PEN-300: Evasion Techniques and Breaching Defenses
Evasion Techniques and Breaching Defenses (PEN-300) is an advanced penetration testing course that teaches students the advanced penetration testing methods.
-
Module 1: Evasion Techniques and Breaching Defenses: General Course Information
-
Module 2: Operating System and Programming Theory
-
Module 3: Client Side Code Execution With Office
-
Module 4: Client Side Code Execution With Windows Script Host
-
Module 5: Process Injection and Migration
-
Module 6: Introduction to Antivirus Evasion
-
Module 7: Advanced Antivirus Evasion
-
Module 8: Application Whitelisting
-
Module 9: Bypassing Network Filters
-
Module 10: Linux Post-Exploitation
-
Module 11: Kiosk Breakouts
-
Module 12: Windows Credentials
-
Module 13: Windows Lateral Movement
-
Module 14: Linux Lateral Movement
-
Module 15: Microsoft SQL Attacks
-
Module 16: Active Directory Exploitation
-
Module 17: Combining the Pieces
-
Module 18: Trying Harder: The Labs
About The Course
Evasion Techniques and Breaching Defenses (PEN-300) is an advanced penetration testing course. Students who complete the course and pass the exam will earn the Offensive Security Experienced Pentester (OSEP) certification. This course builds on the knowledge and techniques taught in Penetration Testing with Kali Linux, teaching students to perform advanced penetration tests against mature organizations with an established security function and focuses on bypassing security mechanisms that are designed to block attacks.
Course Objectives
- Preparation for more advanced Penetration Testing field work
- Knowledge of breaching network perimeter defenses through client-side attacks, evading antivirus and allow-listing technologies
- How to customize advanced attacks and chain them together
Pre-Requisites
- Solid ability in enumerating targets to identify vulnerabilities
- The ability to identify and exploit vulnerabilities like SQL injection, file inclusion, and local privilege escalation
- A foundational understanding of Active Directory and knowledge of basic AD attacks
What's included
- 40 Hours Training Course
- Certificate
- 18 Modules
- 24/7 Support