Active Directory
LLMNR/NBT-NS poisoning, Kerberoasting, AS-REP roasting, DCSync, misconfigured ACLs and GPOs.
We simulate an attack from an "assumed breach" position: what can an attacker do once they're past the perimeter? Active Directory, Kerberoasting, lateral movement, SOC maturity.
With a Mitre ATT&CK-style report and an optional Purple Team workshop for the SOC.
Full cycle from first compromise to domain admin — every step recorded.
LLMNR/NBT-NS poisoning, Kerberoasting, AS-REP roasting, DCSync, misconfigured ACLs and GPOs.
Privilege escalation, password reuse, forgotten service accounts, over-privileged regular users.
Checking the boundaries between VLANs, zones and segments. Access to critical systems from the user segment.
Do SOC and SIEM see you? Do alerts trigger on typical Mitre ATT&CK techniques? Time to detect and respond.
We simulate the entry point: compromised regular user account or phishing with a device inside the network.
Hunting for critical systems, shares, service accounts, domain controllers and paths to target assets.
Pass-the-Hash, Pass-the-Ticket, RDP-hopping, using compromised caches and tokens.
Persistence in the infrastructure, hidden backdoors, simulated data exfil — all to assess real SOC readiness.
Active Directory, domains, network segmentation, Windows and Linux servers, RDP access, domain controllers.
Production environments, internal services, engineer access, separate dev/stage environments.
Regulatory requirements on internal controls, segregation of duties, privileged access audit.
Detection maturity check: does SIEM see your actions, how does the SOC respond, how fast does it escalate.
We agree on boundaries: network, domains, exclusions, test windows, escalations.
Sign the NDA, agree on a low-privilege starting account (assumed breach).
Simulating an attacker inside the perimeter. Privilege escalation and lateral movement.
We assess what SIEM saw, how the SOC reacted, which alerts fired and how fast.
We deliver the report with attack timeline and hardening recommendations, optionally a Purple Team workshop.
Describe your infrastructure — scale, working format, focus. We discuss details in DevBay's secure chat.
After submission we open a dialog in the internal chat — that's where we continue.
Describe the infrastructure — we'll align scope, sign NDA and test how ready your perimeter is for an inside-out breach.