{"product_id":"mastering-breach-and-adversarial-attack-simulation-engagements","title":"Mastering breach and adversarial attack simulation engagements","description":"\u003cp\u003e\u003cstrong\u003eName of Training:\u003c\/strong\u003e Mastering Breach and Adversarial Attack Simulation Engagements\u003cbr\u003e\u003cstrong\u003eTrainer:\u003c\/strong\u003e ABX\u003cbr\u003e\u003cstrong\u003eDates:\u003c\/strong\u003e November 08-09, 2026\u003cbr\u003e\u003cstrong\u003eTime:\u003c\/strong\u003e 9:00 am - 5:00 pm\u003cbr\u003e\u003cstrong\u003eVenue:\u003c\/strong\u003e Exhibition World Bahrain\u003cbr\u003e\u003cstrong\u003eCost:\u003c\/strong\u003e 1200 BHD\u003c\/p\u003e\n\u003cp\u003e\u003cspan style=\"color: rgb(224, 21, 21);\"\u003e\u003cstrong\u003eImportant Note:\u003c\/strong\u003e This training is exclusively available to \u003cstrong\u003egovernment entities and participants from GCC countries\u003c\/strong\u003e.\u003c\/span\u003e\u003c\/p\u003e\n\u003ch2\u003e1. Short Summary\u003c\/h2\u003e\n\u003cp\u003eParticipants learn to safely emulate real-world threat actors and unknown adversaries in controlled enterprise environments, selecting from a wide range of offensive tradecraft and TTPs to plan and execute realistic attack simulation engagements. The course also covers AI-assisted attack simulation and modern offensive cyber security techniques, equipping defenders to rigorously assess and strengthen their organization’s cyber defense posture.\u003c\/p\u003e\n\u003ch2\u003e2. Course Description\u003c\/h2\u003e\n\u003cp\u003eThe hands-on training provides participants with a deeper understanding of advanced offensive cyber security operations, breach simulation, and adversary emulation engagements. Participants learn to safely emulate real-world threat actors and unknown adversaries in controlled enterprise environments, selecting from a wide range of offensive tradecraft and TTPs to plan and execute realistic attack simulation engagements.\u003c\/p\u003e\n\u003cp\u003eA significant portion of the course is dedicated to Cobalt Strike, the de facto enterprise C2 framework, Malleable C2 profiles, Beacon operations, lateral movement, and enterprise AD compromise simulation exercises against modern detection stacks.\u003c\/p\u003e\n\u003cp\u003eParticipants will also work with AI-assisted adversary simulation, including the use of locally hosted uncensored open-source models for tasks where commercial frontier models refuse or sanitize the output, supporting workflows such as malware variant generation, evasion refactoring, pretext crafting, and on-the-fly TTP recommendation during live engagements.\u003c\/p\u003e\n\u003cp\u003eBuilding on this, the course introduces agentic breach simulation, where autonomous agents drive multi-stage attack chains and adapt to defensive responses, alongside supply chain attack simulations that mimic one of the fastest-growing categories of real-world breaches.\u003c\/p\u003e\n\u003cp\u003eThe training benefits both offensive and defensive professionals: red teamers sharpen their tradecraft and C2 operations, while SOC analysts, detection engineers, and blue teamers gain visibility into modern attacker behaviors, including AI-assisted evasion, so they can harden their environments against the threat actor playbooks actually being used today.\u003c\/p\u003e\n\u003cp\u003eParticipants who opt to take the proficiency exam at the end of the program will receive the CBAS certification, formally recognizing their capability to plan, lead, and execute enterprise-grade breach and adversary simulation engagements.