
The Certified Ethical Hacker (CEH) is one of the most widely recognized cybersecurity certifications in the world, and one of the most debated. HR teams love it. Many technical hiring managers are skeptical of it. And the price tag is significant. If you’re considering CEH in 2026, you deserve an honest answer about what it actually delivers, where it falls short, and whether it makes sense for your career stage.
This article breaks down the CEH v13 exam format, what it costs, what you actually learn, and how it stacks up against OSCP and CompTIA PenTest+, so you can make an informed decision rather than an expensive mistake.
What Is the CEH Certification?
Who created it and what it validates
The Certified Ethical Hacker (CEH) Certification is issued by EC-Council, a cybersecurity certification body founded in 2001. The credential is designed to validate knowledge of ethical hacking methodologies and the tools used by malicious actors, the idea being that to defend a system effectively, you need to understand how attackers think and operate.
The CEH Certification is not purely a hands-on hacking certificate. It is primarily a knowledge-based credential that covers the breadth of offensive security techniques: from reconnaissance and scanning to exploitation, evasion, and cloud attacks. It is recognized by the U.S. Department of Defense under DoD 8570/8140, which has made it a go-to credential in government and defense contracting environments.
CEH v13: what’s new with AI-focused modules
The most recent version, CEH v13, often referred to as “CEH AI”, was released in 2024 and updated in 2025. The headline change is the integration of artificial intelligence into the curriculum. CEH v13 introduces modules covering AI-driven attack techniques, adversarial machine learning, and how defenders can use AI to detect and respond to threats.
This update reflects real-world shifts in the threat landscape. Attackers increasingly use AI to automate phishing campaigns, bypass detection systems, and generate malware variants. Understanding these techniques is becoming a baseline expectation, not a specialty. CEH v13 attempts to address that gap, making it more current than many of its competitors at the knowledge level.
CEH Certification Exam Format and Requirements
Knowledge exam: 125 questions, 4 hours
The standard CEH exam consists of 125 multiple-choice questions to be completed in 4 hours. The passing score is approximately 70%, though EC-Council uses a cut-score methodology that can vary slightly by exam version. Topics span all 20 modules, from network scanning and enumeration to cloud security, IoT vulnerabilities, and cryptography.
This is a theory-heavy exam. You need to know tool names, attack types, protocol behaviors, and methodologies. Strong test-takers with prior security exposure often find the knowledge exam manageable with 4–6 weeks of focused study.
Practical exam: 6-hour hands-on cyber range
The CEH Practical exam is a separate, optional challenge that elevates the credential to “CEH (Master)” when passed alongside the knowledge exam. You have 6 hours to complete 20 practical challenges inside EC-Council’s iLabs cyber range, a virtual environment where you use real tools against simulated targets.
The practical exam is a meaningful addition that addresses one of the most common criticisms of the knowledge-only CEH: that it doesn’t prove you can actually do anything. That said, the difficulty level of the practical is still generally considered lower than OSCP’s 24-hour live exploitation lab. The iLabs environment is structured and guided compared to OSCP’s open-ended network.
Eligibility: experience requirement vs. training waiver
To sit the CEH exam without formal EC-Council training, you must demonstrate at least two years of work experience in information security. This is verified by submitting an application that EC-Council reviews.
If you don’t yet have that experience, you can waive the requirement by completing an official EC-Council CEH training course through an accredited provider. This is the path most career changers and bootcamp graduates take. The training can be completed in-person, online, or through authorized training centers worldwide, including providers that offer CEH preparation as part of a broader cybersecurity training program.
How Much Does the CEH Certification Cost?
Exam voucher, training bundles, and retake fees
Cost is where the CEH draws the most scrutiny. Here is the realistic pricing breakdown for 2026:
- Exam voucher only: approximately €875 – €1,100 EUR
- Official EC-Council training + exam bundle: €2,000 – €3,895 EUR
- Third-party training + exam: varies widely, often €1,100 – €2,000 EUR
- Retake fee: approximately €460 EUR per attempt
If you are required to take official training to waive the experience requirement, budget for the training + exam bundle. The voucher-only path is only available if you already have two years of documented security experience.
Renewal: ECE credits and annual membership
CEH is valid for three years. To renew, you must:
1. Earn 120 EC-Council Continuing Education (ECE) credits over the three-year cycle
2. Pay the annual EC-Council membership fee of approximately $80/year
ECE credits can be earned through training, webinars, conference attendance, writing articles, and other professional development activities. The renewal system is manageable but adds ongoing cost that is worth factoring into your total investment calculation.
