ADVANCED RED TEAM OPERATIONS: LATERAL MOVEMENT & DOMAIN DOMINANCE MASTERCLASS

Master the art of “Living off the Land.” Move silently through enterprise networks, bypass modern EDR/AV, and escalate to Domain Admin without triggering alarms.

OPERATIONAL OBJECTIVES

Standard pentesting is noisy. In this masterclass, we move beyond basic scanning and ‘script-kiddie’ exploits. You will learn the tradecraft used by Advanced Persistent Threats (APTs) to maintain long-term persistence and move laterally using legitimate system tools.

The Syllabus

Initial Access & Evasion

  • Weaponizing C2 frameworks (Mythic C2).
  • Bypassing AV/EDR using obfuscation and environmental keying.

Internal Reconnaissance

  • Stealthy enumeration with BloodHound and Sharphound.
  • Identifying high-value targets without touching disk.

Lateral Movement Tradecraft

  • Abusing WinRM, WMI, and DCOM for silent movement.
  • Pass-the-Hash (PtH) and Overpass-the-Hash techniques.

Active Directory Exploitation

  • Kerberoasting & AS-REP Roasting manual execution.
  • Token manipulation and impersonation.

Persistence & Exfiltration

  • Golden/Silver Ticket creation.
  • Data exfiltration via DNS tunneling and C2 channels.
Fikrat Karimli
Cybersecurity Architect

Fikrat Karimli is a veteran cybersecurity professional with over 10 years of experience executing high-stakes penetration tests and strategic red team engagements. Currently the Cybersecurity Architect at Project Worldwide.

A competitive red teamer at his core, Fikrat is a 2x SentinelOne Threat Ops Champion, a MITRE CTF Champion, and a U.S. National Cyber League ChampionHe holds the industry’s most rigorous offensive certifications, including OSEP (Offensive Security Expert Professional), OSCEOSCP, and the GIAC Experienced Penetration Tester (GX-PT). His expertise focuses on advanced lateral movement, C2 infrastructure, and purple-team methodologies that help organizations defend against modern APTs.