\u003c\/p\u003e\n\u003ch2\u003e3. Course Outline\u003c\/h2\u003e\n\u003ch3\u003ePART I - Foundations and Adversary Emulation\u003c\/h3\u003e\n\u003ch3\u003eModule 1: Taking the First Step - Understanding the Fundamentals\u003c\/h3\u003e\n\u003cp\u003e\u003cstrong\u003e3.1.1\u003c\/strong\u003e Introduction to offensive cyber security operations\u003cbr\u003e\u003cstrong\u003e3.1.2\u003c\/strong\u003e Adversary emulation vs adversary simulation\u003cbr\u003e\u003cstrong\u003e3.1.3\u003c\/strong\u003e Assessing return on investment (ROI)\u003cbr\u003e\u003cstrong\u003e3.1.4\u003c\/strong\u003e Breach and attack simulation (BAS)\u003cbr\u003e\u003cstrong\u003e3.1.5\u003c\/strong\u003e Cyber threat intelligence and threat-informed defense\u003cbr\u003e\u003cstrong\u003e3.1.6\u003c\/strong\u003e Cyber defense systems, blue teams, and the importance of purple teaming\u003cbr\u003e\u003cstrong\u003e3.1.7\u003c\/strong\u003e Frameworks and standards: MITRE ATT\u0026amp;CK matrix, Cyber Kill Chain\u003cbr\u003e\u003cstrong\u003e3.1.8\u003c\/strong\u003e Evolution of threat actors\u003cbr\u003e\u003cstrong\u003e3.1.9\u003c\/strong\u003e Red teaming\u003cbr\u003e\u003cstrong\u003e3.1.10\u003c\/strong\u003e Adversarial Exposure Validation\u003cbr\u003e\u003cstrong\u003e3.1.11\u003c\/strong\u003e Introduction to AI-assisted offensive operations and agentic adversary simulation\u003cbr\u003e\u003cstrong\u003e3.1.12\u003c\/strong\u003e Supply chain compromise as a dominant breach category\u003c\/p\u003e\n\u003ch3\u003eModule 2: Introduction to Adversary Emulation Engagements\u003c\/h3\u003e\n\u003cp\u003e\u003cstrong\u003e3.2.1\u003c\/strong\u003e Adversary emulation kickoff in your organization\u003c\/p\u003e\n\u003cul\u003e\n\u003cli\u003eAdversary emulation exercises\u003c\/li\u003e\n\u003c\/ul\u003e\n\u003cp\u003e\u003cstrong\u003e3.2.2\u003c\/strong\u003e Collecting actionable cyber threat intelligence from public sources\u003c\/p\u003e\n\u003cul\u003e\n\u003cli\u003eThreat Report ATT\u0026amp;CK Mapper (TRAM)\u003c\/li\u003e\n\u003c\/ul\u003e\n\u003cp\u003e\u003cstrong\u003e3.2.3\u003c\/strong\u003e Identifying and selecting TTPs to emulate, building an emulation plan\u003c\/p\u003e\n\u003cp\u003e\u003cstrong\u003e3.2.4\u003c\/strong\u003e Performing and executing adversary emulation engagements to test cyber defenses\u003c\/p\u003e\n\u003cp\u003e\u003cstrong\u003e3.2.5\u003c\/strong\u003e Testing endpoint security controls with adversary emulation techniques\u003c\/p\u003e\n\u003cp\u003e\u003cstrong\u003e3.2.6\u003c\/strong\u003e Open-source projects for effective emulation of threats\u003c\/p\u003e\n\u003cp\u003e\u003cstrong\u003e3.2.7\u003c\/strong\u003e Adversary emulation - Atomic Red Team\u003c\/p\u003e\n\u003cul\u003e\n\u003cli\u003eExecuting Atomic Red Team\u003c\/li\u003e\n\u003c\/ul\u003e\n\u003cp\u003e\u003cstrong\u003e3.2.8\u003c\/strong\u003e Adversary emulation - MITRE Caldera project\u003c\/p\u003e\n\u003cul\u003e\n\u003cli\u003eGetting started with the Caldera project\u003c\/li\u003e\n\u003cli\u003eDeploying Caldera in your organization's environment\u003c\/li\u003e\n\u003cli\u003eEmulating threat actors with Caldera\u003c\/li\u003e\n\u003cli\u003eEmulating known threat actors with Caldera ATT\u0026amp;CK Navigator\u003c\/li\u003e\n\u003cli\u003eUsing VECTR for generating reports and documentation\u003c\/li\u003e\n\u003cli\u003eUsing AI\/GPT systems for practical threat-intel-powered adversarial attack emulation\u003c\/li\u003e\n\u003c\/ul\u003e\n\u003cp\u003e\u003cstrong\u003e3.2.9\u003c\/strong\u003e AI-assisted adversary simulation in practice\u003c\/p\u003e\n\u003cul\u003e\n\u003cli\u003eLocally hosted uncensored open-source models for tasks where commercial frontier models refuse or sanitise