0%a7%8d%e0%a6%af%e0%a6%be%e0%a6%b0/): আমাদের ইনবক্সে বা বিভিন্ন গ্রুপে প্রতিদিন শত শত মেসেজ আসে— “ভাইয়া, সাইবার সিকিউরিটি শিখতে চাই, হ্যাকিং শিখতে চাই। কিন্তু আমি তো একদম বিগিনার, কিছুই জানি না। আমার দ্বারা কি সম্ভব?” সত্যি বলতে, এই ফিল্ডটা একটু ভয়ের মনে হতে পারে। লিনাক্স, নেটওয়ার্কিং, কোডিং—এসব শুনে অনেকেই শুরু করার আগেই হাল ছেড়ে দেন। কিন্তু একটা গোপন কথা বলি? সাইবার সিকিউরিটির এমন একটা সেক্টর আছে, যেখানে কাজের ডিমান্ড প্রচুর, কম্পিটিশন কম, আর বিগিনার হিসেবে শুরু করাটাও তুলনামূলক সহজ। সেটা হলো— Malware Cleanup & Hacked Website Recovery। সহজ বাংলায় বললে— হ্যাক হওয়া ওয়েবসাইট ঠিক করা। কেন এই স্কিলটা এখন হট কেক? 🍰 একটু ভেবে দেখুন, বর্তমান… - [সাইবার সিকিউরিটিতে শূন্য থেকে প্রফেশনাল: 2026 এর সেরা রোডম্যাপ](https://academy.hbhsec.com/%e0%a6%b8%e0%a6%be%e0%a6%87%e0%a6%ac%e0%a6%be%e0%a6%b0-%e0%a6%b8%e0%a6%bf%e0%a6%95%e0%a6%bf%e0%a6%89%e0%a6%b0%e0%a6%bf%e0%a6%9f%e0%a6%bf%e0%a6%a4%e0%a7%87-%e0%a6%b6%e0%a7%82%e0%a6%a8%e0%a7%8d%e0%a6%af/): ফেসবুক গ্রুপ বা বিভিন্ন ফোরামে ইদানীং সবচাইতে বেশি যে প্রশ্নটি দেখি তা হলো— “ভাইয়া, আমি একদম নতুন, কোথা থেকে শুরু করবো?” বা “কোন কোর্সের পর কোনটা করলে দ্রুত জব পাবো?” সাইবার সিকিউরিটি কোনো জাদুর কাঠি নয় যে আজ শিখলেন আর কালই হ্যাকার হয়ে গেলেন। এটি একটি ধারাবাহিক প্রক্রিয়া। যারা একদম জিরো থেকে শুরু করে ইন্ডাস্ট্রি-রেডি প্রফেশনাল হতে চান, তাদের জন্য ধাপে ধাপে একটি গাইডলাইন নিচে দেওয়া হলো। ধাপ ১: ফাউন্ডেশন তৈরি (সবার জন্য বাধ্যতামূলক) অনেকেই ভুল করে সরাসরি হ্যাকিং টুলস চালানো শিখতে চায়। ফলাফল? কিছুদিন পর তারা খেই হারিয়ে ফেলে। তাই শুরুতে আপনার দরকার Cyber Security Fundamentals। ধাপ ২: আপনার লক্ষ্য… - [Windows কেন হ্যাকিং এ শেখা উচিৎ?](https://academy.hbhsec.com/windows-%e0%a6%95%e0%a7%87%e0%a6%a8-%e0%a6%b9%e0%a7%8d%e0%a6%af%e0%a6%be%e0%a6%95%e0%a6%bf%e0%a6%82-%e0%a6%8f-%e0%a6%b6%e0%a7%87%e0%a6%96%e0%a6%be-%e0%a6%89%e0%a6%9a%e0%a6%bf%e0%a7%8e/): যদি আপনি একজন পেন্টেস্টার, বাগ বাউন্টি হান্টার, বা সাইবার সিকিউরিটি বিশেষজ্ঞ হতে চান, তাহলে Windows শেখা আপনার জন্য অপরিহার্য। অধিকাংশ কর্পোরেট নেটওয়ার্ক, এন্টারপ্রাইজ এনভায়রনমেন্ট, ব্যাংকিং সেক্টর, এবং সরকারি প্রতিষ্ঠান Windows অপারেটিং সিস্টেম ব্যবহার করে। ফলে Windows hacking জানা মানে রিয়েল ওয়ার্ল্ড পেন্টেস্টিং ও রেড টিমিং-এ সফল হওয়ার একটি বড় ধাপ এগিয়ে যাওয়া। এই পোস্টে আমরা দেখবো,Windows কেন শেখা দরকার?Windows এর কোন টপিকগুলো শেখা জরুরি?কীভাবে Windows hacking শিখবেন? Windows কেন শেখা দরকার? ১. এন্টারপ্রাইজ এনভায়রনমেন্টে Windows-এর আধিপত্য বিশ্বের প্রায় 98% এর বেশি কোম্পানি তাদের ইনফ্রাস্ট্রাকচার ম্যানেজমেন্ট, অ্যাক্টিভ ডিরেক্টরি, ফাইল শেয়ারিং, এবং অ্যাক্সেস কন্ট্রোল এর জন্য Windows ব্যবহার করে। তাই যদি আপনি ওয়েব অ্যাপ, নেটওয়ার্ক, বা… ## Pages - [Verify Certificate](https://academy.hbhsec.com/verify-certificate/):   - [Checkout](https://academy.hbhsec.com/checkout/) - [WP 2FA User Profile](https://academy.hbhsec.com/wp-2fa-config/): [wp-2fa-setup-form] Page generated by WP 2FA Plugin - [Privacy Policy](https://academy.hbhsec.com/privacy-policy-2/):     Privacy Policy for Hacked By Himel Academy Effective Date: June 26, 2025Website: https://academy.hbhsec.com 1. Who We Are We are Hacked By Himel Academy, an online cybersecurity education platform offering paid and free courses to students in Bangladesh and beyond. Our mission is to build skilled ethical hackers and cybersecurity professionals. 