Attacking and Defending Active Directory: Advanced Edition

Build expertise in attacking and defending real-world enterprise Active Directory environments.
Second batch:  07 Feb 2021  Duration: 4 weeks
Write your awesome label here.

What's included?

  • Become a Certified Red Team Expert [CRTE]

Identify and analyze threats and practice attacks against a modern multi-forest Active Directory environment. Included is one attempt at the CRTE exam.
  • Bootcamp Completion Certificate

Get a course completion certificate after attending all 4 live sessions.
  • 4 live sessions

  • 3 hrs per session

  • 4 weeks access

  • 60 flags to be collected

  • 29 lab exercises

  • 1 CRTE attempt

What will you learn?

This advanced bootcamp is designed to help security professionals understand, analyse and practice threats and attacks in a modern, multi-forest Active Directory environment with fully patched Server 2019 machines.

In addition to learning the popular tactics, techniques and procedures (TTPs), you will also see how they change for attacks across forest trusts. You will also learn how to abuse or bypass modern Windows defenses like Advanced Threat Analytics, LAPS, JEA, RBCD, WDAC, AWL, CLM, virtualization and more.

Live Session Schedule

Weekly 3 hr sessions start at 12:00pm ET and end at 3:00pm ET.
07 Feb 2021
14 Feb 2021
21 Feb 2021
28 Feb 2021
Introduction to Active Directory, Enumeration and Local Privilege Escalation
Lateral Movement, Domain Privilege Escalation and Persistence
Domain Persistence, Dominance and Escalation to Enterprise Admins
Defenses, Monitoring and Bypassing Defenses

Prerequisites

1. A good understanding of Active Directory security.
2. The ability to use command line tools.

Study Plan

Can't attend this bootcamp? Get informed about future bootcamps!

Thank you!
Thank you!
Meet the instructor

Nikhil Mittal

Nikhil Mittal is a hacker, infosec researcher, speaker and enthusiast. His areas of interest includes red teaming, Active Directory security, attack research, defense strategies and post exploitation research. He has 12+ years of experience in red teaming.

Nikhil has worked extensively on Active Directory attacks, defense and bypassing detection mechanisms and offensive PowerShell for red teaming. He is the creator of multiple tools like Nishang, a post exploitation framework in PowerShell, Deploy-Deception a framework for deploying Active Directory deception and the RACE toolkit for attacking Windows ACLs.

Nikhil has held trainings and bootcamps for various corporate clients (in US, Europe and SE Asia), and at the world’s top information security conferences.

He has spoken/trained at conferences like DEF CON, BlackHat, CanSecWest, BruCON and more.
Nikhil Mittal - Principal Instructor