Kali Linux for Beginners

In this course, learn the fundamentals of Kali Linux. Explore basic navigation, networking tools, security tools, and system management. Perfect for beginners!

CybersecurityKali LinuxLinux

Introduction

Kali Linux brings many security tools into a Debian-based distribution, but beginners still need ordinary Linux skills and a disciplined assessment workflow to use it well. This broad introductory course combines 12 guided labs with five short challenges, moving from a Kali container and command-line basics to first encounters with reconnaissance, vulnerability scanning, password auditing, web testing, exploitation tooling, and firewall rules.

You will run Kali Rolling inside Docker on a browser-accessible Ubuntu lab machine. Early activities build confidence with files, packages, networking, users, processes, and logs; later labs provide compact, tool-specific workflows with Nmap, dnsrecon, Nikto, John the Ripper, sqlmap, Metasploit, Hydra, and iptables. The design favors breadth and orientation: you will see what each tool does and save or inspect results, but you will not develop production depth with every tool.

What You Will Learn

After completing the course, you will be able to:

  • Launch and enter a Kali Rolling Docker container, inspect its version and system information, and review package installation in the container.
  • Navigate directories and create, edit, copy, view, and remove files with foundational Linux commands.
  • Inspect interfaces, test connectivity, discover nearby devices, run a basic Nmap port scan, and save scan output.
  • Manage a user account, inspect running processes and kernel logs, and complete short environment-verification challenges.
  • Perform introductory reconnaissance with Nmap scripts and dnsrecon and review Nikto findings and report formats.
  • Prepare sample password hashes and wordlists for John the Ripper, and test known weak SSH and web credentials with Hydra in the lab.
  • Follow a sqlmap workflow that detects an injectable parameter, enumerates database objects, and extracts selected data from the designated demonstration site.
  • Configure a Metasploit exploit and payload while recognizing the lab’s expected failed result, then create and save basic iptables filtering rules.

Who This Course Is For

This course is for learners new to Kali Linux who want a guided survey before choosing a specialty, as well as Linux beginners who need security-themed command practice. It suits students who want to understand how common tools fit together without committing immediately to a full penetration-testing path. Because each advanced tool receives only one compact lab, the course is an orientation rather than evidence of professional proficiency.

Prerequisites: No Kali-specific experience is required. Basic familiarity with terminals, files, IP addresses, ports, and client/server concepts will make the later labs easier, but the early sequence teaches core commands. Careful adherence to target scope and authorization is essential.

Learning environment: You will use an Ubuntu desktop and launch a Kali Rolling Docker container inside it. Tools may be installed during individual labs, and container changes may not behave like a persistent full Kali workstation. Some Nikto and sqlmap exercises contact a course-designated public demonstration site and therefore depend on network and target availability; other targets are local or within the lab network.

Frequently Asked Questions

Is this a complete Kali desktop installation?

No. The course runs Kali Rolling as a command-line Docker container inside the LabEx Ubuntu VM. This makes setup repeatable, but it differs from installing Kali directly on hardware or in a persistent virtual machine, especially for desktop applications, hardware access, networking, and persistence.

Will the Metasploit lab give me a working shell on a vulnerable machine?

No. You select and configure an exploit and payload, but the target service is intentionally absent, so the exploit is expected to fail and no session is created. The lab teaches console workflow and result interpretation rather than successful exploitation.

Does the course rely on external systems?

Most work uses the local container or lab network. The Nikto and sqlmap labs include commands against a designated public vulnerable demonstration site, and pulling the Kali image may require Docker Hub unless it is preloaded. These steps can depend on internet and target availability; do not substitute arbitrary third-party targets.

Will this course make me ready to conduct a full penetration test?

No. It gives you vocabulary, Linux practice, and a first workflow with several tools. A complete assessment also requires scoping, deeper networking and web knowledge, validation, safe exploitation decisions, evidence handling, reporting, remediation, and extensive authorized practice.

Teacher

labby
Labby
Labby is the LabEx teacher.