What You Learn in the CEH Certification
20 modules: from recon and scanning to cloud and IoT
CEH v13 is structured around 20 modules that provide a broad survey of offensive security techniques:
| 1. Introduction to Ethical Hacking | 6. System Hacking | 11. Session Hijacking | 16. Hacking Wireless Networks |
| 2. Footprinting and Reconnaissance | 7. Malware Threats | 12. Evading IDS, Firewalls, and Honeypots | 17. Hacking Mobile Platforms |
| 3. Scanning Networks | 8. Sniffing | 13. Hacking Web Servers | 18. IoT and OT Hacking |
| 4. Enumeration | 9. Social Engineering | 14. Hacking Web Applications | 19. Cloud Computing |
| 5. Vulnerability Analysis | 10. Denial-of-Service | 15. SQL Injection | 20. Cryptography |
The breadth is genuinely impressive. Few certifications cover this much ground in a structured way. For someone new to offensive security, CEH provides an organized mental map of the entire attack surface, which has real value even if the depth on any single topic is limited.
The AI modules in v13 are woven into relevant sections rather than isolated as a standalone module, which is a sensible approach. Coverage includes AI-driven phishing, deepfake-based social engineering, adversarial attacks on machine learning models, and AI-assisted vulnerability discovery.
Tools covered: Nmap, Metasploit, Wireshark, Burp Suite
CEH covers many of the industry-standard tools you will encounter in a real security role:
- Nmap: network discovery and port scanning
- Metasploit: exploitation framework
- Wireshark: packet analysis and traffic inspection
- Burp Suite: web application security testing
- Plus a wide range of supplementary tools for each attack category
The catch: CEH teaches you what these tools do and how they are used conceptually, more so than drilling deep hands-on proficiency. For the practical exam, you do get to use them in the iLabs environment, but the level of comfort you develop depends heavily on how much time you spend in labs beyond the structured curriculum.
CEH vs. OSCP vs. CompTIA PenTest+
Theory vs. hands-on: which cert proves more to employers
The three most commonly compared certifications in offensive security are CEH, OSCP, and CompTIA PenTest+. Each serves a different audience and signals something different to employers.
| Factor | CEH v13 | OSCP | CompTIA PenTest+ |
| Issuer | EC-Council | Offensive Security | CompTIA |
| Format | MCQ + practical (optional) | 24-hour lab exam + report | MCQ + performance-based |
| Cost | ~€900–€3,000 | ~€1,500 | ~€410 |
| Difficulty | Moderate | Hard | Moderate |
| Hands-on depth | Moderate (iLabs) | Very high (real machines) | Moderate |
| Employer recognition | Strong in HR/government | Strong among technical teams | Good at entry level |
| Best for | Career changers, government, HR screening | Serious pen testers, red teamers | Entry-level, budget-conscious |
OSCP’s 24-hour live exam, where you must compromise real machines in a network and write a professional penetration testing report, is widely regarded as the gold standard for proving hands-on capability. Technical hiring managers at consultancies, red teams, and mature security organizations almost universally respect OSCP more than CEH at the skill-demonstration level.
PenTest+ occupies the budget-friendly, entry-level end of the spectrum. At ~€410, it is significantly cheaper than either CEH or OSCP, and it is a reasonable starting point for someone early in their security journey who cannot yet justify the investment in the others.
Which to choose based on your career stage
- Early career, limited budget: Start with CompTIA Security+ and then PenTest+. Build foundational knowledge before spending €1,000+ on CEH.
- Career changer targeting government or enterprise roles: CEH is a practical choice. It will get you past HR screening and into interviews.
- Aspiring penetration tester or red teamer: OSCP is the credential that will matter most to the people who interview you. Budget for it and commit to the labs.
- Already working in security, want to formalize knowledge: CEH v13’s broad curriculum has genuine value for filling gaps, especially with the new AI modules.
Is the CEH Certification Worth It? Career Impact and Hiring Reality
Where CEH helps: HR screening and government roles
The CEH’s real-world value is concentrated in specific hiring contexts. In those contexts, it delivers meaningfully:
HR and applicant tracking systems: Many enterprise job postings list CEH as a preferred or required qualification. ATS filters often screen for it by name. If you are applying to mid-size or large organizations where HR handles initial screening, CEH on your resume can be the difference between getting a callback and being filtered out.
Government and defense: The DoD 8570/8140 approval is significant. If your career goals involve government agencies, federal contractors, or the military, CEH is often explicitly required. In this environment, having the credential is a non-negotiable checkbox, not just a nice-to-have.
Broad knowledge validation: For roles like security analyst, security consultant, or vulnerability management, where you need to understand the full attack surface without necessarily exploiting it yourself, CEH’s breadth is a genuine asset.
