Rabat, MoroccoOn-site · Virtual classroom · Corporate training
contact@avnorysacademy.com

Offensive cybersecurity

Internal penetration testing and Active Directory

Assess the security of an enterprise environment and Active Directory through a controlled, traceable approach.

Learning objectives

  • Map a domain and its trust relationships
  • Identify configuration weaknesses and attack paths
  • Validate impact using controlled techniques
  • Define prioritised and measurable remediation

Who should attend

Penetration testers, red teamers, security engineers and administrators seeking to understand attack paths.

Prerequisites

Solid foundations in Windows, Active Directory, networking, PowerShell and Linux.

Course outline

  • Preparation, scope, OPSEC and initial collection
  • Network, service, identity and Active Directory enumeration
  • Windows authentication, Kerberos, delegation and trust relationships
  • Privilege escalation, lateral movement and attack paths
  • Segmentation, security controls and impact validation
  • Cleanup, evidence, ATT&CK mapping and reporting

Learning approach

Structured instruction, demonstrations, guided exercises, case studies and learning assessment. Technical environments are used only within an authorised context.

Reference source: MITRE ATT&CK Enterprise, plateforme Windows ↗
Programme restricted to authorised environments. It does not award a MITRE certification.