2. What Personal Data We Collect When you use our website, we may collect the following information: Name, email, phone number, address, and profile details Login credentials and browser/device info IP address, session history, and activity logs Course progress, quiz/test scores, and certification data Uploaded content (assignments, projects) Payment… - [Contact Us](https://academy.hbhsec.com/contact-us/): We’re Always Eager to Hear From You! Address Jashore Email services@hbhsec.com Phone +880 1951045900 Get In Touch Fill out this form for booking a consultant advising session. - [About US](https://academy.hbhsec.com/about-us/): ABOUT US We Providing The Best Quality Online Courses. Hacked by Himel is a cybersecurity learning platform sharing ethical hacking, write-ups, and courses to help you master offensive and defensive security in Bangladesh. Flexible Classes Online Class Mode 15/hs Educator Support WHY CHOOSE EDUBLINK The Best Beneficial Side of HBH Academy High Quality Courses Well-structured, up-to-date content tailored for real-world skills. Simple & Relistic Easy to follow, hands-on approach with practical learning paths. Expert Instructors Learn from industry professionals with years of real experience. TESTIMONIALS What Our Students Have To Say Lorem ipsum dolor sit amet consectur adipiscing elit sed eiusmod… - [Blog](https://academy.hbhsec.com/blog/) - [Home](https://academy.hbhsec.com/): A Trusted Cyber Security Learning Platform “প্র্যাকটিক্যাল দক্ষতা অর্জনের জন্যই আমাদের সাইবার সিকিউরিটি প্ল্যাটফর্ম — বাস্তব অভিজ্ঞতা, বাস্তব সমস্যা, বাস্তব সমাধান।”– Hacked By Himel  Find courses Best Online Courses Top Instructors Online Certifications 5,000 Membership Top Categories Explore our comprehensive curriculum and find the perfect starting point for your cybersecurity journey Offensive Security 2 Courses Defensive Security 3 Courses Purple Teaming 0 Courses Cloud Security 2 Courses AI Security 1 courses 29+ Wonderful Awards ABOUT US Learn & Grow Your Skills From Anywhere We provide beginner to expert level practical cybersecurity training, focused on ethical hacking, penetration testing, and real-world security… - [User Account](https://academy.hbhsec.com/user-account/): [wp_event_account] - [Reset Password](https://academy.hbhsec.com/reset-password/): [wp_event_reset_password] - [Forgot Password](https://academy.hbhsec.com/forgot-password/): [wp_event_forgot_password] - [User Login](https://academy.hbhsec.com/user-login/): [wp_event_login] - [User Register](https://academy.hbhsec.com/user-register/): [wp_event_register] - [My account](https://academy.hbhsec.com/my-account/) - [Cart](https://academy.hbhsec.com/cart/) - [Shop](https://academy.hbhsec.com/shop/) - [Instructor Registration](https://academy.hbhsec.com/instructor-registration/) - [Start Your Ethical Hacking Journey](https://academy.hbhsec.com/student-registration/) - [Dashboard](https://academy.hbhsec.com/dashboard/) ## Products - [Bug Bounty For Professionals](https://academy.hbhsec.com/product/bug-hunting/): Bug Bounty Hunting Course in Bangle শুধু Bug শিখবেন না, কীভাবে Bug খুঁজতে হয় সেটা শিখুন আপনি XSS, SQLi, IDOR, SSRF-এর মতো vulnerability সম্পর্কে জানেন, Burp Suite ব্যবহারও করতে পারেন, কিছু lab solve করেছেন। কিন্তু একটি real Bug Bounty target হাতে পেলেই যদি মনে হয়, “কোথা থেকে শুরু করব?” “কী test করব?” “কোন endpoint-এ focus করব?”, তাহলে এই course আপনার জন্য। এই course-এর লক্ষ্য শুধু vulnerability বা payload শেখানো নয়। বরং একটি real target-কে কীভাবে approach করতে হয়, কীভাবে Recon করতে হয়, Attack Surface বুঝতে হয়, interesting functionality খুঁজে বের করতে হয়, manually test করতে হয়, potential bug validate করতে হয় এবং শেষ পর্যন্ত proper Bug Report তৈরি করতে হয়, সেই structured hunting methodology তৈরি করা। 