Where CEH falls short: technical credibility vs. OSCP
Honesty requires acknowledging the certification’s real limitations:
Skepticism from technical teams: In the penetration testing and red team community, CEH is sometimes dismissed as a “paper cert”: a credential that proves exam-passing ability rather than actual hacking skill. This reputation is not entirely fair (especially with the v13 practical exam), but it is real and affects how your resume lands with technical hiring managers.
OSCP gap: The difference between answering MCQs about Metasploit and using Metasploit to compromise a machine under time pressure is significant. Technical interviewers know this. If you walk into a red team role interview with only CEH, expect to be tested harder during the technical screen.
Price-to-depth ratio: At €900–€3,000, CEH is expensive relative to the hands-on depth it develops compared to OSCP at ~€1,500, which includes lab access and delivers substantially more technical credibility.
The CEH + OSCP Stacking Strategy for Maximum Career Leverage
For career changers who want to break into penetration testing or offensive security within 12–18 months, a sequential certification strategy makes more sense than choosing between CEH and OSCP.
Step 1: Get CEH: CEH clears HR screening. It gives you the broad offensive security vocabulary, the DoD 8570 checkbox if government roles are in your sights, and a credential that appears on job postings across the market. It is your interview-getting tool.
Step 2: Pursue OSCP: Once you are in the door and have a clearer picture of where you want to go, OSCP closes the credibility gap. The 24-hour lab exam demonstrates that you can exploit systems under real conditions, which is what technical hiring managers actually care about.
The combined outcome: You clear both filters. HR sees CEH and schedules the call. The technical panel sees OSCP and takes you seriously. Neither credential alone achieves both outcomes as effectively as the combination.
This strategy works particularly well if you are transitioning from a non-technical background or a different IT role. CEH’s structured 20-module curriculum gives you the map; OSCP’s labs force you to actually navigate the terrain. The sequencing matters; trying to jump straight to OSCP without foundational knowledge often leads to frustration and failed attempts.
If you are looking for a structured path to both certifications, Cybersteps offers CEH Certification preparation and offensive security training as part of a guided cybersecurity certification track designed for career changers and security professionals at all stages.
How Much Does CEH Certification Cost?
In Germany, the CEH exam voucher alone costs approximately €850–€1,100 EUR, depending on whether you opt for an online remote-proctored exam via EC-Council or sit for the test at a physical Pearson VUE testing center. If you choose the self-study route, keep in mind there is also a mandatory non-refundable eligibility application fee of roughly €92 EUR ($100 USD) to verify your work experience.
If you need to complete official EC-Council training to waive the two-year experience requirement, expect to pay €1,800–€3,500 EUR for a comprehensive training and exam bundle—with self-paced digital e-learning packages sitting at the lower end and live, instructor-led German classroom bootcamps at the higher end. Retake attempts cost around €400–€460 EUR per attempt. Add an annual EC-Council membership fee of approximately €75 EUR/year ($80 USD) for the three-year renewal cycle, and total first-year costs in Germany range from roughly €950 to €1,200 EUR (voucher only, with qualifying experience) to €2,500–€3,600+ EUR (official training bundle). Third-party training providers often offer competitive pricing that falls between these figures—typically ranging from €1,100 to €2,000 EUR.
Is the CEH Certification Exam Hard?
For most candidates with a solid IT or security background, the CEH Certification knowledge exam is moderately difficult, challenging but passable with 4–6 weeks of dedicated study. The exam requires broad familiarity across 20 topic areas rather than deep expertise in any single domain. The practical exam adds meaningful difficulty: 20 challenges in 6 hours require hands-on tool proficiency, not just conceptual knowledge. Candidates without lab practice often find the practical significantly harder than the knowledge exam. Compared to OSCP, CEH is generally considered more accessible; OSCP’s 24-hour live exploitation exam demands a substantially higher level of technical skill.
Conclusion
The CEH certification in 2026 is a useful credential in the right context, and an expensive disappointment in the wrong one. If your goals involve government or defense roles, enterprise HR screening, or building a broad theoretical foundation in offensive security, CEH v13 delivers real value. The AI-focused updates in v13 make it more relevant than previous versions, and the practical exam option adds credibility that the knowledge-only format lacked.
If you want to prove hands-on hacking skill to a technical audience, OSCP is the stronger signal, full stop. The two certifications are not competing for the same purpose, which is why stacking them sequentially is often the most pragmatic path for serious career changers.
The bottom line: the CEH Certification opens doors. OSCP proves you can walk through them. Decide which problem you are trying to solve, and invest accordingly.
Ready to Build a Career in Cybersecurity?





