Red Teaming
An end-to-end red-team curriculum — tradecraft, initial access, evasion, credential access, lateral movement, and C2, mapped to MITRE ATT&CK. Follow it top to bottom — foundational first (16 tutorials).
Red TeamingHTML Smuggling and ISO/IMG-Based Payload DeliveryHTML smuggling assembles payloads inside the browser, defeating perimeter inspection. This lab builds the full ISO/LNK delivery chain used by NOBELIUM and…Read →Red TeamingIntroduction to C2 Frameworks: Cobalt Strike, Havoc, and SliverMaster Cobalt Strike, Havoc, and Sliver C2 frameworks with real operator commands, lab setup, and detection coverage using Sysmon, ETW, and Sigma…Read →Red TeamingC2 Beaconing: Sleep, Jitter, and Communication PatternsLearn how C2 beacons use sleep timers, jitter, and protocol shaping to evade detection - then build a working implant in C,…Read →Red TeamingMalleable C2 Profiles: Blending Into Legitimate TrafficLearn how Cobalt Strike's Malleable C2 DSL disguises Beacon as legitimate jQuery traffic - then flip perspectives and catch it with Sysmon,…Read →Red TeamingDomain Fronting and CDN Redirection for C2 ResilienceLearn how domain fronting exploits the SNI/Host header split to route C2 traffic through CDN infrastructure undetected. Covers full redirector chain setup…Read →