🧪 120+ Real-World Inspired Custom Labs এই course-এর 120+ labs শুধু basic vulnerability practice-এর জন্য তৈরি করা হয়নি। Real-world Bug Bounty Hunting-এ দেখা যায় এমন বিভিন্ন vulnerability pattern, attack scenario, application behaviour এবং bug chaining একত্র করে প্রতিটি vulnerability-এর জন্য realistic, scenario-based lab তৈরি করা হয়েছে। প্রতিটি lab-এ শুধু “এখানে একটি IDOR আছে, খুঁজে বের করুন” ধরনের সহজ setup নয়। বরং real application-এর মতো functionality, user flow, parameters, responses এবং possible attack paths ব্যবহার করে আপনাকে investigation-এর মাধ্যমে vulnerability খুঁজে বের করতে হবে। অর্থাৎ প্রতিটি lab-এর উদ্দেশ্য: Observe → Investigate → Test → Validate → Understand Impact এখানে লক্ষ্য শুধু lab solve করা নয়, real target-এ কীভাবে চিন্তা করে bug খুঁজতে হয় সেই skill তৈরি করা। 🔎 Extensive Reconnaissance Training Bug Hunting শুরু হয় vulnerability scanner দিয়ে নয়, target বোঝার মাধ্যমে। তাই course-এ Domain & Subdomain Discovery, Enumeration, Technology Fingerprinting, VHOST Discovery, Content Discovery, GitHub Recon, Historical URLs, JavaScript Analysis, Endpoint Discovery এবং Attack Surface Mapping-এর ওপর extensive practical training থাকবে। আপনি শুধু কোন tool ব্যবহার করতে হয় তা নয়, কখন কোন methodology ব্যবহার করবেন এবং কেন করবেন, সেটাও শিখবেন। 🎯 Advanced Vulnerability Hunting Course-এ common vulnerability থেকে শুরু করে advanced hunting scenario পর্যন্ত practicalভাবে কাজ করা হবে। Authentication, IDOR, Broken Access Control, SQL Injection, XSS, SSRF, SSTI, XXE, File Upload, JWT, OAuth, Password Reset, Open Redirect, WordPress Security এবং আরও বিভিন্ন গুরুত্বপূর্ণ vulnerability নিয়ে hands-on practice থাকবে। এর সঙ্গে থাকবে bypass techniques, unusual behaviour analysis এবং vulnerability chaining। 🔗 Bug Chaining & Impact Analysis Real Bug Bounty-তে সবসময় একটি isolated vulnerability-ই সবচেয়ে interesting finding তৈরি করে না। কখনো একটি weakness-এর সঙ্গে আরেকটি weakness chain হয়ে security impact অনেক বেশি হতে পারে। তাই course-এ Bug Chaining এবং Impact Analysis-এর ওপরও গুরুত্ব দেওয়া হবে, যাতে আপনি শুধু “একটা bug পেয়েছি” এ থেমে না গিয়ে পুরো attack path এবং business impact নিয়ে চিন্তা করতে পারেন। 📝 Practical Assignments & Bug Report Review শুধু video দেখে Bug Hunter হওয়া যায় না। নিয়মিত practice করতে হয়। তাই থাকবে practical assignments, hands-on tasks এবং Bug Report review। আপনার finding কীভাবে explain করতে হবে, কী evidence দিতে হবে এবং impact কীভাবে clearly document করতে হবে, সেসব বিষয়ে feedback পাওয়ার সুযোগ থাকবে। 👨‍🏫 Mentor Support & Private Community Bug Hunting শেখার সময় কোথায় stuck হয়েছেন সেটা বোঝা অনেক গুরুত্বপূর্ণ। “এই behaviour কি interesting?” “আর কী test করা উচিত?” “এটা valid vulnerability নাকি false positive?” “Impact কীভাবে verify করব?” এই ধরনের প্রশ্নে mentor feedback এবং private student community-এর মাধ্যমে learning support থাকবে। 🔴 প্রতি মাসে ১টি Live Bug Hunting Session Course-এর অন্যতম গুরুত্বপূর্ণ অংশ হলো Monthly Live Bug Hunting। প্রতি মাসে একটি authorized Bug Bounty target / permitted scope নিয়ে live hunting session করা হবে। সেখানে একটি target-কে কীভাবে approach করতে হয়, কীভাবে scope review করতে হয়, Recon থেকে Attack Surface তৈরি করতে হয়, interesting endpoint identify করতে হয়, manual testing করতে হয় এবং একটি potential finding investigate ও validate করতে হয়, সেই process liveভাবে দেখা যাবে। Lab-এ যেখানে আপনি জানেন যে vulnerability আছে, real hunting-এ সেখানে আপনাকেই খুঁজে বের করতে হয় কোথায় দেখবেন, কী test করবেন এবং কোন lead follow করবেন। এই gap কমানোই live hunting-এর অন্যতম উদ্দেশ্য। Course-এ আপনি যা পাবেন ✅ 120+ Real-World Inspired Custom Bug Bounty Labs ✅ Extensive Reconnaissance Training ✅ Burp Suite Practical Training ✅ Advanced Vulnerability Hunting ✅ Bug Chaining & Impact Analysis ✅ Practical Assignments ✅ Bug Report Review ✅ Mentor Feedback ✅ Private Student Community ✅ Regular Learning Support ✅ প্রতি মাসে ১টি Live Bug Hunting Session কার জন্য এই Course? যারা Bug Bounty Hunting সিরিয়াসভাবে শিখতে চান, কিন্তু scattered tutorials, random tools এবং write-up-এর ওপর নির্ভর না করে একটি structured practical learning path চান। বিশেষ করে যারা real target-এ গিয়ে কীভাবে Recon করবেন, কোথায় bug খুঁজবেন, কীভাবে একটি lead follow করবেন এবং কীভাবে finding validate করবেন সেটা শিখতে চান। Basic Web Security knowledge থাকলে শেখা সহজ হবে। তবে প্রয়োজনীয় Web Fundamentals course-এর শুরুতেই cover করা হবে। Bug Bounty-তে শুধু Payload জানলেই হয় না একজন Bug Hunter-এর বড় skill হলো: “কোথায় Bug থাকতে পারে?” এই প্রশ্নটা করতে পারা। তারপর সেই hypothesis থেকে: Target Understand → Recon → Discover → Test → Validate → Chain → Report এই পুরো process-এর ওপর practical skill তৈরি করাই এই course-এর মূল লক্ষ্য। Start Your Bug Hunting Journey শুধু কীভাবে Exploit করতে হয় তা নয়। শিখুন কোথায় খুঁজতে হবে, কী test করতে হবে এবং কেন। Enroll Now - [Active Directory Pentesting & Red Teaming](https://academy.hbhsec.com/product/active-directory-hacking/): Active Directory Pentesting & Red Teaming is a fully hands-on, lab-driven course built for aspiring and working penetration testers, red teamers, and cybersecurity professionals who want real, practical mastery of Active Directory (AD) attacks — not just theory. Active Directory runs the identity and access backbone of over 90% of enterprise networks worldwide, which makes it one of the most targeted — and most misunderstood — attack surfaces in offensive security. This course takes you from the fundamentals of how AD authentication, trusts, and Group Policy actually work, all the way to advanced real-world attack chains used by professional red teamers and adversaries alike. You won't just watch slides — you'll build your own AD lab from the ground up (Domain Controller, GPOs, victim workstations), intentionally misconfigure it, and then attack it step-by-step using the exact tools and techniques used in real penetration tests: Kerbrute, NetExec, ldapsearch, BloodHound CE, PowerView, Mimikatz, Rubeus, Impacket, Chisel, Ligolo-ng, and more. What You'll Learn By the end of this course, you'll be able to: Understand AD fundamentals — users, computers, GPOs, Kerberos, NetNTLM, forests, and trust relationships Build a fully functional vulnerable AD lab for practice and certification prep Perform passive and active AD enumeration using LDAP, NetExec, PowerShell, MMC, and Command Prompt Map attack paths visually with BloodHound CE, PingCastle, and Purple Knight Execute real-world initial access attacks: LLMNR/NBT-NS poisoning, AS-REP Roasting, Password Spraying, SMB Relay, LDAP Pass-Back, PXE Boot Scraping, and IPv6 poisoning Move laterally using PsExec, WMIExec, SMBExec, Pass-the-Hash, Pass-the-Ticket, Overpass-the-Hash, and Token Impersonation Pivot through segmented networks using SSH tunneling, Socat, Chisel, and Ligolo-ng Exploit AD misconfigurations: DACL abuse, ForceChangePassword, Kerberoasting, Printer Bug/NTLM Relay, and GPO abuse Attack Active Directory Certificate Services (ADCS) — including ESC1 through ESC5 privilege escalation paths Compromise forest trusts and execute Golden Ticket attacks Exploit real CVEs like noPac against live AD environments Establish persistence using DCSync, Golden Tickets, Silver Tickets, and ADCS certificate abuse Course Structure This course is organized into progressive modules covering AD fundamentals → lab setup → enumeration → initial access → lateral movement → pivoting → exploitation → ADCS attacks → trust exploitation → CVE exploitation → persistence — mirroring the exact methodology used in professional Active Directory penetration tests and red team engagements. Who This Course Is For Penetration testers and red teamers who want to specialize in AD attacks SOC analysts and blue teamers who want to understand attacker methodology to defend better OSCP, CRTP, CRTE, and CPTS aspirants who need deep, practical AD attack experience IT/security professionals responsible for securing enterprise Windows environments Anyone serious about a career in offensive security or red teaming Requirements Basic understanding of networking and Windows environments A laptop capable of running virtual machines (VMware/VirtualBox) Willingness to build and break your own AD lab Why Take This Course Unlike theory-heavy courses, every module here is anchored in practical, step-by-step lab exercises on a real Active Directory environment you build yourself. You'll finish not just knowing what AD attacks are, but how to execute, chain, and pivot them like a professional penetration tester — skills directly transferable to real engagements, CTFs, and top-tier certifications like OSCP, CRTP, and CRTE.  যেকোনো তথ্যের জন্য আমাদের সাথে যোগাযোগ করুন:  টেলিগ্রাম (MD HIMEL ATIK): https://t.me/hackedbyhimel হোয়াটসঅ্যাপ করুন: https://wa.me/+8801951045900 সরাসরি কল করুন: 01951045900 প্রথম ৫ ঘণ্টা সম্পূর্ণ ফ্রি! কেনার আগে নিজেই যাচাই করে নিন — এই কোর্সের প্রথম ৫ ঘণ্টা কন্টেন্ট সম্পূর্ণ ফ্রিতে দেখতে পারবেন, কোনো পেমেন্ট বা কার্ড ইনফরমেশন ছাড়াই। AD Fundamentals থেকে শুরু করে Lab Setup পর্যন্ত পুরোটা ফ্রি প্রিভিউতে কভার করা হয়েছে, যাতে আপনি বুঝতে পারেন — ইন্সট্রাক্টরের পড়ানোর স্টাইল আপনার জন্য উপযুক্ত কিনা ল্যাব ও প্র্যাকটিক্যাল অ্যাপ্রোচ কেমন কোর্সের ডেপথ ও প্রোডাকশন কোয়ালিটি এই কোর্স আপনার লেভেলের জন্য পারফেক্ট কিনা - [AWS Cloud Pentesting Fundamentals](https://academy.hbhsec.com/product/aws-cloud-pentest/): AWS Cloud Pentesting Fundamentals is a practical beginner-friendly cloud security course designed for Ethical Hackers, Pentesters, Bug Bounty Hunters, SOC Analysts, and Cybersecurity learners who want to enter the world of Cloud Security and AWS Pentesting. This course is specially built for beginners, so even if you have never worked with cloud platforms before, you will learn everything step-by-step from the fundamentals of cloud computing to real-world AWS attack techniques and cloud exploitation methodologies. Most companies today use cloud infrastructure like AWS, Azure, and GCP. Because of this, cloud security has become one of the most in-demand skills in cybersecurity. This course will help you understand how attackers abuse cloud misconfigurations, how real AWS environments work, and how security professionals perform cloud penetration testing. This is the first course in the cloud security learning path. More advanced and specialized courses on AWS, Azure, GCP, Cloud Red Teaming, Cloud Detection Engineering, and Advanced Cloud Exploitation will be released in the future. - [AWS Cloud Security Bootcamp for Beginners](https://academy.hbhsec.com/product/aws-cloud-security-bootcamp-for-beginners/) - [Professional AI Red Teaming](https://academy.hbhsec.com/product/professional-ai-red-teaming/): Professional AI Red Teaming Future-proof your cybersecurity career with our 6-month, fully practical AI Security Pentester program. Delivered in Bangla by HBHsec Academy, this course goes beyond theory to teach you how