Skip to content

Training — Bundle 02

Network & Operating System Security

Applications get the attention, but the infrastructure underneath is where breaches turn catastrophic. This program teaches you how attackers move through networks and operating systems — and how to stop them.

Level
Intermediate
Format
Live sessions with hands-on labs
Delivery
Online or on-site

Why this program

Every serious breach ends in the infrastructure layer.

An attacker's initial foothold is rarely the goal — it's the starting point. What determines the cost of an incident is what happens next: credential theft, privilege escalation, and lateral movement through an environment that trusted itself far too much.

Curriculum

Six modules covering both sides of the network.

You learn each attack by performing it, then learn the detection and hardening that would have stopped you.

  1. 01

    Network Fundamentals for Attackers

    Protocols, segmentation, and trust relationships — seen through the eyes of someone looking for a way through them.

  2. 02

    Linux Security & Privilege Escalation

    Permissions, SUID abuse, service misconfiguration, kernel exposure, and hardening that actually holds.

  3. 03

    Windows Internals & Escalation

    Windows authentication, token abuse, service and registry misconfiguration, and local privilege escalation paths.

  4. 04

    Active Directory Attacks

    Enumeration, Kerberoasting, delegation abuse, and the misconfigurations that turn one user account into domain control.

  5. 05

    Lateral Movement & Persistence

    Credential harvesting, pivoting between hosts, and how attackers maintain access once they're inside.

  6. 06

    Detection & Hardening

    What each attack looks like in logs and telemetry, and the controls that break the chain rather than just alerting on it.

What you'll be able to do afterwards

  • Enumerate and attack an Active Directory environment
  • Escalate privileges on both Linux and Windows hosts
  • Map and execute realistic lateral movement paths
  • Recognize attacker behaviour in logs and telemetry
  • Recommend hardening that measurably breaks attack chains

Tools you'll work with

  • Nmap
  • BloodHound
  • Impacket
  • Responder
  • CrackMapExec
  • Metasploit
  • PowerShell
  • Wireshark

Who this is for

  • System and network administrators moving into security
  • SOC analysts who want to understand what they're detecting
  • Penetration testers expanding from web into infrastructure
  • IT teams responsible for hardening internal networks

Questions

Before you enrol.

Anything else, email connect@uncrypt.net.

  • No. Lab environments are provided, including a full Active Directory domain built to be attacked.

Want to understand how attackers really move?

Tell us about your environment and experience level to get started.

Within one business day · NDA on request