⚔️ Practical Network Penetration Tester (PNPT)
The PNPT is a comprehensive, hands-on network penetration testing certification offered by TCM Security. It is unique in modeling a realistic commercial engagement: candidates must perform open-source intelligence (OSINT), breach an external perimeter, compromise an internal Active Directory domain, write a report, and present findings in a live technical debriefing.
📋 Exam Specifications
- Format: 5 days of practical hands-on penetration testing + 2 days for reporting.
- Debriefing: A live 15-minute mock client presentation/debriefing with TCM technical assessors.
- Passing Criteria: Obtain full domain administrator control and submit a professional, client-ready report.
- Exam Targets: An external network range leading to an internal segmented corporate Active Directory network.
🛠️ Core Skills Validated
- Open-Source Intelligence (OSINT): Gathering employee emails, names, public documents, and credentials from search engines and historical repository dumps.
- External Perimeter Breach: Fuzzing external portals, identifying password sprays, exploiting vulnerable public applications, and executing remote access compromises.
- Active Directory Domination: Performing LDAP enumeration, executing LLMNR/NBT-NS poisoning attacks (using
Responder), Kerberoasting, and pass-the-hash. - Lateral Movement & Elevation: Exploiting outdated systems, configuration errors, GPO overrides, and weak local service configurations to elevate to Domain Admin.
- Technical Reporting & Debriefing: Documenting the complete attack chain with reproducible details, risk scores, and clear remediation steps, followed by a professional presentation.