output\u003c\/li\u003e\n\u003cli\u003eAI-driven workflows: malware variant generation, evasion refactoring, pretext crafting, on-the-fly TTP recommendation during live engagements\u003c\/li\u003e\n\u003cli\u003eOperational security considerations for AI in red team workflows\u003c\/li\u003e\n\u003c\/ul\u003e\n\u003ch3\u003ePART II - Offensive Tradecraft, Loaders, and Cobalt Strike\u003c\/h3\u003e\n\u003ch3\u003eModule 3: Breach and Adversary Simulation - Infrastructure and Tradecraft\u003c\/h3\u003e\n\u003cp\u003e\u003cstrong\u003e3.3.1\u003c\/strong\u003e Introducing the breach and adversary simulation range lab environment\u003c\/p\u003e\n\u003cp\u003e\u003cstrong\u003e3.3.2\u003c\/strong\u003e Adversary and red team infrastructure\u003c\/p\u003e\n\u003cp\u003eBuilding efficient adversary infrastructure: this module gives an overview of building production-ready red team infrastructure to bypass and validate the defenses of your organization.\u003c\/p\u003e\n\u003cul\u003e\n\u003cli\u003eRedirector design and traffic shaping\u003c\/li\u003e\n\u003cli\u003eDomain fronting, categorisation, and reputation building\u003c\/li\u003e\n\u003cli\u003ePhishing infrastructure and mail relays\u003c\/li\u003e\n\u003cli\u003eOPSEC considerations for long-running engagements\u003c\/li\u003e\n\u003c\/ul\u003e\n\u003cp\u003e\u003cstrong\u003e3.3.3\u003c\/strong\u003e Breach simulation lab infrastructure - guided walkthrough\u003c\/p\u003e\n\u003ch2\u003e4. Difficulty Level\u003c\/h2\u003e\n\u003cp\u003e\u003cstrong\u003eIntermediate\u003c\/strong\u003e - The student has education and some experience in the field and familiarity with the topic being presented. The student has foundational knowledge that the course will leverage to provide practical skills on the topic.\u003c\/p\u003e\n\u003ch2\u003e5. What Students Should Bring\u003c\/h2\u003e\n\u003cp\u003eLaptop\u003c\/p\u003e\n\u003cp\u003e\u003cstrong\u003eMinimum requirements:\u003c\/strong\u003e\u003c\/p\u003e\n\u003cul\u003e\n\u003cli\u003eCPU cores: 4 (8 recommended)\u003c\/li\u003e\n\u003cli\u003eRAM: 16 GB (32 GB recommended)\u003c\/li\u003e\n\u003cli\u003eDisk: 500 GB (1 TB recommended)\u003c\/li\u003e\n\u003cli\u003e6. What the Trainer Will Provide\u003c\/li\u003e\n\u003c\/ul\u003e\n\u003cp\u003eDuring the training, students will be provided with:\u003c\/p\u003e\n\u003cul\u003e\n\u003cli\u003eAll labs are hosted in AWS.\u003c\/li\u003e\n\u003cli\u003eStudnets will have access to LMS.\u003c\/li\u003e\n\u003c\/ul\u003e\n\u003ch2\u003e7. Trainer(s) Bio\u003c\/h2\u003e\n\u003ch3\u003eAbhijith B R (ABX)\u003c\/h3\u003e\n\u003cp\u003eAbhijith B R, also known by the pseudonym Abx, has more than a decade of experience in the offensive cyber security industry. He is a professional hacker, offensive cyber security specialist, red team consultant, security researcher, trainer and public speaker.\u003c\/p\u003e\n\u003cp\u003eCurrently, he is building BreachSimRange.io as a founder, director and involved with multiple organizations as a consulting specialist, to help them build offensive security operations programs, improve their current security posture, assess cyber defense systems, bridge the gap between business leadership and security professionals.\u003c\/p\u003e\n\u003cp\u003eAbhijith was responsible for building and managing offensive security operations and adversary simulation for a prominent FinTech company called Envestnet, Inc. In the past, he held the position of Deputy Manager - Cyber Security at Nissan Motor Corporation, and prior to that, he worked as a Senior Security Analyst at EY.