real attackers exploit and defend modern AI and LLM architectures. As enterprise AI adoption explodes, traditional pentesting is no longer enough. Learn to identify and mitigate critical vulnerabilities—including prompt injection, data leakage, and model hallucinations—using industry-standard frameworks (OWASP Top 10 for LLM, MITRE ATLAS) and advanced enterprise tools. Course Highlights: 90% Hands-On Learning: Recorded classes, weekly live problem-solving sessions, real-world simulations, and a full AI/LLM penetration testing capstone project. Modern Attack Methodologies: Master industry tools like Garak, Promptmap, MCP Scan, and Agentic Radar. Certification Ready: Includes 10 full mock exams and a dedicated certification path to validate your operational readiness. - [OSINT FOR Hackers](https://academy.hbhsec.com/product/osint-for-beginners/): OSINT (Open Source Intelligence) হলো আধুনিক Cyber Security, Ethical Hacking, Digital Investigation এবং Threat Intelligence-এর সবচেয়ে গুরুত্বপূর্ণ স্কিলগুলোর একটি। এই কোর্সটি বিশেষভাবে ডিজাইন করা হয়েছে যারা beginner থেকে professional level-এ OSINT শিখতে চায়, সম্পূর্ণ hands-on, real-world investigation approach দিয়ে। What Is OSINT? OSINT (Open Source Intelligence) মানে হলো— ইন্টারনেটে publicly available যেসব তথ্য সবাই দেখতে পারে, সেগুলো আইনি ও নৈতিকভাবে সংগ্রহ, বিশ্লেষণ এবং ব্যবহার করা। এখানে “open source” বলতে GitHub বা programming source code না, বরং বোঝানো হয়: Google search results Social media profiles Public websites & forums Images, videos & metadata Public records & databases News articles & archives এই সব তথ্য আলাদা আলাদা জায়গায় ছড়িয়ে থাকে।OSINT শেখায় কীভাবে এই scattered information গুলোকে connect করে meaningful intelligence বানানো যায়। OSINT বাস্তবে কী কাজে লাগে? OSINT ব্যবহার করা হয়: Ethical Hacking & Penetration Testing-এর আগে reconnaissance করতে Cyber crime investigation-এ attacker বা victim profile বানাতে Fake account, scammer, phishing campaign identify করতে Missing person বা identity investigation-এ SOC, Threat Intelligence & Blue Team operations-এ আজকের প্রায় সব বড় cyber investigation-এর প্রথম ধাপই OSINT। OSINT মানে hacking না — কিন্তু hacker mindset দরকার OSINT মানে কারো account hack করা না।এটা হলো: “Thinking like a hacker, but working legally.” একজন ভালো OSINT analyst জানে: কোন জায়গায় কী ধরনের তথ্য পাওয়া যায় কীভাবে ছোট clue থেকে বড় picture বানাতে হয় কীভাবে ভুল তথ্য (misinformation) avoid করতে হয় এই recorded course-এ তুমি শিখবে কীভাবে publicly available data ব্যবহার করে people, email, phone number, username, image, social media এবং digital footprint বিশ্লেষণ করতে হয়—একজন professional OSINT analyst যেভাবে কাজ করে। What You Will Learn OSINT কী, কেন গুরুত্বপূর্ণ এবং কোথায় ব্যবহার হয় Intelligence Cycle ও professional investigation workflow Secure OSINT lab setup (Anonymity, VPN, Browser hardening) Advanced Google Dorking ও Search Engine OSINT Dark Web, Privacy-focused ও AI-based OSINT tools Image OSINT, EXIF metadata analysis ও Geo-Location techniques AI-generated image ও Deepfake detection Email, domain ও infrastructure OSINT Username, people, phone number investigation techniques Facebook, X (Twitter) ও Instagram OSINT Professional OSINT documentation ও reporting Course Structure 9 Structured Modules 21 In-Depth Recorded Classes Hands-On Labs & Practical Tasks Real-World Investigation Scenarios Professional Reporting Methodology Who This Course Is For Ethical Hackers & Penetration Testers SOC Analysts & Blue Team Members Bug Bounty Hunters Cyber Security Students Digital Investigators & OSINT Enthusiasts Anyone who