|
所在平台: Udemy |
课程主页: https://www.udemy.com/course/learn-active-directory-pentesting-for-redteaming-part-1/
课程评论:没有评论
**课程总结:学习Active Directory渗透测试(第一部分)** 本Coursera课程专为希望从基础学习Windows渗透测试的初学者设计。课程深入讲解了持久化和横向移动技术,旨在帮助学员从红队视角理解如何着手进行Windows机器渗透。 课程内容涵盖: * **Active Directory (AD) 枚举:** 学习如何有效地枚举AD环境,为后续攻击奠定基础。 * **权限提升:** 掌握从普通用户账户逐步提升到域管理员权限的各种技术。 * **持久化技术:** 学习如何在目标系统中建立持久的立足点,以便长期控制。 * **Kerberos 攻击:** 深入讲解Delegation攻击、Silver Ticket、Golden Ticket、Diamond Ticket等高级Kerberos攻击技术。 课程模拟真实世界的攻击场景,从一个域内的普通用户账户开始,逐步实现权限提升至域管理员。重点在于利用大多数恶意黑客常用的攻击手法。本课程采用Windows 10作为练习环境,适合安全专业人士进行实践。 无论是学生还是经验丰富的专业人士,本课程都极具价值。我们将从端口枚举开始,深入理解如何对端口进行枚举和分析。**随着AD安全知识的鸿沟日益扩大,本课程旨在填补安全专业人士和管理员在AD安全方面知识的空白**,提供高质量的教学材料和详细的操作演示与解释。
This course is aimed at beginners who want to learn windows pentesting from basics.This course teaches Persistence and Lateral Movement techniques in-depth.After this course , you will have good understanding of how to approach a Windows machines from a Red-Team's Perspective. This course covers AD enumeration, privilege escalation, persistence, Kerberos attacks like delegation attacks, silver ticket, golden ticket, diamond ticket etc.The course simulate real world attack and we go from a normal user account in the domain and escalate privileges to Domain admin. The focus is on exploiting the different types of attacks that most malicious hackers in the world follow. This course is designed to provide security professionals to practice in a Windows 10 machine. The course is beginner friendly and will be suited for both students and experienced professionals. We will go from the port enumeration and understand how to enuemrate the ports.When it comes to AD security, there is a large gap of knowledge which security professionals and administrators struggle to fill. Over the years, I have taken numerous world trainings on AD security and always found that there is a lack of quality material and specially, a lack of good walkthrough and explanation.