\u003c\/p\u003e\n\u003cp\u003eAs the founder of Adversary Village (\u003ca href=\"https:\/\/adversaryvillage.org\/\"\u003ehttps:\/\/adversaryvillage.org\/\u003c\/a\u003e), Abhijith spearheads a community initiative focused on adversary simulation, adversary-tactics, purple teaming, threat actor\/ransomware research-emulation, and offensive cyber security. Adversary Village is part of DEF CON Villages and organizes hacking villages at prominent events such as the DEF CON Hacking Conference, RSA Conference etc.\u003c\/p\u003e\n\u003cp\u003eAbx also acts as the Lead of an official DEF CON Group named DC0471. He is actively involved in leading the Tactical Adversary project (\u003ca href=\"https:\/\/tacticaladversary.io\/\"\u003ehttps:\/\/tacticaladversary.io\/\u003c\/a\u003e) a personal initiative that centers around offensive cyber security, adversary attack simulation and red teaming tradecraft.\u003c\/p\u003e\n\u003cp\u003eAbhijith has spoken at various hacking and cyber security conferences such as, DEF CON hacker convention - Las Vegas, RSA Conference - San Francisco, The Diana Initiative - Las Vegas, DEF CON 28 safemode - DCG Village, Opensource India, Security BSides Las Vegas, BSides San Francisco, BSides Tampa, Hack Space Con - Kennedy space center Florida, Nullcon - Goa, c0c0n - Kerala, BSides Delhi etc.\u003c\/p\u003e\n\u003ch2\u003e8. Registration Terms and Conditions\u003c\/h2\u003e\n\u003cp\u003e\u003cstrong\u003e8.1\u003c\/strong\u003e Trainings are refundable before September 21, 2026, minus a non-refundable processing fee of 100 BHD.\u003c\/p\u003e\n\u003cp\u003e\u003cstrong\u003e8.2\u003c\/strong\u003e Between September 21, 2026 and October 21, 2026 partial refunds will be granted, equal to 50% of the course fee minus a processing fee of 100 BHD.\u003c\/p\u003e\n\u003cp\u003e\u003cstrong\u003e8.3\u003c\/strong\u003e All trainings are non-refundable after October 21, 2026.\u003c\/p\u003e\n\u003cp\u003e\u003cstrong\u003e8.4\u003c\/strong\u003e Training tickets may be transferred to another student. Please email us at \u003ca href=\"mailto:training@defcon.org\"\u003etraining@defcon.org\u003c\/a\u003e for specifics.\u003c\/p\u003e\n\u003cp\u003e\u003cstrong\u003e8.5\u003c\/strong\u003e If a training does not reach the minimum registration requirement, it may be cancelled. In the event the training you choose is cancelled, you will be provided the option of receiving a full refund or transferring to another training (subject to availability).\u003c\/p\u003e\n\u003cp\u003e\u003cstrong\u003e8.6\u003c\/strong\u003e Failure to attend the training without prior written notification will be considered a no-show. No refund will be given.\u003c\/p\u003e\n\u003cp\u003e\u003cstrong\u003e8.7\u003c\/strong\u003e DEF CON Training may share student contact information, including names and emails, with the course instructor(s) to facilitate sharing of pre-work and course instructions. Instructors are required to safeguard this information and provide appropriate protection so that it is kept private. Instructors may not use student information outside the delivery of this course without the permission of the student.\u003c\/p\u003e\n\u003cp\u003e\u003cstrong\u003e8.8\u003c\/strong\u003e By purchasing this ticket you agree to abide by the DEF CON Training Code of Conduct and the registration terms and conditions listed above.\u003c\/p\u003e","brand":"DEFCON MIDDLE EAST","offers":[{"title":"Course only","offer_id":49942347874547,"sku":null,"price":1200.0,"currency_code":"BHD","in_stock":true}],"thumbnail_url":"\/\/cdn.shopify.com\/s\/files\/1\/0841\/4815\/8707\/files\/abx.webp?v=1786806703","url":"https:\/\/me.shop.defcon.org\/products\/mastering-breach-and-adversarial-attack-simulation-engagements","provider":"DEF CON MIDDLE EAST","version":"1.0","type":"link"}