wants to master OSINT from scratch No prior OSINT experience is required. Beginner-friendly explanations with professional-level depth are included. Why This OSINT Course Is Different ✔ Real-world OSINT mindset, not just tools ✔ Practical labs instead of theory-only lectures ✔ Investigation-focused workflow ✔ Beginner to Advanced coverage in one course ✔ Designed by a Cyber Security Professional After Completing This Course You will be able to: Conduct full OSINT investigations independently Build OSINT reports like professionals Support penetration testing, SOC, and threat intelligence tasks Use OSINT ethically and responsibly in real-world scenarios - [SOC Analyst For Beginners](https://academy.hbhsec.com/product/soc-analyst-beginner/): SOC Analyst for Beginners – Start Your Career in Cyber Defense SOC Analyst for Beginners is a complete, beginner-friendly, career-focused course designed for anyone who wants to start a professional journey as a Security Operations Center (SOC) Analyst. This course teaches you how real-world SOC teams detect, analyze, and respond to cyber threats across networks, systems, endpoints, and cloud environments. If you are confused about how to enter cybersecurity from a defensive side, this course removes that confusion and gives you a clear, structured, and practical roadmap to become a SOC professional. What This Course Is About This course focuses on… - [Professional Malware Cleanup & Hacked Website Recover](https://academy.hbhsec.com/product/website-recovery-malware-cleanup/): পেশাদার ওয়েবসাইট রিকভারির সম্পূর্ণ গাইড — হ্যাকড ওয়েবসাইট ১০০% রিকভার করতে শিখুন! বাংলা ভাষায় প্রথমবারের মতো এমন একটি ডিপ ও বাস্তবভিত্তিক কোর্স, যেখানে আপনি শিখবেন কীভাবে একটি হ্যাকড WordPress ওয়েবসাইট সঠিকভাবে রিকভার করবেন, ম্যালওয়্যার ও ব্যাকডোর রিমুভ করবেন এবং ভবিষ্যতে যেন আবার হ্যাক না হয় — সেই অনুযায়ী সাইটকে শক্তভাবে সিকিউর করবেন। 🎯 এই কোর্স কার জন্য? এই কোর্সটি বিশেষভাবে উপযোগী: 🎓 Cyber Security শেখার আগ্রহী নতুন শিক্ষার্থীদের জন্য 🧑‍🔧 যারা হ্যাকড ওয়েবসাইট রিকভারির রিয়েল স্কিল শিখতে চান 🛡️ Ethical Hacker, SOC Analyst, Pentester হতে আগ্রহীদের জন্য 📈 Freelancers যারা Malware Cleanup সার্ভিস দিয়ে আয় করতে চান 👉 আপনি যদি বাস্তব জীবনের স্কিল শিখে ক্লায়েন্টের কাজ করতে চান — এই কোর্স আপনার জন্য। 📚 এই কোর্সে আপনি কী শিখবেন? ✔️ হ্যাক কীভাবে হয় এবং কোন পথে ম্যালওয়্যার ঢোকে ✔️ কীভাবে নিরাপদে হ্যাকড সাইটে প্রবেশ করবেন (cPanel, WP-Admin, phpMyAdmin) ✔️ সাইট ক্লিন করার আগে সঠিকভাবে ব্যাকআপ ও মাইগ্রেশন করা ✔️ WordPress core, themes, plugins ও uploads থেকে ম্যালওয়্যার পরিষ্কার করা ✔️ ব্যাকডোর ও persistence mechanism শনাক্ত ও ম্যানুয়ালি রিমুভ করা ✔️ ডিফেসড ওয়েবসাইট রিস্টোর করা ✔️ Wordfence ও অন্যান্য সিকিউরিটি টুল সঠিকভাবে কনফিগার করা ✔️ .htaccess দিয়ে সার্ভার লেভেল সিকিউরিটি হার্ডেনিং ✔️ SEO spam (Japanese, Pharma, Casino) পরিষ্কার করা ✔️ Google blacklist ও অন্যান্য ব্ল্যাকলিস্ট থেকে সাইট রিমুভ করানো ✔️ ভবিষ্যতে হ্যাক প্রতিরোধের জন্য পোস্ট-রিমেডিয়েশন সিকিউরিটি বেস্ট প্র্যাকটিস 🎁 Bonus: কীভাবে ক্লায়েন্ট খুঁজবেন, কিভাবে অ্যাপ্রোচ করবেন এবং ফ্রিল্যান্সিং শুরু করবেন। কোর্স ফরম্যাট ও সাপোর্ট 🎥 সম্পূর্ণ প্রি-রেকর্ডেড ভিডিও ক্লাস 📦 প্রতি সপ্তাহে মডিউল আকারে ক্লাস রিলিজ 💬 ডিসকাশন গ্রুপে যেকোনো সমস্যায় Pentester প্যানেলের সাপোর্ট 🧠 2 সপ্তাহে 1 টি করে Problem Solving লাইভ সেশন ⏰ প্রতিদিন রাত ৯টার পর ক্লাস রিলিজ 📲 সপ্তাহে ২টি ক্লাস সিক্রেট টেলিগ্রাম চ্যানেলে, ১ দিন প্র্যাকটিসের জন্য 📝 পরীক্ষা ও সার্টিফিকেশন ⭕ মোট 10টি Exam নেওয়া হবে ⭕ সব মিলিয়ে 70% মার্কস পেলে সার্টিফিকেট প্রদান করা হবে 💻 ডিভাইস রিকোয়ারমেন্ট PC/Laptop (4GB বা 8GB RAM) Storage: 125GB / 250GB HDD বা SSD ⏱️ প্রতিদিন