Summary

  • The CRTP exam from Altered Security is designed to test the skills of red team professionals.
  • This certification is a challenge and preparation is key.
  • The exam is focused on weaponising misconfigurations in an Active Directory environment.
  • Therefore, thorough enumeration of the target is crucial for a viable attack path.
  • As there are no tools provided on the attacker machine, candidates must use their own and know how to transfer them between Windows machines.
  • Candidates should be proficient in on-the-spot research and troubleshooting to succeed.
  • Restarting machines can often help in cases of unresponsive systems, and carefully taking screenshots of all steps is recommended both for record-keeping and for the post-exam report.
  • References used in addition to the course material include the Microsoft Network, Adsecurity.org, and TechNet.

By Cyd Tseng

Original Article