ADVANCED RED TEAM OPERATIONS: LATERAL MOVEMENT & DOMAIN DOMINANCE MASTERCLASS
Master the art of “Living off the Land.” Move silently through enterprise networks, bypass modern EDR/AV, and escalate to Domain Admin without triggering alarms.

OPERATIONAL OBJECTIVES
Standard pentesting is noisy. In this masterclass, we move beyond basic scanning and ‘script-kiddie’ exploits. You will learn the tradecraft used by Advanced Persistent Threats (APTs) to maintain long-term persistence and move laterally using legitimate system tools.
The Syllabus
Initial Access & Evasion
- Weaponizing C2 frameworks (Mythic C2).
- Bypassing AV/EDR using obfuscation and environmental keying.
Internal Reconnaissance
- Stealthy enumeration with BloodHound and Sharphound.
- Identifying high-value targets without touching disk.
Lateral Movement Tradecraft
- Abusing WinRM, WMI, and DCOM for silent movement.
- Pass-the-Hash (PtH) and Overpass-the-Hash techniques.
Active Directory Exploitation
- Kerberoasting & AS-REP Roasting manual execution.
- Token manipulation and impersonation.
Persistence & Exfiltration
- Golden/Silver Ticket creation.
- Data exfiltration via DNS tunneling and C2 channels.
Cybersecurity Architect
Fikrat Karimli is a veteran cybersecurity professional with over 10 years of experience executing high-stakes penetration tests and strategic red team engagements. Currently the Cybersecurity Architect at Project Worldwide.
A competitive red teamer at his core, Fikrat is a 2x SentinelOne Threat Ops Champion, a MITRE CTF Champion, and a U.S. National Cyber League Champion. He holds the industry’s most rigorous offensive certifications, including OSEP (Offensive Security Expert Professional), OSCE, OSCP, and the GIAC Experienced Penetration Tester (GX-PT). His expertise focuses on advanced lateral movement, C2 infrastructure, and purple-team methodologies that help organizations defend against modern APTs.

