Learning objectives
- Map a domain and its trust relationships
- Identify configuration weaknesses and attack paths
- Validate impact using controlled techniques
- Define prioritised and measurable remediation
Who should attend
Penetration testers, red teamers, security engineers and administrators seeking to understand attack paths.
Prerequisites
Solid foundations in Windows, Active Directory, networking, PowerShell and Linux.
Course outline
- Preparation, scope, OPSEC and initial collection
- Network, service, identity and Active Directory enumeration
- Windows authentication, Kerberos, delegation and trust relationships
- Privilege escalation, lateral movement and attack paths
- Segmentation, security controls and impact validation
- Cleanup, evidence, ATT&CK mapping and reporting
Learning approach
Structured instruction, demonstrations, guided exercises, case studies and learning assessment. Technical environments are used only within an authorised context.
Reference source: MITRE ATT&CK Enterprise, plateforme Windows ↗
Programme restricted to authorised environments. It does not award a MITRE certification.
Programme restricted to authorised environments. It does not award a MITRE certification.