শেখার জন্য অন্তত ১ ঘণ্টা সময় দিতে হবে, কারণ কোর্সের 95% প্র্যাকটিক্যাল। কেন এই কোর্সটি আলাদা? ✅ পেশাদার Malware Analyst দ্বারা তৈরি কোর্স ✅ Freelancers ও WordPress Developers এর জন্য পারফেক্ট ✅ রিয়েল ক্লায়েন্ট ওয়ার্ক ভিত্তিক রিকভারি কেস ✅ বাংলা ভাষায় সবচেয়ে ডিপ WordPress Recovery কোর্স ✅ ফ্রি টুলস, চেকলিস্ট ও স্ক্রিপ্টস সহ বিশেষ সুযোগ: ইন্টারভিউ পাস করলে আপনি রিয়েল Hacked WordPress Recovery প্রজেক্টে কাজ করার সুযোগ পাবেন — যা আপনাকে বাস্তব অভিজ্ঞতা দেবে এবং ইন্ডাস্ট্রিতে কাজ পাওয়ার সম্ভাবনা বাড়াবে। - [Penetration Testing For Professionals](https://academy.hbhsec.com/product/ptp/): 13 মাসের কোর্স, 400+ প্রি রেকর্ডেড ক্লাস!!    দীর্ঘ ১৩ মাসের কোর্স | 400+ প্রি-রেকর্ডেড ক্লাস | OSCP লেভেলের প্রশিক্ষণ বাংলা ভাষায় প্রথমবারের মতো এমন একটি পেনেট্রেশন টেস্টিং কোর্স, যা আপনাকে প্রফেশনাল পেনেট্রেশন টেস্টার হিসাবে ইন্ডাস্ট্রিতে কাজ করার উপযোগী করে গড়ে তুলবে । আমাদের লক্ষ্য শুধু সার্টিফিকেশন নয়, বরং একজন দক্ষ সাইবার সিকিউরিটি প্রফেশনাল তৈরি করা।  কোর্সে  প্রি রেকর্ডেড ক্লাস থাকবে। ভিডিওগুলো প্রতি সপ্তাহে মডিউল হিসাবে দেওয়া হবে। কোর্সের মাঝেই আপনি সাপোর্ট পাবেন কোর্স এর যেকোনো ক্লাস বিষয়ে যেকোনো সমস্যায় ডিসকাশন গ্রুপে পোস্ট করলে আমাদের Pentester প্যানেলের শিক্ষকরা আপনাকে সাহায্য করবে। সপ্তাহে একটি করে Problem Solving লাইভ সেশন হবে ক্লাস রিলিজ হবে প্রতিদিন – রাত 10 টার পর!… - [Professional Vulnerability Assessment](https://academy.hbhsec.com/product/professional-vulnerability-assessment/): Are you ready to enhance your understanding of security assessments and vulnerability Assessment? This detailed training program is designed to equip professionals, from beginners to seasoned experts, with essential skills and strategies to identify, evaluate, and mitigate vulnerabilities in various systems. Whether your goal is to align with compliance requirements or strengthen your organization’s cybersecurity posture, this course offers value-packed classes tailored to diverse organizational needs. Building a Solid Foundation: Introduction to Vulnerabilities and Security Readiness Start your journey by exploring the fundamentals. Class 1, “Introduction to Security Assessments and Vulnerability Management,” dives into identifying vulnerabilities and determining effective strategies for… - [Cyber Security Fundamentals](https://academy.hbhsec.com/product/csf/): এই কোর্সটি তৈরি করা হয়েছে ভিত্তি তৈরি করার জন্য। এখানে আপনি শিখবেন নেটওয়ার্কিং, অপারেটিং সিস্টেম, ভার্চুয়ালাইজেশন, স্ক্রিপ্টিং, রিকনেসেন্স, OSINT এবং সাইবারসিকিউরিটির মৌলিক বিষয়গুলো — যা আপনাকে পরবর্তীতে Penetration Testing ও Advanced Hacking-এ প্রস্তুত করে তুলবে। - [Certified Ethical Hacker Practical Preparation (CEHPP) With AI](https://academy.hbhsec.com/product/certified-ethical-hacker-practical-preparation-cehpp-with-ai/): Prepare to become a Certified Ethical Hacker (CEH) with real-world, hands-on skills in this comprehensive CEHPP with AI course—designed for cybersecurity enthusiasts, IT professionals, and aspiring ethical hackers who want to master the tools, techniques, and mindset of a professional hacker. This course is specially crafted to help you Pass the CEH v13 Practical Exam with confidence. But more than just exam prep, CEHPP focuses on building real-world offensive security skills that are in demand across the cybersecurity industry. What sets this course apart is the integration of AI-assisted hacking techniques, helping you leverage tools like ChatGPT, automated reconnaissance bots, and… ## Optional - [Agent (MCP protocol)](websites-agents.hostinger.com/academy.hbhsec.com/mcp) [comment]: # (Generated by Hostinger Tools Plugin)