Back

Professional Enterprise Penetration Testing
In-person

Enterprise penetration testing serves as a proactive measure to identify and mitigate security weaknesses before they can be exploited by malicious actors

Tarek

Lead Trainer

96 hr

Description

Course Curriculum

Modern Recon

4 lessons

Recon for massive scopes

Passive recon using modern whois, DNS and ASNs

In-deposable cloud recon

Scouring for credentials, secrets and keys

Initial Access: Azure

4 lessons

Username enumeration

Service enumeration

AiTM and device code phishing

Attacking common services

Initial Access: Servers

5 lessons

Scanning vs. Mass scanning

Strategies for scanning large networks

Service enumeration

Vulnerability scanning

Exploit selection for initial access

Initial Access: Endpoints

3 lessons

Info gathering for initial access (users, emails, tech in use, etc.)

Email based social engineering

Phishing and payload delivery

Understanding Payloads

3 lessons

Payloads and stages

Different types of payloads

Commonly used payloads

Command and Control (C2)

3 lessons

Choosing a C2

C2 for initial access

C2 for post exploitation

Post Exploitation

6 lessons

Persistence

Linux privilege escalation

Windows privilege escalation

EDR evasion

Lateral movement

Exfiltration

Password Attacks

7 lessons

Clear text passwords

Online password attacks

Dumping hashes

Capturing hashes

Extracting hashes

Using uncracked hashes

Cracking hashes

Attacking Active Directory

4 lessons

Enumerating AD

Escalating privileges in AD

Kerberos attacks

AD persistence

Reporting

3 lessons

Types of reporting

Reporting best practices

Reporting pitfalls