Red Team Surgeon - جراح الفريق الأحمر ( RTS )
- Description
- Curriculum
- Reviews
مميزات الدورة
- وصول مدى الحياة
- تحديث دوري مجاني
- الدورة مسجلة بالكامل
- شهادة موثقة برقم توثيق من Secstien Security LLC
- دعم فني مباشر مع المدرب
- مساعدة في التوظيف والـ CV
دورة جراح الفريق الأحمر (RTS)
عن هذه الدورة
تعتبر هذه الدورة برنامجًا تدريبيًا متقدمًا في مجال الأمن السيبراني الهجومي، وتحديدًا عمليات الفريق الأحمر (Red Team Operations)، وتهدف إلى نقلك من مرحلة مختبر الاختراق الذي يبحث عن الثغرات ويستغلها، إلى مرحلة Red Team Operator القادر على التخطيط لعملية هجومية متكاملة وتنفيذها للوصول إلى أهداف محددة داخل بيئات المؤسسات والشركات.
تعتمد الدورة على التدريب العملي باستخدام مختبرات تحاكي بيئات الشركات الحقيقية، بما فيها شبكات Windows وLinux، وبيئات Active Directory، والسيرفرات الداخلية، والبنية التحتية الهجومية، بحيث تتعلم كيف تربط التقنيات ببعضها وتنفذ عمليات Red Team متكاملة بدلًا من تعلم كل هجمة بشكل منفصل.
ماذا ستتعلم؟
-
لا نهدف في هذه الدورة إلى تعليمك استخدام أدوات الاختراق وحفظ أوامرها فقط، بل سنعلمك كيف يفكر الـRed Team Operator، وكيف يحلل البيئة المستهدفة، ويحدد المسارات الهجومية المناسبة، ويتخذ القرارات التقنية بناء على أهداف العملية والمخاطر المحتملة.
-
ستتعلم تنفيذ عمليات ما بعد الاختراق Post-Exploitation على أنظمة Windows وLinux، بما يشمل جمع المعلومات الداخلية، وتصعيد الصلاحيات، والوصول إلى بيانات المصادقة، والانتقال بين الأجهزة والشبكات.
-
ستتعلم كيف تنفذ عمليات Lateral Movement وPivoting وTunneling للوصول إلى الأنظمة الداخلية، وكيف تتعامل مع الشبكات المقسمة والبيئات التي لا يمكن الوصول إلى جميع أجهزتها بشكل مباشر.
-
لن نكتفي بالجانب الهجومي، بل سنتعرف أيضًا على آلية عمل تقنيات الحماية والمراقبة الحديثة مثل EDR وXDR وSIEM وSOC، وكيف يمكن الاستفادة من فهم الجانب الدفاعي عند التخطيط لعمليات Red Team وتنفيذها.
-
ستتعرف على عمليات Purple Team التي تجمع بين الفريق الأحمر والفريق الأزرق، وكيف يتم استخدام نتائج العمليات الهجومية لاختبار قدرات الكشف والاستجابة وتحسينها.
-
سنقوم بتدريبك على كتابة تقارير Red Team الاحترافية، وتوثيق المسارات الهجومية والأدلة والنتائج، وشرح أثر العملية على المؤسسة، وتقديم التوصيات التقنية المناسبة.
-
سنقوم بتدريبك على بناء وإدارة البنية التحتية الخاصة بعمليات الفريق الأحمر Red Team Infrastructure، والتعامل مع أنظمة القيادة والتحكم Command & Control – C2، وفهم آلية تواصلها مع الأجهزة التي يتم الوصول إليها أثناء العملية.
-
سنركز بشكل متقدم على بيئات Active Directory، بداية من فهم بنيتها الداخلية وآليات المصادقة فيها، وصولًا إلى اكتشاف المسارات الهجومية واستغلال أخطاء الصلاحيات والإعدادات، والتعامل مع Kerberos وNTLM وAD CS والعلاقات بين المستخدمين والأجهزة والمجموعات.
-
سنهتم بمفهوم Operational Security – OPSEC، وكيف يفكر الـRed Teamer في الآثار التي تتركها أنشطته على الأجهزة والشبكات، وما الذي يمكن لأنظمة الحماية وفرق المراقبة اكتشافه أثناء العملية.
-
سنقوم بتعليمك استخدام إطار MITRE ATT&CK لفهم سلوكيات المهاجمين وتصنيفها، وربط التقنيات الهجومية بالأهداف التشغيلية، والاستفادة منه في التخطيط لعمليات محاكاة المهاجمين Adversary Emulation.
-
سنستخدم الذكاء الاصطناعي AI في جوانب مختلفة من عمل الـRed Team Operator، مثل تحليل المعلومات، والمساعدة في كتابة السكربتات، ودراسة المسارات الهجومية، وتحليل النتائج وإعداد التقارير، مع التركيز على التحقق من صحة المخرجات وعدم الاعتماد عليها بشكل أعمى.
