24/7 ONLINE · 09:00–00:00◆Hacettepe Teknokent / Ankara
+90 536 662 38 09[email protected]
DSETDoğanay Siber Emniyet
  • Services
  • Academy
  • Simulator
  • Blog
    BlogArticles · technical write-ups · guidesAnnouncementsLatest DSET news · bulletinsVideo GalleryTraining · demos · cyber security videos
  • About Us
    About UsThe DSET story · vision · teamSimulators and ToolsFree interactive calculators, simulators and diagnosis wizardsSector SolutionsFinance · Healthcare · Public Sector · E-Commerce · 7 industriesReference CasesReal DSET cases · industry outcomesIn the PressDSET in the national pressSite SearchAll content · articles · services · casesFrequently Asked QuestionsCommon questions · quick answersContactPhone · WhatsApp · address · form
  • Tracking System
    Customer LoginAccount dashboard · request trackingForensics RequestDigital evidence · examination requestData Recovery RequestDisk · RAID · recovery requestPrice CalculatorATK 2026 reference · 9 services
KAOS
TREN
DSETCustomer Panel

Sign in to your account

Request tracking, quote approval and your history in one panel.

Loading security verification...
DSET Customer Panel AES 256 GCM encrypted session
DSET AI
Interactive · simulated · TR + EN

Red Team Lab

A browser terminal where you type real attacker commands against a fictional company, ACME Corp. You get realistic output, graduated hints, scoring and a capstone where you chain everything into a full engagement.

Authorized education only. Everything here is 100% simulated. The target is fictional, no real systems are touched, no real exploits run. These skills must only be used on systems you are explicitly authorized to test. Unauthorized access is a crime (Turkish Penal Code Art. 243-245).
PART I

Core Kill Chain · 4 stages + capstone

The classic red team kill chain against ACME Corp: recon, breach, privilege escalation, lateral movement and a full-engagement capstone.

1

Recon

TA0043Start →
2

Initial Access

TA0001Open →
3

Privilege Escalation

TA0004Open →
4

Objective

TA0040Open →
★

Capstone

FULLOpen →
Enter Part I · Stage 1
PART II · ADVANCED

Active Directory & ADCS Takeover · 5 stages + capstone

Continue from db01 into the acme.local Active Directory forest. Modern enterprise red team techniques that surprise even practitioners: BloodHound attack-path graphing, Kerberoasting and AS-REP roasting, Shadow Credentials, ADCS ESC1 certificate abuse, DCSync and Golden Tickets. Go from a low-privilege domain user to Enterprise Admin.

1

AD Recon + BloodHound

T1087Start →
2

Kerberoasting + AS-REP

T1558Open →
3

Shadow Credentials

T1098Open →
4

ADCS ESC1

T1649Open →
5

DCSync + Golden Ticket

T1003Open →
★

AD Capstone

FULLOpen →
Enter Part II · Active Directory Read the theory →
PART III · ADVANCED

Hybrid Cloud · Azure / Entra ID Takeover · 5 stages + capstone

Pivot from on-prem Domain Admin into ACME's Microsoft 365 / Azure (Entra ID) cloud. The hottest modern hybrid-identity attacks: Azure AD Connect credential theft, Seamless SSO Silver Tickets, over-privileged service principal takeover, illicit role assignment, and a Golden SAML federation backdoor. Go from on-prem dominance to Global Administrator and full tenant takeover.

1

Hybrid Recon + AAD Connect

T1526Start →
2

AAD Connect Credentials

T1552Open →
3

Seamless SSO Silver Ticket

T1558Open →
4

Service Principal Abuse

T1098Open →
5

Global Admin + Golden SAML

T1606Open →
★

Cloud Capstone

FULLOpen →
Enter Part III · Hybrid Cloud Read the theory →

What is this training?

DSET Red Team Lab is a hands-on, command-line penetration testing simulator that runs entirely in your browser. Unlike multiple-choice courses, you actually type tools like nmap, gobuster, sqlmap, hydra, linpeas and ssh, and the lab returns realistic output resolved against a fictional target network. Each objective is mapped to a MITRE ATT&CK technique, every stage builds on the last, and a graduated hint system teaches you the method without giving away the answer. It follows the classic red team kill chain: reconnaissance, initial access, privilege escalation and lateral movement, and finally a capstone where you run a full simulated engagement against ACME Corp.

FAQ

Do real attacks happen?
No. Everything is simulated against a fictional target. No real systems, IPs or exploits are involved.

Do I need to install anything?
No. The terminal runs in your browser, on desktop and mobile.

Is it for beginners?
Yes. It is a single guided track from beginner to advanced, with hints at every step.