⚔️ Practical Network Penetration Tester (PNPT)

The PNPT is a comprehensive, hands-on network penetration testing certification offered by TCM Security. It is unique in modeling a realistic commercial engagement: candidates must perform open-source intelligence (OSINT), breach an external perimeter, compromise an internal Active Directory domain, write a report, and present findings in a live technical debriefing.


📋 Exam Specifications

  • Format: 5 days of practical hands-on penetration testing + 2 days for reporting.
  • Debriefing: A live 15-minute mock client presentation/debriefing with TCM technical assessors.
  • Passing Criteria: Obtain full domain administrator control and submit a professional, client-ready report.
  • Exam Targets: An external network range leading to an internal segmented corporate Active Directory network.

🛠️ Core Skills Validated

  1. Open-Source Intelligence (OSINT): Gathering employee emails, names, public documents, and credentials from search engines and historical repository dumps.
  2. External Perimeter Breach: Fuzzing external portals, identifying password sprays, exploiting vulnerable public applications, and executing remote access compromises.
  3. Active Directory Domination: Performing LDAP enumeration, executing LLMNR/NBT-NS poisoning attacks (using Responder), Kerberoasting, and pass-the-hash.
  4. Lateral Movement & Elevation: Exploiting outdated systems, configuration errors, GPO overrides, and weak local service configurations to elevate to Domain Admin.
  5. Technical Reporting & Debriefing: Documenting the complete attack chain with reproducible details, risk scores, and clear remediation steps, followed by a professional presentation.

🔗 Back to Credentials