PassYour
Try for freeSign in

CEH Study Plan: Mastering the v13 Exam in 16 Weeks

A 16-week CEH v13 study plan across the 20 EC-Council modules: lab practice, weekly question drills and a final mock-exam phase that sticks.

CEH preparation · 8 min read · updated 2026-09-06

The CEH v13 syllabus is wide - twenty modules from footprinting to cloud and AI-driven attacks - which is exactly why a plan beats enthusiasm. This schedule assumes five to seven hours per week and finishes with exam-condition practice.

Weeks 1-4: foundations, footprinting and reconnaissance

Start with modules one to four: introduction to ethical hacking, footprinting and reconnaissance, scanning networks and enumeration. The goal is not to memorize tool names but to understand the information an attacker collects at each stage and what defenders can detect.

Run one lab per week alongside the reading - OSINT on your own assets, an Nmap sweep of a home network, a banner-grabbing exercise. End each week with 20 practice questions on the modules covered; the CEH rewards recognizing attack patterns quickly.

Weeks 5-10: system, web and network attack modules

This is the heart of the exam: vulnerability analysis, system hacking, malware, sniffing, social engineering, denial of service, session hijacking and web server and web application attacks. Budget roughly one module per week and keep the same rhythm - read, lab, quiz.

Two habits pay off disproportionately. First, for every attack learn the detection signal as well as the technique, because CEH questions increasingly ask what logs or alerts reveal. Second, keep a personal one-page sheet per module listing tools, ports, protocols and their roles - it becomes your final-week revision pack.

Weeks 11-14: wireless, mobile, IoT, cloud, cryptography and AI

The back half of the syllabus is broader but lighter: wireless networks, mobile platforms, IoT and OT, cloud computing, cryptography and - new in v13 - AI-driven attacks and defences. Candidates who rush these modules lose easy points; the questions here are more definitional and very winnable.

Cryptography deserves extra attention: attack types against ciphers, PKI mechanics and the practical uses of hashing show up repeatedly. For the AI module, focus on how attackers use machine learning (phishing generation, password cracking, evasion) and how defenders respond.

Weeks 15-16: exam-condition simulation

The CEH gives you four hours for 125 questions - the time pressure is low, but the fatigue is real because many questions are long scenario stems. Take two full 125-question mock exams under exam conditions, review every miss by module, and patch your two weakest modules with targeted drilling.

In the final days, work only from your one-page module sheets and missed-question log. Walk in rested; the CEH rewards calm recall far more than last-minute cramming.

Frequently asked questions

Am I eligible to take the CEH exam without work experience?
Yes - completing official EC-Council training (or an approved academic programme) grants exam eligibility. Self-study candidates without training need two years of verifiable information-security work experience and an application review.
What is the CEH exam format?
125 multiple-choice questions in four hours for the standard form. The CEH (Practical) is a separate six-hour, 20-challenge proctored exam that earns a different credential.
Do I need the CEH Practical too?
No, the multiple-choice exam alone earns the CEH credential. The Practical is optional and valuable for demonstrating hands-on skill, especially if you plan to move toward offensive-security roles.
Can I self-study for the CEH?
You can study freely, but exam eligibility without two years of experience requires official training. The exam itself rewards lab practice and question drilling more than passive video watching.

Keep reading for CEH

PassYour is an independent study aid and is not affiliated with, endorsed by or sponsored by ISC2, CompTIA or Microsoft.

CEH Study Plan: Mastering the v13 Exam in 16 Weeks | PassYour CISSP