Home

Our training

Web Training

Fenrisk sharpens your web application exploitation skills by providing vulnerable infrastructures and guiding you through their exploitation. The latest techniques published and used by attackers are reproduced so you can master them and learn how to defend against them. Fenrisk’s experts maintain a constant technology watch to keep this training up to date and stay at the cutting edge of research in the field.

Active Directory Training & Labs

Fenrisk puts its offensive expertise to work upskilling your teams. Our labs reproduce realistic Windows information systems — multi-domain Active Directory, workstations, application servers, SCCM, ADCS — in which your staff carry out a real attack chain, from initial access to full takeover of the forest. Every technique performed in a controlled environment is tied to its detection and remediation, turning the attack into a real lever for defense.

A living environment, not a theoretical exercise

Our labs are not a series of isolated exercises: they are complete, coherent Active Directory infrastructures, with their domains, trust relationships, services — SCCM, ADCS, file servers — and misconfigurations, just as they are found in real-world conditions. Your teams work in a living information system that can be deployed, reset and replayed at will, with a dedicated environment for each participant.

Each lab is run like a real operation: from network reconnaissance and authentication coercion to Kerberos abuse, delegations, NTLM relaying, SCCM and ADCS compromise, and finally crossing domain boundaries. Participants don’t sit through a demonstration: they execute the attack chain themselves, link by link, and understand why each step works.

From foothold to forest domination

The offering adapts to your teams’ level. A first, advanced track goes from enumerating an exposed web application all the way to Domain Admin via ADCS. A second, expert track walks through a full multi-domain compromise, from IPv6 poisoning to Enterprise Admin across the entire forest.

By the end of the training, your pentesters refine their methodology, your defensive teams learn to recognize modern offensive techniques, and your administrators see the concrete impact of every misconfiguration.

Red Team Training

Finally, Fenrisk brings all this knowledge together in a Red Team training. The goal is to reproduce the compromise of an entire organization and understand how the different areas of offensive security fit together. Emphasis is placed on stealth, so participants learn to evade defense teams. The end goal is to carry out a complete attack scenario, from outside the network all the way to critical objectives. It is also an opportunity to learn how to defeat the detections that would allow defense teams to spot the attack and respond accordingly.

Intereseted by one (or more) service(s) ?

Put a target to the test