Cheat Sheet

Certified Ethical Hacker (CEH) Cheat Sheet

By The Exam Atlas Editorial Team · Verified 2026-05-29

A final-revision summary for CEH. Study aid only — no notes in the proctored exam, and only test systems you own or are authorised to test.

The five phases

  1. Reconnaissance → 2. Scanning → 3. Gaining Access → 4. Maintaining Access → 5. Covering Tracks.

Tool categories (know the purpose, not just the name)

CategoryUsed for
Network scannerDiscovering hosts, ports and services
Packet snifferCapturing and analysing network traffic
Vulnerability scannerFinding known weaknesses
Exploitation frameworkValidating exploitability (authorised testing)
Web proxyInspecting and testing web traffic
Password toolTesting password strength

Common ports

PortService
21 / 22 / 23FTP / SSH / Telnet
25 / 53SMTP / DNS
80 / 443HTTP / HTTPS
139 / 445NetBIOS / SMB
3389RDP

Attack types at a glance

AttackIdea
FootprintingGathering target information
EnumerationExtracting names, shares, services
Privilege escalationGaining higher rights
Social engineeringManipulating people
SQL injectionAbusing unvalidated input to a database
MITM / on-pathIntercepting communications
DoS / DDoSOverwhelming a service

FAQ

Can I use notes in the CEH exam?
No. CEH is proctored. Use this for final revision before exam day only, and only ever test systems you are authorised to test.

Sources