ANT0406

Windows Active Directory Penetration Testing

Duration of training: 5 days

sign up for a course

description
course

This course equips participants with the principles, techniques, and tools required to conduct penetration testing (pentesting) of Windows Active Directory infrastructure and its connected services and applications. Pentesting is explored as an integral component of enterprise cybersecurity architecture — the curriculum therefore also addresses the methodological aspects of organizing pentest engagements and leveraging the findings they produce.

course audience

Penetration testing engineers and enterprise cybersecurity architects.

prerequisites

General cybersecurity knowledge at the ANT0000 course level, and TCP/IP networking knowledge at the ANT-N101 course level. Knowledge of network infrastructure penetration testing at the ANT0404 course level is recommended.

how it works
education

online course

The online course involves group classes with an instructor via video conferencing, in addition, homework and an exam.

for corporate clients

training for corporate clients includes online and self-study courses, as well as additional services required by corporate clients: organizing training plans for client departments, assessing the effectiveness of training, etc.

program
course

• Goals and objectives of penetration testing.
• Pentesting within enterprise security architecture.
• Cyber attack lifecycle.
• Cyber attack models.
• Pentesting toolset overview.
• Processing and utilizing pentest results.
• Open-source intelligence gathering (OSINT).
• Target scanning and attack surface discovery.
• Selecting appropriate tools and attack techniques.
• NetBIOS-based Windows domain network scanning.
• Windows interface enumeration via PowerShell.
• SMBv2, DCERPC, SAMR and other system protocols.
• LDAP interaction with AD DC.
• Scanning and enumeration toolset.
• Active account discovery.
• NTLM hash capture and protocol vulnerability exploitation.
• Kerberos protocol attacks.
• Password Brute-Forcing Against Network Services and Applications.
• Network service and application vulnerability exploitation.
• SAM database password extraction via system vulnerability exploitation.
• Credential extraction from LSASS — Mimikatz toolkit.
• Pass-the-hash attack logic in domain environments.
• Privilege escalation techniques in domain systems.
• Persistence mechanisms in domain environments.
• AD CS (PKI) attack.
• Microsoft SQL attacks.
• WSUS and SCCM attacks.
• Threat modeling and pentest findings.
• Risk management based on pentest-identified data.
• Enhancing the corporate vulnerability management program.
• Updating strategic cybersecurity metrics.

Сourse purchase
options

individual

Cost — $1,723.89

Group online classes

Unlimited access to all the materials

Live webinars with teachers

Homework

Exam with certificate

To confirm course dates fill out the form.

SUBMIT YOUR APPLICATION

* By clicking “send”, you agree to the Terms of Service And Privacy Policy

corporate

Cost from $1,723.89

To obtain information about the final cost and clarify the date of the course, please fill out the form.

SUBMIT YOUR APPLICATION

* By clicking “send”, you agree to the Terms of Service And Privacy Policy