-
في نهاية الدورة ستنتقل من دراسة التقنيات بشكل منفصل إلى تنفيذ عملية Red Team متكاملة، تبدأ من التخطيط وتحديد الأهداف، وتمر بجمع المعلومات والوصول الأولي وما بعد الاختراق والتحرك داخل الشبكة، وتنتهي بتحقيق الهدف المطلوب وتوثيق النتائج وإعداد التقرير النهائي.
يتطلب الحصول على شهادة RTS إكمال Practical Final Examination العملي.
-
41.1 Introduction to Red TeamingPreview 4:51
-
51.2 Red Team vs Penetration Testing5:41
-
61.3 Red Team Roles & Types-of-Engagments7:20
-
71.4 ROF & Assumed Breach11:33
Rules of Engagement & Assumed Breach
-
81.5.1 MITRE ATT&CK P1/25:22
-
91.5.2 MITRE ATT&CK P2/212:57
-
101.6 Threat-Informed Red TeamingVideo lesson
-
111.7 Section QuizQuiz
-
122.1 OPSEC FundamentalsVideo lesson
-
132.2 Indicators of CompromiseVideo lesson
-
142.3 Security TelemetryVideo lesson
-
152.4 Windows LoggingVideo lesson
-
162.5 AV, EDR and XDRVideo lesson
-
172.6 Behavioral DetectionVideo lesson
-
182.7 Living off the LandVideo lesson
-
192.8 Operational CleanupVideo lesson
-
202.9 Section QuizQuiz
-
213.1 Infrastructure ArchitectureVideo lesson
-
223.2 RedirectorsVideo lesson
-
233.3 Domains and DNSVideo lesson
-
243.4 TLS and CertificatesVideo lesson
-
253.5 VPS InfrastructureVideo lesson
-
263.6 Infrastructure SegmentationVideo lesson
-
273.7 Infrastructure MonitoringVideo lesson
-
283.8 Infrastructure TeardownVideo lesson
-
293.9 Section QuizQuiz
-
304.1 C2 FundamentalsVideo lesson
-
314.2 C2 ArchitectureVideo lesson
-
324.3 C2 FrameworksVideo lesson
-
334.4 ListenersVideo lesson
-
344.5 Agents and BeaconsVideo lesson
-
354.6 Sleep and JitterVideo lesson
-
364.7 Staged vs StagelessVideo lesson
-
374.8 C2 ProfilesVideo lesson
-
384.9 Multi-Host OperationsVideo lesson
-
394.10 C2 OPSECVideo lesson
-
404.11 Section LabVideo lesson
-
415.1 Passive ReconVideo lesson
-
425.2 Corporate OSINTVideo lesson
-
435.3 Attack Surface MappingVideo lesson
-
445.4 Domains and SubdomainsVideo lesson
-
455.5 Technology FingerprintingVideo lesson
-
465.6 Employee ReconVideo lesson
-
475.7 Cloud ReconVideo lesson
-
485.8 Credential Exposure & LeaksVideo lesson
-
495.9 Initial Access PlanningVideo lesson
-
505.10 Section LabVideo lesson
-
516.1 Initial Access StrategyVideo lesson
-
526.2 External ServicesVideo lesson
-
536.3 Valid AccountsVideo lesson
-
546.4 Password SprayingVideo lesson
-
556.5 Web Application Initial AccessVideo lesson
-
566.6 PhishingVideo lesson
-
576.7 Spear PhishingVideo lesson
-
586.8 Payload DeliveryVideo lesson
-
596.9 Initial Access OPSECVideo lesson
-
606.10 Section LabVideo lesson
-
617.1 Windows Security ArchitectureVideo lesson
-
627.2 Processes and ThreadsVideo lesson
-
637.3 Access TokensVideo lesson
-
647.4 Windows ServicesVideo lesson
-
657.5 Windows RegistryVideo lesson
-
667.6 Named PipesVideo lesson
-
677.7 Windows AuthenticationVideo lesson
-
687.8 — LSASSVideo lesson
-
697.9 Section QuizQuiz
-
708.1.1 Windows Services Exploitation P1Video lesson
-
718.1.2 Windows Services Exploitation P2Video lesson
-
728.2 Host TriageVideo lesson
-
738.3 User EnumerationVideo lesson
-
748.4 Network EnumerationVideo lesson
-
758.5 Process EnumerationVideo lesson
-
768.6 Security Product DiscoveryVideo lesson
-
778.7 Software EnumerationVideo lesson
-
788.8 Local Secrets DiscoveryVideo lesson
-
798.9 Host Decision MakingVideo lesson
-
808.10 Section LabVideo lesson
-
819.1 Privilege Escalation MethodologyVideo lesson
-
829.2 Service MisconfigurationsVideo lesson
-
839.3 File and Registry PermissionsVideo lesson
