What you work through
- Governance, adversary emulation, and recon
- Attack infrastructure, C2, and cloud redirectors
- OPSEC, weaponization, and post-exploitation
- Local privilege escalation and persistence
- Active Directory, credentials, lateral movement
- Enterprise services and engagement close