-
849.4 Scheduled TasksVideo lesson
-
859.5 UAC BypassVideo lesson
-
869.6 Token ImpersonationVideo lesson
-
879.7 Credential-Based EscalationVideo lesson
-
889.8 Section LabVideo lesson
-
8910.1 Windows Credential ArchitectureVideo lesson
-
9010.2 NTLM HashesVideo lesson
-
9110.3 SAM and SECURITYVideo lesson
-
9210.4 LSASS CredentialsVideo lesson
-
9310.5 Cached Domain CredentialsVideo lesson
-
9410.6 LSA SecretsVideo lesson
-
9510.7 Credential ManagerVideo lesson
-
9610.8 Browser CredentialsVideo lesson
-
9710.9 Credential ReuseVideo lesson
-
9811.1 AD ArchitectureVideo lesson
-
9911.2 Users, Groups and ComputersVideo lesson
-
10011.3 LDAPVideo lesson
-
10111.4 KerberosVideo lesson
-
10211.5 Group PolicyVideo lesson
-
10311.6 ACL and ACEVideo lesson
-
10411.7 Domain and Forest TrustsVideo lesson
-
10511.8 Active Directory EnumerationVideo lesson
-
10611.9 Active Directory Enumeration P2Video lesson
-
10711.10 BloodHoundVideo lesson
-
10811.11 Attack Path AnalysisVideo lesson
-
10912.1 KerberoastingVideo lesson
-
11012.2 AS-REP RoastingVideo lesson
-
11112.3 Password SprayingVideo lesson
-
11212.4 ACL AbuseVideo lesson
-
11312.5 Group Membership AbuseVideo lesson
-
11412.6 Kerberos DelegationVideo lesson
-
11512.7 Active Directory Certificate ServicesVideo lesson
-
11612.8 AD CS Attack PathsVideo lesson
-
11712.9 Domain Compromise PathsVideo lesson
-
13315.1 Persistence StrategyVideo lesson
-
13415.2 Account-Based PersistenceVideo lesson
-
13515.3 Service PersistenceVideo lesson
-
13615.4 Scheduled TasksVideo lesson
-
13715.5 Registry PersistenceVideo lesson
-
13815.6 Domain Persistence ConceptsVideo lesson
-
13915.7 Persistence OPSECVideo lesson
-
14015.8 Section LabVideo lesson
-
14116.1 Linux Post-ExploitationVideo lesson
-
14216.2 Linux Privilege EscalationVideo lesson
-
14316.3 Linux CredentialsVideo lesson
-
14416.4 Linux PersistenceVideo lesson
-
14516.5 Linux Lateral MovementVideo lesson
-
14616.6 Linux for Red Team InfrastructureVideo lesson
-
14716.7 Section LabVideo lesson
-
14817.1 Cloud for Red TeamersVideo lesson
-
14917.2 Microsoft Entra IDVideo lesson
-
15017.3 Hybrid IdentityVideo lesson
-
15117.4 Cloud ReconVideo lesson
-
15217.5 Tokens and SessionsVideo lesson
-
15317.6 OAuth ApplicationsVideo lesson
-
15417.7 Hybrid Attack PathsVideo lesson
-
15517.8 Cloud Persistence ConceptsVideo lesson
-
15618.1 Blue Team MindsetVideo lesson
-
15718.2 SIEM VisibilityVideo lesson
-
15818.3 EDR VisibilityVideo lesson
-
15918.4 Detection EngineeringVideo lesson
-
16018.5 Sigma RulesVideo lesson
-
16118.6 Behavioral DetectionVideo lesson
-
16218.7 Identity DetectionVideo lesson
-
16318.8 Red and Blue Feedback LoopVideo lesson
-
17120.1 Red Team vs Pentest ReportsVideo lesson
-
17220.2 Executive Summary ( to Administration & Stock Holders )Video lesson
-
17320.3 Attack NarrativeVideo lesson
-
17420.4 Attack TimelineVideo lesson
-
17520.5 MITRE ATT&CK MappingVideo lesson
-
17620.6 Detection FindingsVideo lesson
-
17720.7 Root Cause AnalysisVideo lesson
-
17820.8 RemediationVideo lesson
-
18522.1 AI for Red Team OperatorsVideo lesson
-
18622.2 AI for Enumeration AnalysisVideo lesson
-
18722.3 AI-Assisted Code AnalysisVideo lesson
-
18822.4 AI for Attack Path AnalysisVideo lesson
-
18922.5 Local LLMsVideo lesson
-
19022.6 AI OPSECVideo lesson
-
19122.7 AI Agents for Security OperationsVideo lesson
تريد حجز أكثر من دورة؟ لديك الحق في الحصول على خصم إضافي والكثير الكثير من الميزات الإضافية